Jump to content

SecurityHijack is back for 3rd times !


Recommended Posts

Hello Beeno,

Let me suggest, if you're an MBAM PRO customer, you contact the consumer help desk here.

If you are in an organization or a corporate customer, contact Corporate Support for assistance.

Otherwise, Please print out, read and follow the directions here, skipping any steps you are unable to complete.

You should copy > paste contents of the MBAM scan log, and DDS.txt and Attach.txt

Be very explicit in the steps you had followed for the Windows 8 "re-install" ......including if you have the Windows 8 operating system DVD and what make / model of computer if Windows 8 was pre-installed on it when it was new. or tell us if you had "upgraded" from another version to Windows 8.

Link to post
Share on other sites

First of all thanks for help ! I use the PC to play games on line such as Red Orchestra2, Men of War an so on .. My PC is an assebled one and I've bought Win8 by digital download and I've saved it on DVD support. Since my first experience o securityhijack I didn't use any p2p software and I do not dowload pirate software. Then I've to say this is my third time I experience Securityhijack :( First time Gringo helped me to fix it but after some days it reappered unluckily. Then Gringo helped me for second time but yesterday I rediscovered SHJ once again and I decided to reinstall win8 but without formatting system disk. After installing software I run MBAM and it was here once more and I cleaned it by MBAM. Now I've run MBAM once more and the system seems clean. But I'm sure tomorrow it will reappear once more. This has happened before that I cleaned SHJ with MBAM and after one or three days it reappered. Gonna try your procedure and let you know!

Link to post
Share on other sites

Here are logs:

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.

IF REQUESTED, ZIP IT UP & ATTACH IT

.

DDS (Ver_2012-11-20.01)

.

Microsoft Windows 8 Pro

Boot Device: \Device\HarddiskVolume1

Install Date: 11/05/2013 09.50.23

System Uptime: 12/05/2013 15.00.24 (9 hours ago)

.

Motherboard: ASUSTeK Computer INC. | | P5Q-PRO

Processor: Intel® Core2 Duo CPU E8400 @ 3.00GHz | LGA 775 | 3600/400mhz

.

==== Disk Partitions =========================

.

A: is Removable

C: is FIXED (NTFS) - 107 GiB total, 45,971 GiB free.

D: is FIXED (NTFS) - 342 GiB total, 312,985 GiB free.

E: is FIXED (NTFS) - 932 GiB total, 412,218 GiB free.

F: is FIXED (NTFS) - 0 GiB total, 0,081 GiB free.

G: is FIXED (NTFS) - 357 GiB total, 351,916 GiB free.

H: is CDROM ()

.

==== Disabled Device Manager Items =============

.

==== System Restore Points ===================

.

No restore point in system.

.

==== Installed Programs ======================

.

AMD Accelerated Video Transcoding

AMD Catalyst Install Manager

Arma 2: Operation Arrowhead

Bubble Dock (remove only)

Catalyst Control Center

Catalyst Control Center - Branding

Catalyst Control Center Graphics Previews Common

Catalyst Control Center InstallProxy

Catalyst Control Center Localization All

ccc-utility64

CCC Help Chinese Standard

CCC Help Chinese Traditional

CCC Help Czech

CCC Help Danish

CCC Help Dutch

CCC Help English

CCC Help Finnish

CCC Help French

CCC Help German

CCC Help Greek

CCC Help Hungarian

CCC Help Italian

CCC Help Japanese

CCC Help Korean

CCC Help Norwegian

CCC Help Polish

CCC Help Portuguese

CCC Help Russian

CCC Help Spanish

CCC Help Swedish

CCC Help Thai

CCC Help Turkish

Driver Genius Professional Edition

Empire: Total War

G Data TotalProtection 2013

German Soldiers Mod Fields of Honor IX

Google Chrome

Google Update Helper

Intel® Rapid Storage Technology

Killing Floor

Left 4 Dead 2

Malwarebytes Anti-Malware versione 1.75.0.1300

Men of War: Assault Squad

Microsoft Chart Controls for Microsoft .NET Framework 3.5

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319

OpenOffice.org 3.4.1

PunkBuster Services

Red Orchestra 2: Heroes of Stalingrad

Samsung Magician

Steam

TeamSpeak 3 Client

TuneUp Utilities 2013

TuneUp Utilities Language Pack (it-IT)

WinRAR 4.20 (32-bit)

.

==== End Of File ===========================

DDS (Ver_2012-11-20.01) - NTFS_AMD64

Internet Explorer: 10.0.9200.16537

Run by Barbara at 0:25:50 on 2013-05-13

Microsoft Windows 8 Pro 6.2.9200.0.1252.39.1040.18.4095.2207 [GMT 2:00]

.

AV: G Data TotalProtection 2013 *Enabled/Updated* {39B780B4-63C2-05B0-3B40-8F7A21E4F496}

AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: G Data TotalProtection 2013 *Enabled/Updated* {82D66150-45F8-0A3E-01F0-B4085A63BE2B}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

FW: G Data Personal Firewall *Enabled* {018C0191-29AD-04E8-101F-264FDF37B3ED}

.

============== Running Processes ===============

.

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\svchost.exe -k RPCSS

C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe

C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKWCtlX64.exe

C:\Windows\system32\dwm.exe

C:\Windows\system32\atiesrxx.exe

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\atieclxx.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe

C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKService.exe

C:\Program Files (x86)\G Data\TotalProtection\AVKBackup\AVKBackupService.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Windows\SysWOW64\PnkBstrA.exe

C:\Program Files (x86)\G Data\TotalProtection\TSNxG\TSNxGService.exe

C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe

C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFwSvcx64.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Program Files (x86)\Common Files\G Data\AVKProxy\AvkBap64.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Windows\system32\taskhostex.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Windows\system32\dashost.exe

C:\Windows\Explorer.EXE

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe

C:\Windows\system32\SearchIndexer.exe

C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe

C:\Windows\System32\RuntimeBroker.exe

C:\Program Files (x86)\Steam\Steam.exe

C:\Program Files (x86)\G Data\TotalProtection\AVKTray\AVKTray.exe

C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFirewallTray.exe

C:\Program Files (x86)\Common Files\Steam\SteamService.exe

C:\Windows\system32\taskhost.exe

C:\Windows\SysWOW64\PnkBstrB.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\wwahost.exe

C:\Program Files\WindowsApps\microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe\LiveComm.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Windows\system32\msiexec.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\System32\cscript.exe

.

============== Pseudo HJT Report ===============

.

mWinlogon: Userinit = userinit.exe,

BHO: G Data BankGuard: {BA3295CF-17ED-4F49-9E95-D999A0ADBFDC} - C:\Program Files (x86)\Common Files\G Data\AVKProxy\BanksafeBHO.dll

uRun: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

uRun: [bubble Dock] "C:\Users\Barbara\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe" /winstartup

mRun: [G Data AntiVirus Tray Application] C:\Program Files (x86)\G Data\TotalProtection\AVKTray\AVKTray.exe

mRun: [GDFirewallTray] C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFirewallTray.exe

mRun: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

mRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60

StartupFolder: C:\Users\Barbara\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\SAMSUN~1.LNK - C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe

TCP: NameServer = 192.168.1.1

TCP: Interfaces\{4F26A0E8-41C0-49E6-9670-69ECD9E52163} : DHCPNameServer = 192.168.1.1

SSODL: WebCheck - <orphaned>

mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome

IFEO: iastorui.exe - "C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe"

x64-mWinlogon: Userinit = C:\Windows\System32\userinit.exe,c:\program files (x86)\g data\totalprotection\avkkid\avkcks.exe

x64-SSODL: WebCheck - <orphaned>

x64-IFEO: iastorui.exe - "C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe"

.

============= SERVICES / DRIVERS ===============

.

R0 GDBehave;GDBehave;C:\Windows\System32\Drivers\GDBehave.sys [2013-5-11 54136]

R0 iaStorA;iaStorA;C:\Windows\System32\Drivers\iaStorA.sys [2013-5-11 652344]

R0 TS4NT;TS4nt driver;C:\Windows\System32\Drivers\TS4nt.sys [2013-5-11 98760]

R1 GDMnIcpt;GDMnIcpt;C:\Windows\System32\Drivers\MiniIcpt.sys [2013-5-11 122744]

R1 gdwfpcd;G Data WFP CD;C:\Windows\System32\Drivers\gdwfpcd64.sys [2013-5-11 65912]

R1 GRD;G Data Rootkit Detector Driver;C:\Windows\System32\Drivers\GRD.sys [2013-5-11 106648]

R1 HookCentre;HookCentre;C:\Windows\System32\Drivers\HookCentre.sys [2013-5-11 64376]

R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2013-3-29 241152]

R2 AVKProxy;Proxy G Data AntiVirus;C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2012-2-2 1524728]

R2 AVKService;G Data Scheduler;C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKService.exe [2012-1-27 468472]

R2 AVKWCtl;Guardiano del file system G Data;C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKWCtlX64.exe [2012-1-27 2006872]

R2 GDBackupSvc;G Data Backup Service;C:\Program Files (x86)\G Data\TotalProtection\AVKBackup\AVKBackupService.exe [2012-3-13 1609208]

R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-5-11 418376]

R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-5-11 701512]

R2 TSNxGService;Servizio Cassaforte dati G Data;C:\Program Files (x86)\G Data\TotalProtection\TSNxG\TSNxGService.exe [2012-3-15 306184]

R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2013-1-31 2402080]

R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\Drivers\AtihdW86.sys [2013-2-14 94208]

R3 GDFwSvc;G Data Personal Firewall;C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFwSvcx64.exe [2012-1-27 1765352]

R3 GDPkIcpt;GDPkIcpt;C:\Windows\System32\Drivers\PktIcpt.sys [2013-5-11 59768]

R3 GDScan;Scanner G Data;C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [2012-1-27 471048]

R3 MBAMProtector;MBAMProtector;C:\Windows\System32\Drivers\mbam.sys [2013-5-11 25928]

R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-11-16 11880]

S3 amdkmafd;AMD Audio Bus Lower Filter;C:\Windows\System32\Drivers\amdkmafd.sys [2013-3-29 21600]

S3 GDTunerSvc;G Data Tuner Service;C:\Program Files (x86)\G Data\TotalProtection\AVKTuner\AVKTunerService.exe [2012-3-8 1218040]

S3 vmbusr;Provider Bus macchina virtuale;C:\Windows\System32\Drivers\vmbusr.sys [2012-7-26 117248]

S4 IAStorDataMgrSvc;Tecnologia Intel® Rapid Storage;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-5-11 14904]

.

=============== File Associations ===============

.

FileExt: .txt: txtfile=C:\Windows\System32\NOTEPAD.EXE %1 [userChoice]

.

=============== Created Last 30 ================

.

2013-05-12 20:18:06 -------- d-----w- C:\Users\Barbara\AppData\Roaming\Nosibay

2013-05-12 18:02:00 -------- d-----w- C:\Users\Barbara\AppData\Roaming\TS3Client

2013-05-12 18:01:25 -------- d-----w- C:\Program Files\TeamSpeak 3 Client

2013-05-11 22:16:28 1071364 ----a-w- C:\Windows\SysWow64\sig.bin

2013-05-11 17:47:27 -------- d-----w- C:\Program Files (x86)\Microsoft Chart Controls

2013-05-11 17:15:06 -------- d-----w- C:\Users\Barbara\AppData\Roaming\Malwarebytes

2013-05-11 17:15:04 -------- d-----w- C:\ProgramData\Malwarebytes

2013-05-11 17:15:03 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys

2013-05-11 17:15:03 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-05-11 16:33:11 281032 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr

2013-05-11 16:33:06 -------- d-----w- C:\Users\Barbara\AppData\Local\PunkBuster

2013-05-11 16:32:57 -------- d-----w- C:\Users\Barbara\AppData\Local\CrashRpt

2013-05-11 16:32:09 281032 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe

2013-05-11 16:32:09 280792 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0

2013-05-11 16:32:07 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe

2013-05-11 16:31:42 -------- d-----w- C:\Windows\SysWow64\XPSViewer

2013-05-11 16:30:10 778856 ----a-w- C:\Windows\SysWow64\PresentationNative_v0300.dll

2013-05-11 16:30:10 35400 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe

2013-05-11 16:30:10 35400 ----a-w- C:\Windows\System32\TsWpfWrp.exe

2013-05-11 16:30:10 124040 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll

2013-05-11 16:30:10 1166440 ----a-w- C:\Windows\System32\PresentationNative_v0300.dll

2013-05-11 16:30:10 102528 ----a-w- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll

2013-05-11 16:19:58 519000 ----a-w- C:\Windows\System32\d3dx10_40.dll

2013-05-11 16:14:25 -------- d-----w- C:\Program Files (x86)\Common Files\Intel Corporation

2013-05-11 16:13:52 -------- d-----w- C:\Users\Barbara\AppData\Roaming\Intel Corporation

2013-05-11 16:09:43 -------- d-----w- C:\Intel

2013-05-11 16:09:42 652344 ----a-w- C:\Windows\System32\drivers\iaStorA.sys

2013-05-11 09:57:51 106648 ----a-w- C:\Windows\System32\drivers\GRD.sys

2013-05-11 09:45:52 -------- d-----w- C:\Users\Barbara\Intel

2013-05-11 09:31:52 -------- d-----w- C:\Program Files (x86)\OpenOffice.org 3

2013-05-11 09:16:49 -------- d-----w- C:\Program Files (x86)\Common Files\Steam

2013-05-11 09:16:48 -------- d-----w- C:\Program Files (x86)\Steam

2013-05-11 08:59:40 -------- d-----w- C:\Users\Barbara\AppData\Local\ATI

2013-05-11 08:52:54 35104 ----a-w- C:\Windows\System32\TURegOpt.exe

2013-05-11 08:52:54 26400 ----a-w- C:\Windows\System32\authuitu.dll

2013-05-11 08:52:54 21792 ----a-w- C:\Windows\SysWow64\authuitu.dll

2013-05-11 08:52:52 -------- d-----w- C:\Users\Barbara\AppData\Roaming\TuneUp Software

2013-05-11 08:52:51 -------- d-----w- C:\Program Files (x86)\TuneUp Utilities 2013

2013-05-11 08:52:46 -------- d-----w- C:\ProgramData\TuneUp Software

2013-05-11 08:49:43 -------- d-----w- C:\ProgramData\Samsung

2013-05-11 08:49:43 -------- d-----w- C:\Program Files (x86)\Samsung Magician

2013-05-11 08:49:15 -------- d-----w- C:\Users\Barbara\AppData\Local\Programs

2013-05-11 08:44:36 -------- d-----w- C:\Windows\Panther

2013-05-11 08:38:07 -------- d-----w- C:\Windows.old.000

2013-05-11 08:36:50 53248 ----a-w- C:\Windows\SysWow64\CSVer.dll

2013-05-11 08:35:36 -------- d-----w- C:\ProgramData\AMD

2013-05-11 08:35:35 -------- d-----w- C:\Program Files (x86)\Common Files\ATI Technologies

2013-05-11 08:35:35 -------- d-----w- C:\Program Files (x86)\AMD AVT

2013-05-11 08:35:24 -------- d-----w- C:\Program Files\Common Files\ATI Technologies

2013-05-11 08:34:59 -------- d-----w- C:\Program Files (x86)\ATI Technologies

2013-05-11 08:34:46 -------- d-----w- C:\Program Files\ATI Technologies

2013-05-11 08:34:44 -------- d-----w- C:\Program Files\ATI

2013-05-11 08:29:14 -------- d-----w- C:\ProgramData\DriverGenius

2013-05-11 08:29:00 -------- d-----w- C:\Program Files (x86)\Driver-Soft

2013-05-11 08:25:57 11459584 ----a-w- C:\Windows\System32\glcndFilter.dll

2013-05-11 08:24:59 757248 ----a-w- C:\Windows\System32\uDWM.dll

2013-05-11 08:20:43 -------- d-sh--w- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}

2013-05-11 08:20:43 -------- d--h--w- C:\ProgramData\Common Files

2013-05-11 08:14:07 -------- d-----r- C:\Windows\BrowserChoice

2013-05-11 08:11:09 16114176 ----a-w- C:\Program Files\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll

2013-05-11 08:11:09 15541248 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll

2013-05-11 08:09:21 -------- d-----w- C:\Users\Barbara\AppData\Local\Google

2013-05-11 08:06:59 -------- d-----w- C:\Windows\SysWow64\BioAPIFFDB

2013-05-11 08:06:56 98760 ----a-w- C:\Windows\System32\drivers\TS4nt.sys

2013-05-11 08:06:51 59768 ----a-w- C:\Windows\System32\drivers\PktIcpt.sys

2013-05-11 08:06:43 64376 ----a-w- C:\Windows\System32\drivers\HookCentre.sys

2013-05-11 08:06:43 54136 ----a-w- C:\Windows\System32\drivers\GDBehave.sys

2013-05-11 08:06:43 122744 ----a-w- C:\Windows\System32\drivers\MiniIcpt.sys

2013-05-11 08:06:41 65912 ----a-w- C:\Windows\System32\drivers\gdwfpcd64.sys

2013-05-11 08:06:27 -------- d-----w- C:\ProgramData\G DATA Software

2013-05-11 08:06:23 -------- d-----w- C:\ProgramData\G DATA

2013-05-11 08:06:23 -------- d-----w- C:\Program Files (x86)\G Data

2013-05-11 08:06:23 -------- d-----w- C:\Program Files (x86)\Common Files\G Data

2013-05-11 08:05:28 -------- d-----w- C:\Users\Barbara\AppData\Local\Downloaded Installations

2013-05-11 08:04:55 9317456 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{8BB6D2E6-E46A-40C5-84C5-F6ACFCCC5A67}\mpengine.dll

2013-05-11 08:04:36 278800 ------w- C:\Windows\System32\MpSigStub.exe

2013-05-11 08:04:03 17888 ----a-w- C:\Windows\System32\msvcr100_clr0400.dll

2013-05-11 08:01:28 2094592 ----a-w- C:\Windows\System32\mmc.exe

2013-05-11 08:00:57 94208 ----a-w- C:\Windows\System32\synceng.dll

2013-05-11 07:59:44 96256 ----a-w- C:\Windows\System32\fontsub.dll

2013-05-11 07:55:56 50784 ----a-w- C:\ProgramData\Microsoft\windowsfiltering\Sqm\Manifest\Sqm3.bin

2013-05-11 07:55:49 17536 ----a-w- C:\ProgramData\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin

2013-05-11 07:48:45 -------- d-sh--we C:\ProgramData\Modelli

2013-05-11 07:48:45 -------- d-sh--we C:\ProgramData\Menu Avvio

2013-05-11 07:48:45 -------- d-sh--we C:\ProgramData\Documenti

2013-05-11 07:48:45 -------- d-sh--we C:\ProgramData\Dati applicazioni

2013-05-11 07:48:45 -------- d-sh--we C:\Program Files\File comuni

2013-05-11 07:45:59 0 ----a-w- C:\Windows\ativpsrm.bin

.

==================== Find3M ====================

.

2013-04-02 22:08:01 78176 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

2013-04-02 22:08:01 692576 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe

2013-03-29 02:37:10 78432 ----a-w- C:\Windows\System32\atimpc64.dll

2013-03-29 02:37:10 71704 ----a-w- C:\Windows\SysWow64\atimpc32.dll

2013-03-29 02:37:08 78432 ----a-w- C:\Windows\System32\amdpcom64.dll

2013-03-29 02:37:06 71704 ----a-w- C:\Windows\SysWow64\amdpcom32.dll

2013-03-29 02:37:06 139696 ----a-w- C:\Windows\System32\atiuxp64.dll

2013-03-29 02:37:04 92304 ----a-w- C:\Windows\SysWow64\atiu9pag.dll

2013-03-29 02:37:04 118584 ----a-w- C:\Windows\SysWow64\atiuxpag.dll

2013-03-29 02:37:04 112440 ----a-w- C:\Windows\System32\atiu9p64.dll

2013-03-29 02:37:02 1155264 ----a-w- C:\Windows\System32\aticfx64.dll

2013-03-29 02:37:00 970912 ----a-w- C:\Windows\SysWow64\aticfx32.dll

2013-03-29 02:36:56 8272136 ----a-w- C:\Windows\System32\atidxx64.dll

2013-03-29 02:36:54 7233336 ----a-w- C:\Windows\SysWow64\atidxx32.dll

2013-03-29 02:36:50 4450264 ----a-w- C:\Windows\SysWow64\atiumdva.dll

2013-03-29 02:36:44 5944264 ----a-w- C:\Windows\SysWow64\atiumdag.dll

2013-03-29 02:36:40 5000320 ----a-w- C:\Windows\System32\atiumd6a.dll

2013-03-29 02:36:38 6985624 ----a-w- C:\Windows\System32\atiumd64.dll

2013-03-29 02:35:28 21600 ----a-w- C:\Windows\System32\drivers\amdkmafd.sys

2013-03-29 02:35:02 11658752 ----a-w- C:\Windows\System32\drivers\atikmdag.sys

2013-03-29 02:13:28 222720 ----a-w- C:\Windows\System32\clinfo.exe

2013-03-29 02:13:14 798734 ----a-w- C:\Windows\SysWow64\amdocl_ld32.exe

2013-03-29 02:13:14 1187342 ----a-w- C:\Windows\System32\amdocl_as64.exe

2013-03-29 02:13:14 1061902 ----a-w- C:\Windows\System32\amdocl_ld64.exe

2013-03-29 02:13:12 995342 ----a-w- C:\Windows\SysWow64\amdocl_as32.exe

2013-03-29 02:13:08 76288 ----a-w- C:\Windows\System32\OpenVideo64.dll

2013-03-29 02:13:04 65536 ----a-w- C:\Windows\SysWow64\OpenVideo.dll

2013-03-29 02:13:00 64000 ----a-w- C:\Windows\System32\OVDecode64.dll

2013-03-29 02:12:56 56320 ----a-w- C:\Windows\SysWow64\OVDecode.dll

2013-03-29 02:12:48 29150720 ----a-w- C:\Windows\System32\amdocl64.dll

2013-03-29 02:10:52 23810560 ----a-w- C:\Windows\SysWow64\amdocl.dll

2013-03-29 02:09:04 54784 ----a-w- C:\Windows\System32\OpenCL.dll

2013-03-29 02:09:00 50176 ----a-w- C:\Windows\SysWow64\OpenCL.dll

2013-03-29 02:04:42 24229376 ----a-w- C:\Windows\System32\atio6axx.dll

2013-03-29 02:00:54 76800 ----a-w- C:\Windows\System32\coinst_12.104.dll

2013-03-29 01:57:54 163840 ----a-w- C:\Windows\System32\atiapfxx.exe

2013-03-29 01:55:36 51200 ----a-w- C:\Windows\System32\aticalrt64.dll

2013-03-29 01:55:34 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll

2013-03-29 01:55:28 44544 ----a-w- C:\Windows\System32\aticalcl64.dll

2013-03-29 01:55:28 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll

2013-03-29 01:55:16 16082944 ----a-w- C:\Windows\System32\aticaldd64.dll

2013-03-29 01:51:04 13703168 ----a-w- C:\Windows\SysWow64\aticaldd.dll

2013-03-29 01:48:26 19870720 ----a-w- C:\Windows\SysWow64\atioglxx.dll

2013-03-29 01:35:14 442368 ----a-w- C:\Windows\System32\atidemgy.dll

2013-03-29 01:35:06 562688 ----a-w- C:\Windows\System32\atieclxx.exe

2013-03-29 01:34:18 241152 ----a-w- C:\Windows\System32\atiesrxx.exe

2013-03-29 01:33:00 120320 ----a-w- C:\Windows\System32\atitmm64.dll

2013-03-29 01:32:46 26112 ----a-w- C:\Windows\System32\atimuixx.dll

2013-03-29 01:32:42 59392 ----a-w- C:\Windows\System32\atiedu64.dll

2013-03-29 01:32:36 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll

2013-03-29 01:10:30 636416 ----a-w- C:\Windows\System32\atiadlxx.dll

2013-03-29 01:10:20 430080 ----a-w- C:\Windows\SysWow64\atiadlxy.dll

2013-03-29 01:10:08 17920 ----a-w- C:\Windows\System32\atig6pxx.dll

2013-03-29 01:10:04 14848 ----a-w- C:\Windows\SysWow64\atiglpxx.dll

2013-03-29 01:10:04 14848 ----a-w- C:\Windows\System32\atiglpxx.dll

2013-03-29 01:10:00 44032 ----a-w- C:\Windows\System32\atig6txx.dll

2013-03-29 01:09:52 34816 ----a-w- C:\Windows\SysWow64\atigktxx.dll

2013-03-29 01:09:44 581120 ----a-w- C:\Windows\System32\drivers\atikmpag.sys

2013-03-29 01:07:52 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll

2013-03-19 22:19:24 4041728 ----a-w- C:\Windows\System32\win32k.sys

2013-03-07 06:50:56 6991592 ----a-w- C:\Windows\System32\ntoskrnl.exe

2013-03-02 10:57:48 337128 ----a-w- C:\Windows\System32\drivers\USBXHCI.SYS

2013-03-02 10:57:46 77544 ----a-w- C:\Windows\System32\drivers\storahci.sys

2013-03-02 10:57:46 332520 ----a-w- C:\Windows\System32\drivers\storport.sys

2013-03-02 10:57:46 283880 ----a-w- C:\Windows\System32\drivers\spaceport.sys

2013-03-02 10:45:20 148712 ----a-w- C:\Windows\System32\drivers\tpm.sys

2013-03-02 10:45:19 194792 ----a-w- C:\Windows\System32\drivers\sdbus.sys

2013-03-02 10:45:10 125160 ----a-w- C:\Windows\System32\drivers\dumpsd.sys

2013-03-02 10:39:39 495336 ----a-w- C:\Windows\System32\drivers\vhdmp.sys

2013-03-02 10:39:38 69864 ----a-w- C:\Windows\System32\drivers\pdc.sys

2013-03-02 10:39:32 327912 ----a-w- C:\Windows\System32\drivers\Classpnp.sys

2013-03-02 09:59:37 2231528 ----a-w- C:\Windows\System32\drivers\tcpip.sys

2013-03-02 09:59:36 411880 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS

2013-03-02 08:24:08 34304 ----a-w- C:\Windows\SysWow64\wuapp.exe

2013-03-02 08:23:43 83968 ----a-w- C:\Windows\SysWow64\wudriver.dll

2013-03-02 08:23:43 125952 ----a-w- C:\Windows\SysWow64\wuwebv.dll

2013-03-02 08:23:30 893952 ----a-w- C:\Windows\SysWow64\winmde.dll

2013-03-02 08:23:30 1338880 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll

2013-03-02 08:23:28 601088 ----a-w- C:\Windows\SysWow64\Windows.Globalization.dll

2013-03-02 08:23:28 504320 ----a-w- C:\Windows\SysWow64\Windows.Security.Authentication.OnlineId.dll

2013-03-02 08:23:19 8857088 ----a-w- C:\Windows\SysWow64\twinui.dll

2013-03-02 08:23:19 246784 ----a-w- C:\Windows\SysWow64\ubpm.dll

2013-03-02 08:23:04 356352 ----a-w- C:\Windows\SysWow64\SettingSync.dll

2013-03-02 08:23:04 100864 ----a-w- C:\Windows\SysWow64\SettingSyncInfo.dll

2013-03-02 08:23:00 375808 ----a-w- C:\Windows\SysWow64\ReAgent.dll

2013-03-02 08:22:36 357888 ----a-w- C:\Windows\SysWow64\netcfgx.dll

2013-03-02 08:22:32 5091840 ----a-w- C:\Windows\SysWow64\mstscax.dll

2013-03-02 08:22:18 361984 ----a-w- C:\Windows\SysWow64\MFMediaEngine.dll

2013-03-02 08:22:17 850944 ----a-w- C:\Windows\SysWow64\mfasfsrcsnk.dll

2013-03-02 08:21:56 550912 ----a-w- C:\Windows\SysWow64\drvstore.dll

2013-03-02 08:21:52 36352 ----a-w- C:\Windows\SysWow64\DevDispItemProvider.dll

2013-03-02 08:21:40 309760 ----a-w- C:\Windows\SysWow64\BCP47Langs.dll

2013-03-02 08:21:39 2033664 ----a-w- C:\Windows\SysWow64\authui.dll

2013-03-02 08:21:32 145408 ----a-w- C:\Windows\SysWow64\powercfg.cpl

2013-03-02 02:44:59 448512 ----a-w- C:\Windows\System32\SettingSync.dll

2013-03-02 02:44:59 128512 ----a-w- C:\Windows\System32\SettingSyncInfo.dll

2013-03-02 02:44:56 1011200 ----a-w- C:\Windows\System32\reseteng.dll

2013-03-02 02:44:41 455168 ----a-w- C:\Windows\System32\netcfgx.dll

2013-03-02 02:44:41 117248 ----a-w- C:\Windows\System32\NdisImPlatform.dll

2013-03-02 02:44:38 5978624 ----a-w- C:\Windows\System32\mstscax.dll

.

============= FINISH: 0.26.28,61 ===============

Malwarebytes Anti-Malware (Prova) 1.75.0.1300

www.malwarebytes.org

Versione database: v2013.05.12.03

Windows 8 x64 NTFS

Internet Explorer 10.0.9200.16540

Barbara :: BARNEYPC [amministratore]

Protezione: Attivata

13/05/2013 00.28.45

mbam-log-2013-05-13 (00-28-45).txt

Tipo di scansione: Scansione veloce

Opzioni di scansione attive: Memoria | Esecuzione automatica | Registro | File di sistema | Euristica/Extra | Euristica/Shuriken | PUP | PUM

Opzioni di scansione disattivate: P2P

Elementi esaminati: 209372

Tempo impiegato: 3 minuti, 34 secondi

Processi rilevati in memoria: 0

(non sono stati rilevati elementi nocivi)

Moduli di memoria rilevati: 0

(non sono stati rilevati elementi nocivi)

Chiavi di registro rilevate: 0

(non sono stati rilevati elementi nocivi)

Valori di registro rilevati: 0

(non sono stati rilevati elementi nocivi)

Voci rilevate nei dati di registro: 0

(non sono stati rilevati elementi nocivi)

Cartelle rilevate: 0

Thanks for now !! :)

Link to post
Share on other sites

  • Please download CKScanner from >>Here<<
  • Important: - Save it to your desktop.
  • Right-click CKScanner.exe & select Run as administrator to start.
  • then click Search For Files.
  • After a very short time, when the cursor hourglass disappears, click Save List To File.
  • A message box will verify the file saved. Please Run the program only once.
  • Copy/paste the contents of CKFiles.txt in your next reply.

Link to post
Share on other sites

I don't know if it could be of any interest about the matter, but one thing I forgot to point at is that when I start a game by STEAM often appears a message reportinmg unsufficient memory so that system should close some application (Steam and the game) to prevent data loss. What do you think ?

Link to post
Share on other sites

First of all thanks for help ! I use the PC to play games on line such as Red Orchestra2, Men of War an so on .. My PC is an assebled one and I've bought Win8 by digital download and I've saved it on DVD support. ......

When you say "digital download", Is that from Microsoft ?

Are you sure you have the Windows 8 setup saved properly on DVD?

Was this a retail purchase or was it part of the Microsoft upgrade offder from last fall 2012, or what ?

What are the other logical drives showing in the reports?

Link to post
Share on other sites

Hello ! I've bought Win8 from MS site during last fall offer. After I've downloaded Win8 I've saved it on a DVD and I use it to install the OS. There are 2 more HD drivers with 2 partition each. I use bigger partition for backup. Any idea about unsufficient memory ? (I've 2x2Gb of DDR2 and I don't think these could be unsufficient ... till now ?!?!?). :) Thanks in advance.

Link to post
Share on other sites

Do not worry at this time about RAM meomory.

I suspect that when you tried the wipe & new install of Windows 8, that you somehow did not do it properly.

I suspect you will need to do that again, this time.

But for now, do the following so I can see a report.

IF drives D, E, F, G are removable external drives then un-plug them from the system !!

Since this is Windows 8, you will need to do this first, as outlined by Grinler

How to enable the F8 key to start Safe Mode in Windows 8

http://www.bleepingcomputer.com/tutorials/enable-the-f8-key-in-windows-8/

Then do the following Steps to get a diagnostic report.

For x32 (x86) bit systems download Farbar Recovery Scan Tool and save it to a flash drive.

For x64 bit systems download Farbar Recovery Scan Tool x64 and save it to a flash drive.

Plug the flashdrive into the infected PC.

Enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:

  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Select English as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.

OR If you have the Windows o.s. DVD, then To enter System Recovery Options, by using Windows installation disc:

  • Insert the installation disc.
  • Restart your computer.
  • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
  • Click Repair your computer.
  • Select English as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account and click Next.

On the System Recovery Options menu you will get the following options:


    • Startup Repair
    • System Restore
    • Windows Complete PC Restore
    • Windows Memory Diagnostic Tool
    • Command Prompt i_arrow-l.gif

    [*]Select Command Prompt

    [*]In the command window type in notepad and press Enter.

    [*]The notepad opens. Under File menu select Open.

    [*]Select "Computer" and find your flash drive letter and close the notepad.

    [*]In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter

    Note: Replace letter e with the drive letter of your flash drive.

    [*]The tool will start to run.

    [*]When the tool opens click Yes to disclaimer.

    [*]Press Scan button.

    [*]It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.

Link to post
Share on other sites

So I've unplugged 2 HDD and I've run your procedure. BTW before scanning I've not checked any optional scan option. So here it is the log:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-05-2013

Ran by SYSTEM on 18-05-2013 15:01:11

Running from D:\

Windows 8 Pro (X64) OS Language: Italian Standard

Internet Explorer Version 9

Boot Mode: Recovery

The current controlset is ControlSet001

ATTENTION!:=====> FRST is updated to run from normal or Safe mode to produce a full FRST.txt log and an extra Addition.txt log.

==================== Registry (Whitelisted) ==================

HKLM\...\Winlogon: [userinit] C:\Windows\system32\userinit.exe,c:\program files (x86)\g data\totalprotection\avkkid\avkcks.exe

HKLM-x32\...\Run: [G Data AntiVirus Tray Application] C:\Program Files (x86)\G Data\TotalProtection\AVKTray\AVKTray.exe [985080 2012-01-27] (G Data Software AG)

HKLM-x32\...\Run: [] [x]

HKLM-x32\...\Run: [GDFirewallTray] C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFirewallTray.exe [1470968 2012-01-27] (G Data Software AG)

HKLM-x32\...\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [642656 2013-03-28] (Advanced Micro Devices, Inc.)

HKLM-x32\...\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60 [285240 2012-11-19] (Intel Corporation)

HKU\Barbara\...\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent [1635752 2013-05-04] (Valve Corporation)

HKU\Barbara\...\Run: [Facebook Update] "C:\Users\Barbara\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2013-05-17] (Facebook Inc.)

IMEO\iastorui.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe"

Startup: C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk

ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()

Startup: C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Magician.lnk

ShortcutTarget: Samsung Magician.lnk -> C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (Samsung Electronics.)

==================== Services (Whitelisted) =================

S2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [1524728 2012-02-02] (G Data Software AG)

S2 AVKService; C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKService.exe [468472 2012-01-27] (G Data Software AG)

S2 AVKWCtl; C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKWCtlX64.exe [2006872 2012-01-27] (G Data Software AG)

S2 GDBackupSvc; C:\Program Files (x86)\G Data\TotalProtection\AVKBackup\AVKBackupService.exe [1609208 2012-03-13] (G Data Software AG)

S3 GDFwSvc; C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFwSvcx64.exe [1765352 2012-01-27] (G Data Software AG)

S3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [471048 2012-01-27] (G Data Software AG)

S3 GDTunerSvc; C:\Program Files (x86)\G Data\TotalProtection\AVKTuner\AVKTunerService.exe [1218040 2012-03-08] (G Data Software AG)

S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)

S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)

S2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-05-11] ()

S2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [280792 2013-05-18] ()

S2 TSNxGService; C:\Program Files (x86)\G Data\TotalProtection\TSNxG\TSNxGService.exe [306184 2012-03-15] (G Data Software)

S2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402080 2013-01-31] (TuneUp Software)

S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-29] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21600 2013-03-29] (Advanced Micro Devices, Inc.)

S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [94208 2013-02-14] (Advanced Micro Devices)

S0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [54136 2013-05-11] (G Data Software AG)

S1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [122744 2013-05-11] (G Data Software AG)

S3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [59768 2013-05-11] (G Data Software AG)

S1 GRD; C:\Windows\system32\drivers\GRD.sys [106648 2013-05-11] (G Data Software)

S1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [64376 2013-05-11] (G Data Software AG)

S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)

S3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [8192 2005-03-29] ()

S3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software)

S3 WUDFSensorLP; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation)

S1 gdwfpcd; system32\drivers\gdwfpcd64.sys [x]

S1 GLogin; No ImagePath

S0 TS4NT; System32\Drivers\TS4nt.sys [x]

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2013-05-18 15:00 - 2013-05-18 15:00 - 00000000 ____D C:\FRST

2013-05-18 14:58 - 2013-05-18 14:58 - 00000000 ____A C:\Recovery.txt

2013-05-18 10:01 - 2013-05-18 10:01 - 01877468 ____A (Farbar) C:\Users\Barbara\Downloads\FRST64.exe

2013-05-17 20:13 - 2013-05-18 11:18 - 00000954 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-998324891-904564694-1887333963-1001UA.job

2013-05-17 20:13 - 2013-05-17 20:18 - 00000932 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-998324891-904564694-1887333963-1001Core.job

2013-05-17 20:13 - 2013-05-17 20:13 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0 (2).exe

2013-05-17 20:12 - 2013-05-17 20:14 - 00000000 ____D C:\Users\Barbara\AppData\Local\Facebook

2013-05-17 20:12 - 2013-05-17 20:12 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0 (1).exe

2013-05-17 20:11 - 2013-05-17 20:11 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe

2013-05-17 17:16 - 2013-05-17 17:16 - 00002165 ____A C:\Users\Barbara\Documents\mazzo magic - collegamento.lnk

2013-05-17 17:15 - 2013-04-16 03:34 - 01455368 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys

2013-05-17 17:15 - 2013-04-11 07:40 - 06987528 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe

2013-05-17 17:15 - 2013-04-10 00:17 - 19231232 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 02242048 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 00915968 ____A (Microsoft Corporation) C:\Windows\System32\uxtheme.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe

2013-05-17 17:15 - 2013-04-10 00:16 - 15404032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll

2013-05-17 17:15 - 2013-04-10 00:16 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll

2013-05-17 17:15 - 2013-04-10 00:16 - 02647552 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll

2013-05-17 17:15 - 2013-04-10 00:16 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll

2013-05-17 17:15 - 2013-04-09 23:30 - 01767424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll

2013-05-17 17:15 - 2013-04-09 23:30 - 01130496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 14323712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll

2013-05-17 17:15 - 2013-03-22 04:49 - 02382336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll

2013-05-17 17:15 - 2013-03-21 23:47 - 02851840 ____A (Microsoft Corporation) C:\Windows\System32\esent.dll

2013-05-17 17:15 - 2013-03-15 01:17 - 00861184 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\http.sys

2013-05-17 17:15 - 2013-03-06 08:10 - 00112872 ____A (Microsoft Corporation) C:\Windows\System32\consent.exe

2013-05-17 17:15 - 2013-03-06 07:59 - 00069864 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\pdc.sys

2013-05-17 17:15 - 2013-03-06 07:31 - 19758592 ____A (Microsoft Corporation) C:\Windows\System32\shell32.dll

2013-05-17 17:15 - 2013-03-06 07:31 - 10116608 ____A (Microsoft Corporation) C:\Windows\System32\twinui.dll

2013-05-17 17:15 - 2013-03-06 07:31 - 00222208 ____A (Microsoft Corporation) C:\Windows\System32\shdocvw.dll

2013-05-17 17:15 - 2013-03-06 07:29 - 02303488 ____A (Microsoft Corporation) C:\Windows\System32\authui.dll

2013-05-17 17:15 - 2013-03-06 07:29 - 02146304 ____A (Microsoft Corporation) C:\Windows\System32\actxprxy.dll

2013-05-17 17:15 - 2013-03-06 07:29 - 00070144 ____A (Microsoft Corporation) C:\Windows\System32\appinfo.dll

Link to post
Share on other sites

Ehm ... sorry because previous log was not complete.

Here it is the complete one ! :)

WARNING because post was too long I've cut it in two parts. Here it is part 1/2.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-05-2013

Ran by SYSTEM on 18-05-2013 15:01:11

Running from D:\

Windows 8 Pro (X64) OS Language: Italian Standard

Internet Explorer Version 9

Boot Mode: Recovery

The current controlset is ControlSet001

ATTENTION!:=====> FRST is updated to run from normal or Safe mode to produce a full FRST.txt log and an extra Addition.txt log.

==================== Registry (Whitelisted) ==================

HKLM\...\Winlogon: [userinit] C:\Windows\system32\userinit.exe,c:\program files (x86)\g data\totalprotection\avkkid\avkcks.exe

HKLM-x32\...\Run: [G Data AntiVirus Tray Application] C:\Program Files (x86)\G Data\TotalProtection\AVKTray\AVKTray.exe [985080 2012-01-27] (G Data Software AG)

HKLM-x32\...\Run: [] [x]

HKLM-x32\...\Run: [GDFirewallTray] C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFirewallTray.exe [1470968 2012-01-27] (G Data Software AG)

HKLM-x32\...\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [642656 2013-03-28] (Advanced Micro Devices, Inc.)

HKLM-x32\...\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60 [285240 2012-11-19] (Intel Corporation)

HKU\Barbara\...\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent [1635752 2013-05-04] (Valve Corporation)

HKU\Barbara\...\Run: [Facebook Update] "C:\Users\Barbara\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2013-05-17] (Facebook Inc.)

IMEO\iastorui.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe"

Startup: C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk

ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()

Startup: C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Magician.lnk

ShortcutTarget: Samsung Magician.lnk -> C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (Samsung Electronics.)

==================== Services (Whitelisted) =================

S2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [1524728 2012-02-02] (G Data Software AG)

S2 AVKService; C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKService.exe [468472 2012-01-27] (G Data Software AG)

S2 AVKWCtl; C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKWCtlX64.exe [2006872 2012-01-27] (G Data Software AG)

S2 GDBackupSvc; C:\Program Files (x86)\G Data\TotalProtection\AVKBackup\AVKBackupService.exe [1609208 2012-03-13] (G Data Software AG)

S3 GDFwSvc; C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFwSvcx64.exe [1765352 2012-01-27] (G Data Software AG)

S3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [471048 2012-01-27] (G Data Software AG)

S3 GDTunerSvc; C:\Program Files (x86)\G Data\TotalProtection\AVKTuner\AVKTunerService.exe [1218040 2012-03-08] (G Data Software AG)

S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)

S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)

S2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-05-11] ()

S2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [280792 2013-05-18] ()

S2 TSNxGService; C:\Program Files (x86)\G Data\TotalProtection\TSNxG\TSNxGService.exe [306184 2012-03-15] (G Data Software)

S2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402080 2013-01-31] (TuneUp Software)

S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-29] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21600 2013-03-29] (Advanced Micro Devices, Inc.)

S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [94208 2013-02-14] (Advanced Micro Devices)

S0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [54136 2013-05-11] (G Data Software AG)

S1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [122744 2013-05-11] (G Data Software AG)

S3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [59768 2013-05-11] (G Data Software AG)

S1 GRD; C:\Windows\system32\drivers\GRD.sys [106648 2013-05-11] (G Data Software)

S1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [64376 2013-05-11] (G Data Software AG)

S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)

S3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [8192 2005-03-29] ()

S3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software)

S3 WUDFSensorLP; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation)

S1 gdwfpcd; system32\drivers\gdwfpcd64.sys [x]

S1 GLogin; No ImagePath

S0 TS4NT; System32\Drivers\TS4nt.sys [x]

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2013-05-18 15:00 - 2013-05-18 15:00 - 00000000 ____D C:\FRST

2013-05-18 14:58 - 2013-05-18 14:58 - 00000000 ____A C:\Recovery.txt

2013-05-18 10:01 - 2013-05-18 10:01 - 01877468 ____A (Farbar) C:\Users\Barbara\Downloads\FRST64.exe

2013-05-17 20:13 - 2013-05-18 11:18 - 00000954 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-998324891-904564694-1887333963-1001UA.job

2013-05-17 20:13 - 2013-05-17 20:18 - 00000932 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-998324891-904564694-1887333963-1001Core.job

2013-05-17 20:13 - 2013-05-17 20:13 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0 (2).exe

2013-05-17 20:12 - 2013-05-17 20:14 - 00000000 ____D C:\Users\Barbara\AppData\Local\Facebook

2013-05-17 20:12 - 2013-05-17 20:12 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0 (1).exe

2013-05-17 20:11 - 2013-05-17 20:11 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe

2013-05-17 17:16 - 2013-05-17 17:16 - 00002165 ____A C:\Users\Barbara\Documents\mazzo magic - collegamento.lnk

2013-05-17 17:15 - 2013-04-16 03:34 - 01455368 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys

2013-05-17 17:15 - 2013-04-11 07:40 - 06987528 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe

2013-05-17 17:15 - 2013-04-10 00:17 - 19231232 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 02242048 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 00915968 ____A (Microsoft Corporation) C:\Windows\System32\uxtheme.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll

2013-05-17 17:15 - 2013-04-10 00:17 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe

2013-05-17 17:15 - 2013-04-10 00:16 - 15404032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll

2013-05-17 17:15 - 2013-04-10 00:16 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll

2013-05-17 17:15 - 2013-04-10 00:16 - 02647552 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll

2013-05-17 17:15 - 2013-04-10 00:16 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll

2013-05-17 17:15 - 2013-04-09 23:30 - 01767424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll

2013-05-17 17:15 - 2013-04-09 23:30 - 01130496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 14323712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll

2013-05-17 17:15 - 2013-04-09 23:29 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll

2013-05-17 17:15 - 2013-03-22 04:49 - 02382336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll

2013-05-17 17:15 - 2013-03-21 23:47 - 02851840 ____A (Microsoft Corporation) C:\Windows\System32\esent.dll

2013-05-17 17:15 - 2013-03-15 01:17 - 00861184 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\http.sys

2013-05-17 17:15 - 2013-03-06 08:10 - 00112872 ____A (Microsoft Corporation) C:\Windows\System32\consent.exe

2013-05-17 17:15 - 2013-03-06 07:59 - 00069864 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\pdc.sys

2013-05-17 17:15 - 2013-03-06 07:31 - 19758592 ____A (Microsoft Corporation) C:\Windows\System32\shell32.dll

2013-05-17 17:15 - 2013-03-06 07:31 - 10116608 ____A (Microsoft Corporation) C:\Windows\System32\twinui.dll

2013-05-17 17:15 - 2013-03-06 07:31 - 00222208 ____A (Microsoft Corporation) C:\Windows\System32\shdocvw.dll

2013-05-17 17:15 - 2013-03-06 07:29 - 02303488 ____A (Microsoft Corporation) C:\Windows\System32\authui.dll

2013-05-17 17:15 - 2013-03-06 07:29 - 02146304 ____A (Microsoft Corporation) C:\Windows\System32\actxprxy.dll

2013-05-17 17:15 - 2013-03-06 07:29 - 00070144 ____A (Microsoft Corporation) C:\Windows\System32\appinfo.dll

2013-05-17 17:15 - 2013-03-06 06:03 - 17561600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll

2013-05-17 17:15 - 2013-03-06 06:03 - 08857088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll

2013-05-17 17:15 - 2013-03-06 06:03 - 00199168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll

2013-05-17 17:15 - 2013-03-06 06:02 - 02035200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll

2013-05-17 17:15 - 2013-03-06 06:02 - 00754176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll

2013-05-17 17:15 - 2013-02-12 02:30 - 00044032 ____A (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll

2013-05-17 17:15 - 2013-02-12 01:56 - 00053760 ____A (Microsoft Corporation) C:\Windows\System32\UXInit.dll

2013-05-17 17:13 - 2013-05-17 17:14 - 00210951 ____A C:\Users\Barbara\Documents\mazzo magic.oxps

2013-05-17 17:13 - 2013-05-17 17:13 - 00000000 ____D C:\ProgramData\HP

2013-05-17 16:37 - 2013-05-17 16:37 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\OpenOffice.org

2013-05-14 15:06 - 2013-05-14 15:06 - 06953496 ____A (Microsoft Corporation) C:\Users\Barbara\Downloads\Silverlight.exe

2013-05-13 06:46 - 2013-05-13 06:46 - 00000127 ____A C:\Users\Barbara\Desktop\ckfiles.txt

2013-05-13 06:44 - 2013-05-13 06:44 - 00681472 ____A () C:\Users\Barbara\Desktop\CKScanner.exe

2013-05-12 23:26 - 2013-05-12 23:26 - 00022555 ____A C:\Users\Barbara\Desktop\dds.txt

2013-05-12 23:26 - 2013-05-12 23:26 - 00002695 ____A C:\Users\Barbara\Desktop\attach.txt

2013-05-12 23:12 - 2013-05-12 23:12 - 00688992 ____R (Swearware) C:\Users\Barbara\Desktop\dds.com

2013-05-12 23:12 - 2013-05-12 23:12 - 00688992 ____A (Swearware) C:\Users\Barbara\Downloads\dds.scr

2013-05-12 21:18 - 2013-05-14 19:45 - 00015254 ____A C:\Users\Barbara\AppData\Roaming\Bubble Dock.installation.log

2013-05-12 21:18 - 2013-05-14 19:45 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Nosibay

2013-05-12 21:17 - 2013-05-12 21:21 - 00001269 ____A C:\Users\Barbara\AppData\Roaming\Bubble Dock.boostrap.log

2013-05-12 21:17 - 2013-05-12 21:18 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\WinRAR

2013-05-12 21:17 - 2013-05-12 21:17 - 01650044 ____A C:\Users\Barbara\Desktop\wrar420it.exe

2013-05-12 21:17 - 2013-05-12 21:17 - 00000000 ____D C:\Program Files (x86)\WinRAR

2013-05-12 21:16 - 2013-05-12 21:16 - 00393048 ____A (Softonic ) C:\Users\Barbara\Downloads\SoftonicDownloader_per_winrar.exe

2013-05-12 21:16 - 2013-05-12 21:16 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Macromedia

2013-05-12 19:02 - 2013-05-16 21:26 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\TS3Client

2013-05-12 19:01 - 2013-05-12 19:01 - 00000975 ____A C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk

2013-05-12 19:01 - 2013-05-12 19:01 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client

2013-05-11 23:16 - 2013-05-18 09:00 - 01075196 ____A C:\Windows\SysWOW64\sig.bin

2013-05-11 23:16 - 2013-05-18 09:00 - 00055048 ____A C:\Windows\SysWOW64\nmp.map

2013-05-11 18:47 - 2013-05-11 18:47 - 00000000 ____D C:\Program Files (x86)\Microsoft Chart Controls

2013-05-11 18:15 - 2013-05-11 18:15 - 00001117 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2013-05-11 18:15 - 2013-05-11 18:15 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Malwarebytes

2013-05-11 18:15 - 2013-05-11 18:15 - 00000000 ____D C:\ProgramData\Malwarebytes

2013-05-11 18:15 - 2013-05-11 18:15 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-05-11 18:15 - 2013-04-04 13:50 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys

2013-05-11 17:33 - 2013-05-18 13:42 - 00280792 ____A C:\Windows\SysWOW64\PnkBstrB.xtr

2013-05-11 17:33 - 2013-05-11 17:33 - 00000000 ____D C:\Users\Barbara\AppData\Local\PunkBuster

2013-05-11 17:32 - 2013-05-18 13:42 - 00280792 ____A C:\Windows\SysWOW64\PnkBstrB.exe

2013-05-11 17:32 - 2013-05-18 13:41 - 00280856 ____A C:\Windows\SysWOW64\PnkBstrB.ex0

2013-05-11 17:32 - 2013-05-11 18:48 - 00076888 ____A C:\Windows\SysWOW64\PnkBstrA.exe

2013-05-11 17:32 - 2013-05-11 17:32 - 00000000 ____D C:\Users\Barbara\AppData\Local\CrashRpt

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Program Files\Reference Assemblies

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Program Files\MSBuild

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Program Files (x86)\MSBuild

2013-05-11 17:30 - 2012-07-06 03:02 - 01166440 ____A (Microsoft Corporation) C:\Windows\System32\PresentationNative_v0300.dll

2013-05-11 17:30 - 2012-07-06 03:02 - 00778856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll

2013-05-11 17:30 - 2012-07-06 03:02 - 00124040 ____A (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll

2013-05-11 17:30 - 2012-07-06 03:02 - 00102528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll

2013-05-11 17:30 - 2012-07-06 03:02 - 00035400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe

2013-05-11 17:30 - 2012-07-06 03:02 - 00035400 ____A (Microsoft Corporation) C:\Windows\System32\TsWpfWrp.exe

2013-05-11 17:20 - 2013-05-18 13:40 - 00000000 ____D C:\Users\Barbara\Documents\my games

2013-05-11 17:20 - 2010-06-02 03:55 - 00527192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll

2013-05-11 17:20 - 2010-06-02 03:55 - 00518488 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_7.dll

2013-05-11 17:20 - 2010-06-02 03:55 - 00239960 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll

2013-05-11 17:20 - 2010-06-02 03:55 - 00176984 ____A (Microsoft Corporation) C:\Windows\System32\xactengine3_7.dll

2013-05-11 17:20 - 2010-06-02 03:55 - 00077656 ____A (Microsoft Corporation) C:\Windows\System32\XAPOFX1_5.dll

2013-05-11 17:20 - 2010-06-02 03:55 - 00074072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 02526056 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 02401112 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 02106216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 01998168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 01907552 ____A (Microsoft Corporation) C:\Windows\System32\d3dcsx_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 01868128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 00511328 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 00470880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 00276832 ____A (Microsoft Corporation) C:\Windows\System32\d3dx11_43.dll

2013-05-11 17:20 - 2010-05-26 10:41 - 00248672 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll

2013-05-11 17:20 - 2010-02-04 09:01 - 00530776 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_6.dll

2013-05-11 17:20 - 2010-02-04 09:01 - 00528216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll

2013-05-11 17:20 - 2010-02-04 09:01 - 00238936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll

2013-05-11 17:20 - 2010-02-04 09:01 - 00176984 ____A (Microsoft Corporation) C:\Windows\System32\xactengine3_6.dll

2013-05-11 17:20 - 2010-02-04 09:01 - 00078680 ____A (Microsoft Corporation) C:\Windows\System32\XAPOFX1_4.dll

2013-05-11 17:20 - 2010-02-04 09:01 - 00074072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll

2013-05-11 17:20 - 2010-02-04 09:01 - 00024920 ____A (Microsoft Corporation) C:\Windows\System32\X3DAudio1_7.dll

2013-05-11 17:20 - 2010-02-04 09:01 - 00022360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll

2013-05-11 17:20 - 2009-09-04 16:44 - 00517960 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_5.dll

2013-05-11 17:20 - 2009-09-04 16:44 - 00515416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll

2013-05-11 17:20 - 2009-09-04 16:44 - 00238936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll

2013-05-11 17:20 - 2009-09-04 16:44 - 00176968 ____A (Microsoft Corporation) C:\Windows\System32\xactengine3_5.dll

2013-05-11 17:20 - 2009-09-04 16:44 - 00073544 ____A (Microsoft Corporation) C:\Windows\System32\XAPOFX1_3.dll

2013-05-11 17:20 - 2009-09-04 16:44 - 00069464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 05554512 ____A (Microsoft Corporation) C:\Windows\System32\d3dcsx_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 05501792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 02582888 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 02475352 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 01974616 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 01892184 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 00523088 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 00453456 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 00285024 ____A (Microsoft Corporation) C:\Windows\System32\d3dx11_42.dll

2013-05-11 17:20 - 2009-09-04 16:29 - 00235344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll

2013-05-11 17:20 - 2009-03-16 13:18 - 00521560 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_4.dll

2013-05-11 17:20 - 2009-03-16 13:18 - 00517448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll

2013-05-11 17:20 - 2009-03-16 13:18 - 00235352 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll

2013-05-11 17:20 - 2009-03-16 13:18 - 00174936 ____A (Microsoft Corporation) C:\Windows\System32\xactengine3_4.dll

2013-05-11 17:20 - 2009-03-09 14:27 - 05425496 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_41.dll

2013-05-11 17:20 - 2009-03-09 14:27 - 04178264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll

2013-05-11 17:20 - 2009-03-09 14:27 - 02430312 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_41.dll

2013-05-11 17:20 - 2009-03-09 14:27 - 01846632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll

2013-05-11 17:20 - 2009-03-09 14:27 - 00520544 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_41.dll

2013-05-11 17:20 - 2009-03-09 14:27 - 00453456 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll

2013-05-11 17:19 - 2013-05-11 18:47 - 00010449 ____A C:\Windows\DirectX.log

2013-05-11 17:19 - 2009-03-16 13:18 - 00024920 ____A (Microsoft Corporation) C:\Windows\System32\X3DAudio1_6.dll

2013-05-11 17:19 - 2009-03-16 13:18 - 00022360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll

2013-05-11 17:19 - 2008-10-27 09:04 - 00518480 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_3.dll

2013-05-11 17:19 - 2008-10-27 09:04 - 00514384 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll

2013-05-11 17:19 - 2008-10-27 09:04 - 00235856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll

2013-05-11 17:19 - 2008-10-27 09:04 - 00175440 ____A (Microsoft Corporation) C:\Windows\System32\xactengine3_3.dll

2013-05-11 17:19 - 2008-10-27 09:04 - 00074576 ____A (Microsoft Corporation) C:\Windows\System32\XAPOFX1_2.dll

2013-05-11 17:19 - 2008-10-27 09:04 - 00070992 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll

2013-05-11 17:19 - 2008-10-27 09:04 - 00025936 ____A (Microsoft Corporation) C:\Windows\System32\X3DAudio1_5.dll

2013-05-11 17:19 - 2008-10-27 09:04 - 00023376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll

2013-05-11 17:19 - 2008-10-15 05:22 - 05631312 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll

2013-05-11 17:19 - 2008-10-15 05:22 - 04379984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll

2013-05-11 17:19 - 2008-10-15 05:22 - 02605920 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll

2013-05-11 17:19 - 2008-10-15 05:22 - 02036576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll

2013-05-11 17:19 - 2008-10-15 05:22 - 00519000 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll

2013-05-11 17:19 - 2008-10-15 05:22 - 00452440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll

2013-05-11 17:19 - 2008-07-31 09:41 - 00238088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll

2013-05-11 17:19 - 2008-07-31 09:41 - 00177672 ____A (Microsoft Corporation) C:\Windows\System32\xactengine3_2.dll

2013-05-11 17:19 - 2008-07-31 09:41 - 00072200 ____A (Microsoft Corporation) C:\Windows\System32\XAPOFX1_1.dll

2013-05-11 17:19 - 2008-07-31 09:41 - 00068616 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll

2013-05-11 17:19 - 2008-07-31 09:40 - 00513544 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_2.dll

2013-05-11 17:19 - 2008-07-31 09:40 - 00509448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll

2013-05-11 17:19 - 2008-07-10 10:01 - 00467984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll

2013-05-11 17:19 - 2008-07-10 10:00 - 04992520 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_39.dll

2013-05-11 17:19 - 2008-07-10 10:00 - 03851784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll

2013-05-11 17:19 - 2008-07-10 10:00 - 01942552 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_39.dll

2013-05-11 17:19 - 2008-07-10 10:00 - 01493528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll

2013-05-11 17:19 - 2008-07-10 10:00 - 00540688 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_39.dll

2013-05-11 17:19 - 2008-05-30 13:19 - 00511496 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_1.dll

2013-05-11 17:19 - 2008-05-30 13:19 - 00507400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll

2013-05-11 17:19 - 2008-05-30 13:18 - 00238088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll

2013-05-11 17:19 - 2008-05-30 13:18 - 00177672 ____A (Microsoft Corporation) C:\Windows\System32\xactengine3_1.dll

2013-05-11 17:19 - 2008-05-30 13:17 - 00068104 ____A (Microsoft Corporation) C:\Windows\System32\XAPOFX1_0.dll

2013-05-11 17:19 - 2008-05-30 13:17 - 00065032 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll

2013-05-11 17:19 - 2008-05-30 13:17 - 00025608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll

2013-05-11 17:19 - 2008-05-30 13:16 - 00028168 ____A (Microsoft Corporation) C:\Windows\System32\X3DAudio1_4.dll

2013-05-11 17:19 - 2008-05-30 13:11 - 04991496 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_38.dll

2013-05-11 17:19 - 2008-05-30 13:11 - 03850760 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll

2013-05-11 17:19 - 2008-05-30 13:11 - 01941528 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_38.dll

2013-05-11 17:19 - 2008-05-30 13:11 - 01491992 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll

2013-05-11 17:19 - 2008-05-30 13:11 - 00540688 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_38.dll

2013-05-11 17:19 - 2008-05-30 13:11 - 00467984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll

2013-05-11 17:19 - 2008-03-05 15:04 - 00489480 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_0.dll

2013-05-11 17:19 - 2008-03-05 15:03 - 00479752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll

2013-05-11 17:19 - 2008-03-05 15:03 - 00238088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll

2013-05-11 17:19 - 2008-03-05 15:03 - 00177672 ____A (Microsoft Corporation) C:\Windows\System32\xactengine3_0.dll

2013-05-11 17:19 - 2008-03-05 15:00 - 00028168 ____A (Microsoft Corporation) C:\Windows\System32\X3DAudio1_3.dll

2013-05-11 17:19 - 2008-03-05 15:00 - 00025608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll

2013-05-11 17:19 - 2008-03-05 14:56 - 04910088 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_37.dll

2013-05-11 17:19 - 2008-03-05 14:56 - 03786760 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll

2013-05-11 17:19 - 2008-03-05 14:56 - 01860120 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_37.dll

2013-05-11 17:19 - 2008-03-05 14:56 - 01420824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll

2013-05-11 17:19 - 2008-02-05 22:07 - 00529424 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_37.dll

2013-05-11 17:19 - 2008-02-05 22:07 - 00462864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll

2013-05-11 17:19 - 2007-10-22 02:40 - 00411656 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_10.dll

2013-05-11 17:19 - 2007-10-22 02:39 - 00267272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll

2013-05-11 17:19 - 2007-10-22 02:37 - 00021000 ____A (Microsoft Corporation) C:\Windows\System32\X3DAudio1_2.dll

2013-05-11 17:19 - 2007-10-22 02:37 - 00017928 ____A (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll

2013-05-11 17:19 - 2007-10-12 14:14 - 05081608 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_36.dll

2013-05-11 17:19 - 2007-10-12 14:14 - 03734536 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll

2013-05-11 17:19 - 2007-10-12 14:14 - 02006552 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_36.dll

2013-05-11 17:19 - 2007-10-12 14:14 - 01374232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll

2013-05-11 17:19 - 2007-10-02 08:56 - 00508264 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_36.dll

2013-05-11 17:19 - 2007-10-02 08:56 - 00444776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll

2013-05-11 17:19 - 2007-07-19 23:57 - 00411496 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_9.dll

2013-05-11 17:19 - 2007-07-19 23:57 - 00267112 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll

2013-05-11 17:19 - 2007-07-19 17:14 - 05073256 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_35.dll

2013-05-11 17:19 - 2007-07-19 17:14 - 03727720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll

2013-05-11 17:19 - 2007-07-19 17:14 - 01985904 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_35.dll

2013-05-11 17:19 - 2007-07-19 17:14 - 01358192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll

2013-05-11 17:19 - 2007-07-19 17:14 - 00508264 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_35.dll

2013-05-11 17:19 - 2007-07-19 17:14 - 00444776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll

2013-05-11 17:19 - 2007-06-20 19:49 - 00409960 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_8.dll

2013-05-11 17:19 - 2007-06-20 19:46 - 00266088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll

2013-05-11 17:19 - 2007-05-16 15:45 - 04496232 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_34.dll

2013-05-11 17:19 - 2007-05-16 15:45 - 03497832 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll

2013-05-11 17:19 - 2007-05-16 15:45 - 01401200 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_34.dll

2013-05-11 17:19 - 2007-05-16 15:45 - 01124720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll

2013-05-11 17:19 - 2007-05-16 15:45 - 00506728 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_34.dll

2013-05-11 17:19 - 2007-05-16 15:45 - 00443752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll

2013-05-11 17:19 - 2007-04-04 17:55 - 00403304 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_7.dll

2013-05-11 17:19 - 2007-04-04 17:55 - 00261480 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll

2013-05-11 17:19 - 2007-04-04 17:54 - 00107368 ____A (Microsoft Corporation) C:\Windows\System32\xinput1_3.dll

2013-05-11 17:19 - 2007-04-04 17:53 - 00081768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll

2013-05-11 17:19 - 2007-03-15 15:57 - 00506728 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_33.dll

2013-05-11 17:19 - 2007-03-15 15:57 - 00443752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll

2013-05-11 17:19 - 2007-03-12 15:42 - 04494184 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_33.dll

2013-05-11 17:19 - 2007-03-12 15:42 - 03495784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll

2013-05-11 17:19 - 2007-03-12 15:42 - 01400176 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_33.dll

2013-05-11 17:19 - 2007-03-12 15:42 - 01123696 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll

2013-05-11 17:19 - 2007-03-05 11:42 - 00017688 ____A (Microsoft Corporation) C:\Windows\System32\x3daudio1_1.dll

2013-05-11 17:19 - 2007-03-05 11:42 - 00015128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll

2013-05-11 17:19 - 2007-01-24 14:27 - 00393576 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_6.dll

2013-05-11 17:19 - 2007-01-24 14:27 - 00255848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll

2013-05-11 17:19 - 2006-12-08 11:02 - 00251672 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll

2013-05-11 17:19 - 2006-12-08 11:00 - 00390424 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_5.dll

2013-05-11 17:19 - 2006-11-29 12:06 - 04398360 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_32.dll

2013-05-11 17:19 - 2006-11-29 12:06 - 03426072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll

2013-05-11 17:19 - 2006-11-29 12:06 - 00469264 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10.dll

2013-05-11 17:19 - 2006-11-29 12:06 - 00440080 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll

2013-05-11 17:19 - 2006-09-28 15:05 - 03977496 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_31.dll

2013-05-11 17:19 - 2006-09-28 15:05 - 02414360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll

2013-05-11 17:19 - 2006-09-28 15:05 - 00237848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll

2013-05-11 17:19 - 2006-09-28 15:04 - 00364824 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_4.dll

2013-05-11 17:19 - 2006-07-28 08:31 - 00083736 ____A (Microsoft Corporation) C:\Windows\System32\xinput1_2.dll

2013-05-11 17:19 - 2006-07-28 08:30 - 00363288 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_3.dll

2013-05-11 17:19 - 2006-07-28 08:30 - 00236824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll

2013-05-11 17:19 - 2006-07-28 08:30 - 00062744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll

2013-05-11 17:19 - 2006-05-31 06:24 - 00230168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll

2013-05-11 17:19 - 2006-05-31 06:22 - 00354072 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_2.dll

2013-05-11 17:19 - 2006-03-31 11:41 - 03927248 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_30.dll

2013-05-11 17:19 - 2006-03-31 11:40 - 02388176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll

2013-05-11 17:19 - 2006-03-31 11:40 - 00352464 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_1.dll

2013-05-11 17:19 - 2006-03-31 11:39 - 00229584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll

2013-05-11 17:19 - 2006-03-31 11:39 - 00083664 ____A (Microsoft Corporation) C:\Windows\System32\xinput1_1.dll

2013-05-11 17:19 - 2006-03-31 11:39 - 00062672 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll

2013-05-11 17:19 - 2006-02-03 07:43 - 03830992 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_29.dll

2013-05-11 17:19 - 2006-02-03 07:43 - 02332368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll

2013-05-11 17:19 - 2006-02-03 07:42 - 00355536 ____A (Microsoft Corporation) C:\Windows\System32\xactengine2_0.dll

2013-05-11 17:19 - 2006-02-03 07:42 - 00230096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll

2013-05-11 17:19 - 2006-02-03 07:41 - 00016592 ____A (Microsoft Corporation) C:\Windows\System32\x3daudio1_0.dll

2013-05-11 17:19 - 2006-02-03 07:41 - 00014032 ____A (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll

2013-05-11 17:19 - 2005-12-05 17:09 - 03815120 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_28.dll

2013-05-11 17:19 - 2005-12-05 17:09 - 02323664 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll

2013-05-11 17:19 - 2005-07-22 18:59 - 03807440 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_27.dll

2013-05-11 17:19 - 2005-07-22 18:59 - 02319568 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll

2013-05-11 17:19 - 2005-05-26 14:34 - 03767504 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_26.dll

2013-05-11 17:19 - 2005-05-26 14:34 - 02297552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll

2013-05-11 17:19 - 2005-03-18 16:19 - 03823312 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_25.dll

2013-05-11 17:19 - 2005-03-18 16:19 - 02337488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll

2013-05-11 17:19 - 2005-02-05 18:45 - 03544272 ____A (Microsoft Corporation) C:\Windows\System32\d3dx9_24.dll

2013-05-11 17:19 - 2005-02-05 18:45 - 02222800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll

2013-05-11 17:14 - 2013-05-11 17:14 - 01719648 ____A C:\Windows\SysWOW64\PerfStringBackup.INI

2013-05-11 17:13 - 2013-05-11 17:13 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Intel Corporation

2013-05-11 17:12 - 2013-05-11 17:12 - 00309400 ____A C:\Windows\System32\FNTCACHE.DAT

2013-05-11 17:09 - 2013-05-11 17:09 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information

2013-05-11 17:09 - 2013-05-11 17:09 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\InstallShield

2013-05-11 17:09 - 2012-11-19 11:10 - 00652344 ____A (Intel Corporation) C:\Windows\System32\Drivers\iaStorA.sys

2013-05-11 11:02 - 2013-05-11 11:04 - 12384248 ____A (Macrovision Corporation) C:\Users\Barbara\Downloads\iata_cd (1).exe

2013-05-11 10:57 - 2013-05-11 10:57 - 00106648 ____A (G Data Software) C:\Windows\System32\Drivers\GRD.sys

2013-05-11 10:50 - 2013-05-11 10:51 - 07767368 ____A (Intel Corporation) C:\Users\Barbara\Downloads\iata_cd.exe

2013-05-11 10:47 - 2013-05-11 10:51 - 17171440 ____A (Intel Corporation) C:\Users\Barbara\Downloads\SetupRST (1).exe

2013-05-11 10:45 - 2013-05-11 10:45 - 00000000 ____D C:\Users\Barbara\Intel

2013-05-11 10:42 - 2013-05-11 10:45 - 17171440 ____A (Intel Corporation) C:\Users\Barbara\Downloads\SetupRST.exe

2013-05-11 10:31 - 2013-05-11 10:31 - 00001196 ____A C:\Users\Public\Desktop\OpenOffice.org 3.4.1.lnk

2013-05-11 10:31 - 2013-05-11 10:31 - 00000000 ____D C:\Users\Barbara\Desktop\OpenOffice.org 3.4.1 (it) Installation Files

2013-05-11 10:31 - 2013-05-11 10:31 - 00000000 ____D C:\Program Files (x86)\OpenOffice.org 3

2013-05-11 10:30 - 2013-05-11 10:38 - 34954912 ____A (TeamSpeak Systems GmbH) C:\Users\Barbara\Downloads\TeamSpeak3-Client-win64-3.0.10.1.exe

2013-05-11 10:19 - 2013-05-11 10:19 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf

2013-05-11 10:16 - 2013-05-18 13:55 - 00000000 ____D C:\Program Files (x86)\Steam

2013-05-11 10:16 - 2013-05-11 10:16 - 00000925 ____A C:\Users\Public\Desktop\Steam.lnk

2013-05-11 10:08 - 2013-05-11 10:08 - 00000117 ____A C:\Windows\System32\netcfg-21044.txt

2013-05-11 10:08 - 2013-05-11 10:08 - 00000117 ____A C:\Windows\System32\netcfg-20950.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000117 ____A C:\Windows\System32\netcfg-32198.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000117 ____A C:\Windows\System32\netcfg-32167.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000117 ____A C:\Windows\System32\netcfg-22620.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000117 ____A C:\Windows\System32\netcfg-22417.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\ATI

2013-05-11 09:59 - 2013-05-11 09:59 - 00000000 ____D C:\Users\Barbara\AppData\Local\ATI

2013-05-11 09:59 - 2013-05-11 09:59 - 00000000 ____D C:\ProgramData\ATI

2013-05-11 09:52 - 2013-05-11 09:52 - 00002233 ____A C:\Users\Public\Desktop\TuneUp Manutenzione in 1 clic.lnk

2013-05-11 09:52 - 2013-05-11 09:52 - 00002189 ____A C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk

2013-05-11 09:52 - 2013-05-11 09:52 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\TuneUp Software

2013-05-11 09:52 - 2013-05-11 09:52 - 00000000 ____D C:\ProgramData\TuneUp Software

2013-05-11 09:52 - 2013-05-11 09:52 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013

2013-05-11 09:52 - 2013-01-31 09:57 - 00035104 ____A (TuneUp Software) C:\Windows\System32\TURegOpt.exe

2013-05-11 09:52 - 2013-01-31 09:57 - 00026400 ____A (TuneUp Software) C:\Windows\System32\authuitu.dll

2013-05-11 09:52 - 2013-01-31 09:57 - 00021792 ____A (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll

2013-05-11 09:49 - 2013-05-11 09:49 - 00001111 ____A C:\Users\Public\Desktop\Samsung Magician.lnk

2013-05-11 09:49 - 2013-05-11 09:49 - 00000000 ____D C:\ProgramData\Samsung

2013-05-11 09:49 - 2013-05-11 09:49 - 00000000 ____D C:\Program Files (x86)\Samsung Magician

2013-05-11 09:44 - 2013-05-11 08:50 - 00000000 ____D C:\Windows\Panther

2013-05-11 09:42 - 2013-05-11 09:42 - 00000117 ____A C:\Windows\System32\netcfg-33259.txt

2013-05-11 09:42 - 2013-05-11 09:42 - 00000117 ____A C:\Windows\System32\netcfg-33212.txt

2013-05-11 09:41 - 2013-05-11 09:41 - 00000117 ____A C:\Windows\System32\netcfg-23712.txt

2013-05-11 09:41 - 2013-05-11 09:41 - 00000117 ____A C:\Windows\System32\netcfg-23524.txt

2013-05-11 09:38 - 2013-05-11 08:55 - 00000000 ____D C:\Windows.old.000

2013-05-11 09:36 - 2013-05-11 17:09 - 00000000 ____D C:\Program Files (x86)\Intel

2013-05-11 09:36 - 2013-02-27 14:37 - 00053248 ____A (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll

2013-05-11 09:35 - 2013-05-11 09:35 - 00000000 ____D C:\ProgramData\AMD

2013-05-11 09:35 - 2013-05-11 09:35 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies

2013-05-11 09:35 - 2013-05-11 09:35 - 00000000 ____D C:\Program Files (x86)\AMD AVT

2013-05-11 09:34 - 2013-05-11 09:35 - 00000000 ____D C:\Program Files\ATI Technologies

2013-05-11 09:34 - 2013-05-11 09:34 - 00000000 ____D C:\Program Files\ATI

2013-05-11 09:34 - 2013-05-11 09:34 - 00000000 ____D C:\Program Files (x86)\ATI Technologies

2013-05-11 09:30 - 2013-05-11 09:36 - 00000000 ____D C:\Users\Public\Documents\DriverGenius

2013-05-11 09:29 - 2013-05-14 08:52 - 00000000 ____D C:\ProgramData\DriverGenius

2013-05-11 09:29 - 2013-05-11 09:29 - 00001215 ____A C:\Users\Barbara\Desktop\Driver Genius Professional Edition.lnk

2013-05-11 09:29 - 2013-05-11 09:29 - 00000000 ____D C:\Program Files (x86)\Driver-Soft

2013-05-11 09:26 - 2012-11-20 06:24 - 01164800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll

2013-05-11 09:26 - 2012-11-20 06:17 - 01184256 ____A (Microsoft Corporation) C:\Windows\System32\Display.dll

2013-05-11 09:26 - 2012-11-20 06:02 - 00006656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KBDKURD.DLL

2013-05-11 09:26 - 2012-11-20 05:59 - 00007168 ____A (Microsoft Corporation) C:\Windows\System32\KBDKURD.DLL

2013-05-11 09:26 - 2012-11-08 05:25 - 00523776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll

2013-05-11 09:26 - 2012-11-08 05:25 - 00143872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll

2013-05-11 09:26 - 2012-11-08 05:25 - 00124928 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll

2013-05-11 09:26 - 2012-11-08 05:22 - 00641536 ____A (Microsoft Corporation) C:\Windows\System32\WSShared.dll

2013-05-11 09:26 - 2012-11-08 05:22 - 00198656 ____A (Microsoft Corporation) C:\Windows\System32\Windows.ApplicationModel.Store.dll

2013-05-11 09:26 - 2012-11-08 05:22 - 00163840 ____A (Microsoft Corporation) C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll

2013-05-11 09:26 - 2012-10-24 05:54 - 00396008 ____A (Microsoft Corporation) C:\Windows\System32\hal.dll

2013-05-11 09:26 - 2012-10-17 05:32 - 01172992 ____A (Microsoft Corporation) C:\Windows\System32\mfnetsrc.dll

2013-05-11 09:26 - 2012-10-17 05:32 - 00677888 ____A (Microsoft Corporation) C:\Windows\System32\mfnetcore.dll

2013-05-11 09:26 - 2012-10-17 05:32 - 00673280 ____A (Microsoft Corporation) C:\Windows\System32\mfmpeg2srcsnk.dll

2013-05-11 09:26 - 2012-10-17 04:57 - 00929792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll

2013-05-11 09:26 - 2012-10-17 04:57 - 00568832 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll

2013-05-11 09:26 - 2012-10-17 04:57 - 00513024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll

2013-05-11 09:26 - 2012-10-12 07:13 - 00109568 ____A (Microsoft Corporation) C:\Windows\System32\dskquota.dll

2013-05-11 09:26 - 2012-10-12 06:39 - 00082944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dskquota.dll

2013-05-11 09:26 - 2012-10-11 08:47 - 00793200 ____A (Microsoft Corporation) C:\Windows\System32\mfplat.dll

2013-05-11 09:26 - 2012-10-11 08:35 - 02380944 ____A (Microsoft Corporation) C:\Windows\explorer.exe

2013-05-11 09:26 - 2012-10-11 08:25 - 00056552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\sdstor.sys

2013-05-11 09:26 - 2012-10-11 08:23 - 00441576 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys

2013-05-11 09:26 - 2012-10-11 08:18 - 00172264 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys

2013-05-11 09:26 - 2012-10-11 08:16 - 01403784 ____A (Microsoft Corporation) C:\Windows\System32\winload.efi

2013-05-11 09:26 - 2012-10-11 08:16 - 01267424 ____A (Microsoft Corporation) C:\Windows\System32\winload.exe

2013-05-11 09:26 - 2012-10-11 08:16 - 01217328 ____A (Microsoft Corporation) C:\Windows\System32\winresume.efi

2013-05-11 09:26 - 2012-10-11 08:16 - 01093880 ____A (Microsoft Corporation) C:\Windows\System32\winresume.exe

2013-05-11 09:26 - 2012-10-11 08:13 - 00058088 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dam.sys

2013-05-11 09:26 - 2012-10-11 08:13 - 00033512 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\battc.sys

2013-05-11 09:26 - 2012-10-11 08:08 - 00562392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\cng.sys

2013-05-11 09:26 - 2012-10-11 08:01 - 00503080 ____A (Microsoft Corporation) C:\Windows\System32\ci.dll

2013-05-11 09:26 - 2012-10-11 06:56 - 02115952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe

2013-05-11 09:26 - 2012-10-11 06:46 - 01395712 ____A (Microsoft Corporation) C:\Windows\System32\Windows.UI.Immersive.dll

2013-05-11 09:26 - 2012-10-11 06:46 - 00816128 ____A (Microsoft Corporation) C:\Windows\System32\SearchIndexer.exe

2013-05-11 09:26 - 2012-10-11 06:46 - 00517120 ____A (Microsoft Corporation) C:\Windows\System32\winlogon.exe

2013-05-11 09:26 - 2012-10-11 06:46 - 00373760 ____A (Microsoft Corporation) C:\Windows\System32\SearchProtocolHost.exe

2013-05-11 09:26 - 2012-10-11 06:46 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\SearchFilterHost.exe

2013-05-11 09:26 - 2012-10-11 06:46 - 00154112 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Storage.Compression.dll

2013-05-11 09:26 - 2012-10-11 06:46 - 00049664 ____A (Microsoft Corporation) C:\Windows\System32\BdeUISrv.exe

2013-05-11 09:26 - 2012-10-11 06:46 - 00024576 ____A (Microsoft Corporation) C:\Windows\System32\wfapigp.dll

2013-05-11 09:26 - 2012-10-11 06:45 - 03554304 ____A (Microsoft Corporation) C:\Windows\System32\tquery.dll

2013-05-11 09:26 - 2012-10-11 06:45 - 01045504 ____A (Microsoft Corporation) C:\Windows\System32\usercpl.dll

2013-05-11 09:26 - 2012-10-11 06:45 - 00590848 ____A (Microsoft Corporation) C:\Windows\System32\SHCore.dll

2013-05-11 09:26 - 2012-10-11 06:45 - 00579584 ____A (Microsoft Corporation) C:\Windows\System32\StructuredQuery.dll

2013-05-11 09:26 - 2012-10-11 06:45 - 00505344 ____A (Microsoft Corporation) C:\Windows\System32\SpaceControl.dll

2013-05-11 09:26 - 2012-10-11 06:45 - 00370176 ____A (Microsoft Corporation) C:\Windows\System32\SysFxUI.dll

2013-05-11 09:26 - 2012-10-11 06:45 - 00055808 ____A (Microsoft Corporation) C:\Windows\System32\PCPKsp.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 02116096 ____A (Microsoft Corporation) C:\Windows\System32\mssrch.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 01265152 ____A (Microsoft Corporation) C:\Windows\System32\lsasrv.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00904192 ____A (Microsoft Corporation) C:\Windows\System32\MPSSVC.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00745984 ____A (Microsoft Corporation) C:\Windows\System32\mssvp.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00561152 ____A (Microsoft Corporation) C:\Windows\System32\mfmp4srcsnk.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00435712 ____A (Microsoft Corporation) C:\Windows\System32\mssph.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00355328 ____A (Microsoft Corporation) C:\Windows\System32\mswsock.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00264704 ____A (Microsoft Corporation) C:\Windows\System32\ListSvc.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00259584 ____A (Microsoft Corporation) C:\Windows\System32\input.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00246272 ____A (Microsoft Corporation) C:\Windows\System32\mssphtb.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00105984 ____A (Microsoft Corporation) C:\Windows\System32\icfupgd.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00102400 ____A (Microsoft Corporation) C:\Windows\System32\mssitlb.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00096256 ____A (Microsoft Corporation) C:\Windows\System32\mssprxy.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\msscntrs.dll

2013-05-11 09:26 - 2012-10-11 06:44 - 00014336 ____A (Microsoft Corporation) C:\Windows\System32\msshooks.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 02206208 ____A (Microsoft Corporation) C:\Windows\System32\dwmcore.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 01836032 ____A (Microsoft Corporation) C:\Windows\System32\DWrite.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 01294336 ____A (Microsoft Corporation) C:\Windows\System32\gdi32.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 01280000 ____A (Microsoft Corporation) C:\Windows\System32\FntCache.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 00757760 ____A (Microsoft Corporation) C:\Windows\System32\FirewallAPI.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 00331776 ____A (Microsoft Corporation) C:\Windows\System32\dhcpcore.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 00244224 ____A (Microsoft Corporation) C:\Windows\System32\dhcpcore6.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 00190976 ____A (Microsoft Corporation) C:\Windows\System32\bdesvc.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 00118784 ____A (Microsoft Corporation) C:\Windows\System32\AppxSip.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 00081920 ____A (Microsoft Corporation) C:\Windows\System32\dhcpcsvc.dll

2013-05-11 09:26 - 2012-10-11 06:43 - 00062976 ____A (Microsoft Corporation) C:\Windows\System32\dhcpcsvc6.dll

2013-05-11 09:26 - 2012-10-11 06:42 - 00612416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll

2013-05-11 09:26 - 2012-10-11 06:23 - 00034816 ____A (Microsoft Corporation) C:\Windows\System32\microsoft-windows-pdc.dll

2013-05-11 09:26 - 2012-10-11 06:23 - 00007680 ____A (Microsoft Corporation) C:\Windows\System32\kbdhebl3.dll

2013-05-11 09:26 - 2012-10-11 06:20 - 00043008 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbscan.sys

2013-05-11 09:26 - 2012-10-11 06:19 - 00005632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\drmkaud.sys

2013-05-11 09:26 - 2012-10-11 06:18 - 00111616 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\drmk.sys

2013-05-11 09:26 - 2012-10-11 06:16 - 00286208 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\portcls.sys

2013-05-11 09:26 - 2012-10-11 06:15 - 00074752 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mpsdrv.sys

2013-05-11 09:26 - 2012-10-11 06:08 - 00671232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe

2013-05-11 09:26 - 2012-10-11 06:08 - 00303104 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe

2013-05-11 09:26 - 2012-10-11 06:08 - 00170496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe

2013-05-11 09:26 - 2012-10-11 06:07 - 02764288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll

2013-05-11 09:26 - 2012-10-11 06:07 - 01226752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll

2013-05-11 09:26 - 2012-10-11 06:07 - 00962560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll

2013-05-11 09:26 - 2012-10-11 06:07 - 00460800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll

2013-05-11 09:26 - 2012-10-11 06:07 - 00414720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll

2013-05-11 09:26 - 2012-10-11 06:07 - 00116224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Compression.dll

2013-05-11 09:26 - 2012-10-11 06:07 - 00047616 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll

2013-05-11 09:26 - 2012-10-11 06:07 - 00019968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 01841152 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 01610240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 01420800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00658432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00653824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00550912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00411136 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00408064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00289280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00270336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00219648 ____A (Microsoft Corporation) C:\Windows\SysWOW64\input.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00204800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00186880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00094208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00060416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00051712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00035328 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll

2013-05-11 09:26 - 2012-10-11 06:06 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll

2013-05-11 09:26 - 2012-10-11 06:05 - 00099840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll

2013-05-11 09:26 - 2012-10-11 05:42 - 00007168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kbdhebl3.dll

2013-05-11 09:26 - 2012-10-11 04:11 - 01022464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll

2013-05-11 09:26 - 2012-10-11 01:45 - 00478424 ____A C:\Windows\SysWOW64\locale.nls

2013-05-11 09:26 - 2012-10-11 01:44 - 00478424 ____A C:\Windows\System32\locale.nls

2013-05-11 09:26 - 2012-10-02 08:34 - 00446976 ____A (Microsoft Corporation) C:\Windows\System32\wwansvc.dll

2013-05-11 09:26 - 2012-10-02 08:34 - 00068608 ____A (Microsoft Corporation) C:\Windows\System32\wwanprotdim.dll

2013-05-11 09:26 - 2012-09-27 08:17 - 00076288 ____A (Microsoft Corporation) C:\Windows\System32\newdev.exe

2013-05-11 09:26 - 2012-09-27 08:17 - 00075264 ____A (Microsoft Corporation) C:\Windows\System32\ndadmin.exe

2013-05-11 09:26 - 2012-09-27 08:15 - 00301568 ____A (Microsoft Corporation) C:\Windows\System32\newdev.dll

2013-05-11 09:26 - 2012-09-27 07:35 - 00074240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\newdev.exe

2013-05-11 09:26 - 2012-09-27 07:35 - 00073728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ndadmin.exe

2013-05-11 09:26 - 2012-09-27 07:34 - 00275968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll

2013-05-11 09:25 - 2012-12-04 05:21 - 00368640 ____A (Microsoft Corporation) C:\Windows\System32\sppwinob.dll

2013-05-11 09:25 - 2012-11-29 06:05 - 01131520 ____A (Microsoft Corporation) C:\Windows\System32\AppXDeploymentServer.dll

2013-05-11 09:25 - 2012-11-29 06:05 - 00707584 ____A (Microsoft Corporation) C:\Windows\System32\AppXDeploymentExtensions.dll

2013-05-11 09:25 - 2012-11-27 07:39 - 01122768 ____A (Microsoft Corporation) C:\Windows\System32\Taskmgr.exe

2013-05-11 09:25 - 2012-11-27 05:49 - 01027152 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe

2013-05-11 09:25 - 2012-11-27 05:20 - 01217536 ____A (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll

2013-05-11 09:25 - 2012-11-27 05:20 - 01123840 ____A (Microsoft Corporation) C:\Windows\System32\mstsc.exe

2013-05-11 09:25 - 2012-11-27 05:20 - 01048064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe

2013-05-11 09:25 - 2012-11-27 05:20 - 00798208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll

2013-05-11 09:25 - 2012-11-27 05:20 - 00702464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll

2013-05-11 09:25 - 2012-11-27 05:20 - 00680960 ____A (Microsoft Corporation) C:\Windows\System32\vds.exe

2013-05-11 09:25 - 2012-11-27 05:20 - 00560128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll

2013-05-11 09:25 - 2012-11-27 05:20 - 00179200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll

2013-05-11 09:25 - 2012-11-27 05:20 - 00046592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vds_ps.dll

2013-05-11 09:25 - 2012-11-27 05:19 - 03245568 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll

2013-05-11 09:25 - 2012-11-27 05:19 - 01536512 ____A (Microsoft Corporation) C:\Windows\System32\storagewmi.dll

2013-05-11 09:25 - 2012-11-27 05:19 - 00955904 ____A (Microsoft Corporation) C:\Windows\System32\WebcamUi.dll

2013-05-11 09:25 - 2012-11-27 05:19 - 00631808 ____A (Microsoft Corporation) C:\Windows\System32\UserLanguagesCpl.dll

2013-05-11 09:25 - 2012-11-27 05:19 - 00245248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL

2013-05-11 09:25 - 2012-11-27 05:19 - 00244736 ____A (Microsoft Corporation) C:\Windows\System32\wpnapps.dll

2013-05-11 09:25 - 2012-11-27 05:18 - 01071104 ____A (Microsoft Corporation) C:\Windows\System32\IKEEXT.DLL

2013-05-11 09:25 - 2012-11-27 05:18 - 00888832 ____A (Microsoft Corporation) C:\Windows\System32\nshwfp.dll

2013-05-11 09:25 - 2012-11-27 05:18 - 00378880 ____A (Microsoft Corporation) C:\Windows\System32\FWPUCLNT.DLL

2013-05-11 09:25 - 2012-11-27 05:17 - 00718848 ____A (Microsoft Corporation) C:\Windows\System32\BFE.DLL

2013-05-11 09:25 - 2012-11-06 08:52 - 00277736 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\msiscsi.sys

2013-05-11 09:25 - 2012-11-06 08:33 - 01566432 ____A (Microsoft Corporation) C:\Windows\System32\ole32.dll

2013-05-11 09:25 - 2012-11-06 08:33 - 00522640 ____A (Microsoft Corporation) C:\Windows\System32\AUDIOKSE.dll

2013-05-11 09:25 - 2012-11-06 08:33 - 00490064 ____A (Microsoft Corporation) C:\Windows\System32\AudioEng.dll

2013-05-11 09:25 - 2012-11-06 08:33 - 00447792 ____A (Microsoft Corporation) C:\Windows\System32\AudioSes.dll

2013-05-11 09:25 - 2012-11-06 08:33 - 00253512 ____A (Microsoft Corporation) C:\Windows\System32\audiodg.exe

2013-05-11 09:25 - 2012-11-06 06:00 - 00463768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll

2013-05-11 09:25 - 2012-11-06 06:00 - 00427568 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll

2013-05-11 09:25 - 2012-11-06 06:00 - 00324344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll

2013-05-11 09:25 - 2012-11-06 05:48 - 01150160 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll

2013-05-11 09:25 - 2012-11-06 05:20 - 00883712 ____A (Microsoft Corporation) C:\Windows\HelpPane.exe

2013-05-11 09:25 - 2012-11-06 05:20 - 00516608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll

2013-05-11 09:25 - 2012-11-06 05:20 - 00386560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll

2013-05-11 09:25 - 2012-11-06 05:20 - 00375296 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll

2013-05-11 09:25 - 2012-11-06 05:20 - 00314880 ____A (Microsoft Corporation) C:\Windows\System32\rdpclip.exe

2013-05-11 09:25 - 2012-11-06 05:20 - 00202240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll

2013-05-11 09:25 - 2012-11-06 05:20 - 00093696 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll

2013-05-11 09:25 - 2012-11-06 05:20 - 00025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 08552448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 01451520 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 01386496 ____A (Microsoft Corporation) C:\Windows\System32\wlansvc.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00710656 ____A (Microsoft Corporation) C:\Windows\System32\winhttp.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00470016 ____A (Microsoft Corporation) C:\Windows\System32\wlanmsm.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00466944 ____A (Microsoft Corporation) C:\Windows\System32\wcncsvc.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00446464 ____A (Microsoft Corporation) C:\Windows\System32\wlansec.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00273408 ____A (Microsoft Corporation) C:\Windows\System32\wlanapi.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00214528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00126976 ____A (Microsoft Corporation) C:\Windows\System32\WcnApi.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00126464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\wfdprov.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00027136 ____A (Microsoft Corporation) C:\Windows\System32\WcnEapPeerProxy.dll

2013-05-11 09:25 - 2012-11-06 05:19 - 00026624 ____A (Microsoft Corporation) C:\Windows\System32\WcnEapAuthProxy.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 11459584 ____A (Microsoft Corporation) C:\Windows\System32\glcndFilter.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 01526784 ____A (Microsoft Corporation) C:\Windows\System32\mfcore.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 01037312 ____A (Microsoft Corporation) C:\Windows\System32\localspl.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 00976384 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 00501760 ____A (Microsoft Corporation) C:\Windows\System32\DevicePairing.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 00449536 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 00281088 ____A (Microsoft Corporation) C:\Windows\System32\mfreadwrite.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 00267264 ____A (Microsoft Corporation) C:\Windows\System32\EncDump.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 00189440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl

2013-05-11 09:25 - 2012-11-06 05:18 - 00172032 ____A (Microsoft Corporation) C:\Windows\System32\MFCaptureEngine.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 00102400 ____A (Microsoft Corporation) C:\Windows\System32\fdWCN.dll

2013-05-11 09:25 - 2012-11-06 05:18 - 00084992 ____A (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll

2013-05-11 09:25 - 2012-11-06 05:17 - 00785920 ____A (Microsoft Corporation) C:\Windows\System32\audiosrv.dll

2013-05-11 09:25 - 2012-11-06 05:17 - 00212992 ____A (Microsoft Corporation) C:\Windows\System32\bthprops.cpl

2013-05-11 09:25 - 2012-11-06 05:17 - 00169472 ____A (Microsoft Corporation) C:\Windows\System32\AudioEndpointBuilder.dll

2013-05-11 09:25 - 2012-11-06 05:17 - 00110080 ____A (Microsoft Corporation) C:\Windows\System32\dafWCN.dll

2013-05-11 09:25 - 2012-11-06 05:00 - 00016384 ____A (Microsoft Corporation) C:\Windows\System32\iscsilog.dll

2013-05-11 09:25 - 2012-11-06 04:58 - 00009728 ____A (Microsoft Corporation) C:\Windows\System32\wlanhlp.dll

2013-05-11 09:25 - 2012-11-06 04:56 - 00009728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll

2013-05-11 09:25 - 2012-11-06 04:55 - 00090624 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\amdk8.sys

2013-05-11 09:25 - 2012-11-06 04:55 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\intelppm.sys

2013-05-11 09:25 - 2012-11-06 04:55 - 00088064 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\amdppm.sys

2013-05-11 09:25 - 2012-11-06 04:55 - 00087552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\processr.sys

2013-05-11 09:25 - 2012-11-06 04:55 - 00022528 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\fxppm.sys

2013-05-11 09:25 - 2012-11-06 04:53 - 00560640 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\afd.sys

2013-05-11 09:25 - 2012-11-06 04:51 - 00665600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll

2013-05-11 09:25 - 2012-10-12 09:08 - 00027880 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpvideominiport.sys

2013-05-11 09:25 - 2012-10-12 07:14 - 00036352 ____A (Microsoft Corporation) C:\Windows\System32\rfxvmt.dll

2013-05-11 09:25 - 2012-10-12 06:50 - 00235520 ____A (Microsoft Corporation) C:\Windows\System32\rdpudd.dll

2013-05-11 09:25 - 2012-09-20 10:10 - 02367528 ____A (Microsoft Corporation) C:\Windows\System32\WSService.dll

2013-05-11 09:25 - 2012-09-20 09:28 - 01825208 ____A (Microsoft Corporation) C:\Windows\System32\ntdll.dll

2013-05-11 09:25 - 2012-09-20 08:55 - 03265256 ____A (Broadcom Corporation) C:\Windows\System32\Drivers\evbda.sys

2013-05-11 09:25 - 2012-09-20 08:55 - 00533224 ____A (Broadcom Corporation) C:\Windows\System32\Drivers\bxvbda.sys

2013-05-11 09:25 - 2012-09-20 07:33 - 14259712 ____A (Microsoft Corporation) C:\Windows\System32\wmp.dll

2013-05-11 09:25 - 2012-09-20 07:33 - 03964416 ____A (Microsoft Corporation) C:\Windows\System32\WinSAT.exe

2013-05-11 09:25 - 2012-09-20 07:33 - 02397184 ____A (Microsoft Corporation) C:\Windows\System32\WpcMon.exe

2013-05-11 09:25 - 2012-09-20 07:33 - 01513984 ____A (Microsoft Corporation) C:\Windows\System32\vssapi.dll

2013-05-11 09:25 - 2012-09-20 07:32 - 01739264 ____A (Microsoft Corporation) C:\Windows\System32\RacEngn.dll

2013-05-11 09:25 - 2012-09-20 07:32 - 01019392 ____A (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.dll

2013-05-11 09:25 - 2012-09-20 07:30 - 03847168 ____A (Microsoft Corporation) C:\Windows\System32\d2d1.dll

2013-05-11 09:25 - 2012-09-20 06:55 - 11875328 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll

2013-05-11 09:25 - 2012-09-20 06:53 - 03296256 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll

2013-05-11 09:25 - 2012-09-11 06:28 - 00023552 ____A (Microsoft Corporation) C:\Windows\System32\vdsldr.exe

2013-05-11 09:25 - 2012-09-11 06:27 - 00190976 ____A (Microsoft Corporation) C:\Windows\System32\vdsutil.dll

2013-05-11 09:25 - 2012-09-11 06:27 - 00120832 ____A (Microsoft Corporation) C:\Windows\System32\vds_ps.dll

2013-05-11 09:24 - 2012-09-20 10:08 - 00027280 ____A (Microsoft Corporation) C:\Windows\System32\avrt.dll

2013-05-11 09:24 - 2012-09-20 09:40 - 00389360 ____A (Microsoft Corporation) C:\Windows\System32\MMDevAPI.dll

2013-05-11 09:24 - 2012-09-20 09:31 - 00425192 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\acpi.sys

2013-05-11 09:24 - 2012-09-20 09:04 - 00100072 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys

2013-05-11 09:24 - 2012-09-20 08:55 - 00120040 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\msgpioclx.sys

2013-05-11 09:24 - 2012-09-20 08:03 - 00465128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\fvevol.sys

2013-05-11 09:24 - 2012-09-20 07:48 - 00062488 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dumpfve.sys

2013-05-11 09:24 - 2012-09-20 07:47 - 00307192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 01342464 ____A (Microsoft Corporation) C:\Windows\System32\user32.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 01304064 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Media.Streaming.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00866304 ____A (Microsoft Corporation) C:\Windows\System32\WinTypes.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00757248 ____A (Microsoft Corporation) C:\Windows\System32\uDWM.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00699392 ____A (Microsoft Corporation) C:\Windows\System32\twinapi.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00627712 ____A (Microsoft Corporation) C:\Windows\System32\lpksetup.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00588800 ____A (Microsoft Corporation) C:\Windows\System32\webio.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00573440 ____A (Microsoft Corporation) C:\Windows\System32\WinSATAPI.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00545280 ____A (Microsoft Corporation) C:\Windows\System32\taskeng.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00541184 ____A (Microsoft Corporation) C:\Windows\System32\VAN.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00457216 ____A (Microsoft Corporation) C:\Windows\System32\wpncore.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00420352 ____A (Microsoft Corporation) C:\Windows\System32\WWAHost.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00410624 ____A (Microsoft Corporation) C:\Windows\System32\services.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00390144 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Networking.BackgroundTransfer.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00344064 ____A (Microsoft Corporation) C:\Windows\System32\wlidcredprov.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00332800 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00249344 ____A (Microsoft Corporation) C:\Windows\System32\wpnprv.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00203776 ____A (Microsoft Corporation) C:\Windows\System32\WSClient.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00194048 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00177152 ____A (Microsoft Corporation) C:\Windows\System32\WSSync.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00142848 ____A (Microsoft Corporation) C:\Windows\System32\fhmanagew.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00117760 ____A (Microsoft Corporation) C:\Windows\System32\dwm.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00110592 ____A C:\Windows\System32\OEMLicense.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00107008 ____A (Microsoft Corporation) C:\Windows\System32\umpnpmgr.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00101888 ____A (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00092672 ____A (Microsoft Corporation) C:\Windows\System32\drvinst.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00092160 ____A (Microsoft Corporation) C:\Windows\System32\lpremove.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00090624 ____A (Microsoft Corporation) C:\Windows\System32\TpmTasks.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\umpo.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00069632 ____A (Microsoft Corporation) C:\Windows\System32\vsstrace.dll

2013-05-11 09:24 - 2012-09-20 07:33 - 00060928 ____A (Microsoft Corporation) C:\Windows\System32\ndptsp.tsp

2013-05-11 09:24 - 2012-09-20 07:33 - 00047104 ____A (Microsoft Corporation) C:\Windows\System32\kmddsp.tsp

2013-05-11 09:24 - 2012-09-20 07:33 - 00035840 ____A (Microsoft Corporation) C:\Windows\System32\lsass.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00029696 ____A (Microsoft Corporation) C:\Windows\System32\svchost.exe

2013-05-11 09:24 - 2012-09-20 07:33 - 00025088 ____A (Microsoft Corporation) C:\Windows\System32\sdbinst.exe

2013-05-11 09:24 - 2012-09-20 07:32 - 01400832 ____A (Microsoft Corporation) C:\Windows\System32\propsys.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00762368 ____A (Microsoft Corporation) C:\Windows\System32\provcore.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00256512 ____A (Microsoft Corporation) C:\Windows\System32\msvproc.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00228352 ____A (Microsoft Corporation) C:\Windows\System32\ProximityService.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00189952 ____A (Microsoft Corporation) C:\Windows\System32\perfos.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00163328 ____A (Microsoft Corporation) C:\Windows\System32\sspicli.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00121856 ____A (Microsoft Corporation) C:\Windows\System32\rascfg.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00112128 ____A (Microsoft Corporation) C:\Windows\System32\PackageStateRoaming.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00093696 ____A (Microsoft Corporation) C:\Windows\System32\psmsrv.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00076288 ____A (Microsoft Corporation) C:\Windows\System32\RpcEpMap.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00075264 ____A (Microsoft Corporation) C:\Windows\System32\rasdiag.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00065536 ____A (Microsoft Corporation) C:\Windows\System32\setbcdlocale.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00044544 ____A (Microsoft Corporation) C:\Windows\System32\perfctrs.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00041984 ____A (Microsoft Corporation) C:\Windows\System32\rasmxs.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00037888 ____A (Microsoft Corporation) C:\Windows\System32\perfproc.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00034816 ____A (Microsoft Corporation) C:\Windows\System32\perfdisk.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00029696 ____A (Microsoft Corporation) C:\Windows\System32\rasser.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00027648 ____A (Microsoft Corporation) C:\Windows\System32\sspisrv.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00023552 ____A (Microsoft Corporation) C:\Windows\System32\perfnet.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00013824 ____A (Microsoft Corporation) C:\Windows\System32\MUILanguageCleanup.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00009728 ____A (Microsoft Corporation) C:\Windows\System32\spwmp.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00006656 ____A (Microsoft Corporation) C:\Windows\System32\shimeng.dll

2013-05-11 09:24 - 2012-09-20 07:32 - 00006144 ____A (Microsoft Corporation) C:\Windows\System32\msdxm.ocx

2013-05-11 09:24 - 2012-09-20 07:32 - 00006144 ____A (Microsoft Corporation) C:\Windows\System32\dxmasf.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00755200 ____A (Microsoft Corporation) C:\Windows\System32\fveapi.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00617984 ____A (Microsoft Corporation) C:\Windows\System32\mfsrcsnk.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00604672 ____A (Microsoft Corporation) C:\Windows\System32\dnsapi.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00459776 ____A (Microsoft Corporation) C:\Windows\System32\dxgi.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00437760 ____A (Microsoft Corporation) C:\Windows\System32\mfh264enc.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00355328 ____A (Microsoft Corporation) C:\Windows\System32\mfsvr.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00315392 ____A (Microsoft Corporation) C:\Windows\System32\fhcfg.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00280576 ____A (Microsoft Corporation) C:\Windows\System32\fhcat.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00240640 ____A (Microsoft Corporation) C:\Windows\System32\fveapibase.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00236544 ____A (Microsoft Corporation) C:\Windows\System32\MFPlay.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00231936 ____A (Microsoft Corporation) C:\Windows\System32\fhengine.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00210432 ____A (Microsoft Corporation) C:\Windows\System32\dnsrslvr.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00172544 ____A (Microsoft Corporation) C:\Windows\System32\dwmredir.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00155136 ____A (Microsoft Corporation) C:\Windows\System32\IPHLPAPI.DLL

2013-05-11 09:24 - 2012-09-20 07:31 - 00137728 ____A (Microsoft Corporation) C:\Windows\System32\fhshl.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00118272 ____A (Microsoft Corporation) C:\Windows\System32\DevPropMgr.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00116736 ____A (Microsoft Corporation) C:\Windows\System32\fhsvc.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00080896 ____A (Microsoft Corporation) C:\Windows\System32\mmcss.dll

Link to post
Share on other sites

Here it is part 2/2. :)

2013-05-11 09:24 - 2012-09-20 07:31 - 00080896 ____A (Microsoft Corporation) C:\Windows\System32\fhsrchapi.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00070656 ____A (Microsoft Corporation) C:\Windows\System32\fhevents.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00067584 ____A (Microsoft Corporation) C:\Windows\System32\fhsrchph.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00064000 ____A (Microsoft Corporation) C:\Windows\System32\fhlisten.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00064000 ____A (Microsoft Corporation) C:\Windows\System32\fhautoplay.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00053760 ____A (Microsoft Corporation) C:\Windows\System32\fhcleanup.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00038400 ____A (Microsoft Corporation) C:\Windows\System32\fhtask.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00037888 ____A (Microsoft Corporation) C:\Windows\System32\LangCleanupSysprepAction.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00020480 ____A (Microsoft Corporation) C:\Windows\System32\fhsvcctl.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00017408 ____A (Microsoft Corporation) C:\Windows\System32\eventcls.dll

2013-05-11 09:24 - 2012-09-20 07:31 - 00008704 ____A (Microsoft Corporation) C:\Windows\System32\lpksetupproxyserv.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 02219008 ____A (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 02066432 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 02016256 ____A (Microsoft Corporation) C:\Windows\System32\batmeter.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 01743872 ____A (Microsoft Corporation) C:\Windows\System32\combase.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\appwiz.cpl

2013-05-11 09:24 - 2012-09-20 07:30 - 00634880 ____A (Microsoft Corporation) C:\Windows\System32\apphelp.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 00190976 ____A (Microsoft Corporation) C:\Windows\System32\aelupsvc.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 00180736 ____A (Microsoft Corporation) C:\Windows\System32\bcdsrv.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 00179712 ____A (Microsoft Corporation) C:\Windows\System32\bisrv.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 00156672 ____A (Microsoft Corporation) C:\Windows\System32\DAFWSD.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 00135680 ____A (Microsoft Corporation) C:\Windows\System32\CscMig.dll

2013-05-11 09:24 - 2012-09-20 07:30 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll

2013-05-11 09:24 - 2012-09-20 07:26 - 01409376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll

2013-05-11 09:24 - 2012-09-20 07:13 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\microsoft-windows-kernel-power-events.dll

2013-05-11 09:24 - 2012-09-20 07:13 - 00023656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\avrt.dll

2013-05-11 09:24 - 2012-09-20 07:12 - 09374208 ____A (Microsoft Corporation) C:\Windows\System32\wmploc.DLL

2013-05-11 09:24 - 2012-09-20 07:09 - 00025088 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndistapi.sys

2013-05-11 09:24 - 2012-09-20 07:09 - 00022528 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ws2ifsl.sys

2013-05-11 09:24 - 2012-09-20 07:08 - 00571392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\csc.sys

2013-05-11 09:24 - 2012-09-20 07:08 - 00071168 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hdaudbus.sys

2013-05-11 09:24 - 2012-09-20 07:08 - 00060416 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndproxy.sys

2013-05-11 09:24 - 2012-09-20 07:05 - 00083456 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\wanarp.sys

2013-05-11 09:24 - 2012-09-20 06:55 - 00995328 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00465920 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00417280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00333824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe

2013-05-11 09:24 - 2012-09-20 06:55 - 00303616 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00267776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00265216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00263168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00239616 ____A (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe

2013-05-11 09:24 - 2012-09-20 06:55 - 00166912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00154624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00083968 ____A C:\Windows\SysWOW64\OEMLicense.dll

2013-05-11 09:24 - 2012-09-20 06:55 - 00080896 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe

2013-05-11 09:24 - 2012-09-20 06:55 - 00080384 ____A (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe

2013-05-11 09:24 - 2012-09-20 06:55 - 00051200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp

2013-05-11 09:24 - 2012-09-20 06:55 - 00038912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp

2013-05-11 09:24 - 2012-09-20 06:55 - 00023040 ____A (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe

2013-05-11 09:24 - 2012-09-20 06:55 - 00021504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe

2013-05-11 09:24 - 2012-09-20 06:54 - 01369600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 01196032 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 01137152 ____A (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00709632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00533504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\provcore.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00509952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00480768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00449024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00413184 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfh264enc.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00270336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00214528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00180224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00108544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00089088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00059392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00052224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfctrs.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00034816 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00033792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfos.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00032768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00031232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfdisk.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00022016 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00021504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfnet.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00009216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00005632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll

2013-05-11 09:24 - 2012-09-20 06:54 - 00004608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx

2013-05-11 09:24 - 2012-09-20 06:54 - 00004608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 02033664 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 02007040 ____A (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 01701376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 01247232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 00675840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 00670208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl

2013-05-11 09:24 - 2012-09-20 06:53 - 00461824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 00366080 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 00119808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL

2013-05-11 09:24 - 2012-09-20 06:53 - 00025088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll

2013-05-11 09:24 - 2012-09-20 06:53 - 00015360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll

2013-05-11 09:24 - 2012-09-20 06:32 - 09374208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL

2013-05-11 09:24 - 2012-09-20 05:13 - 00098816 ____A (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll

2013-05-11 09:24 - 2012-09-20 05:10 - 01126912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll

2013-05-11 09:20 - 2013-05-11 09:55 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}

2013-05-11 09:15 - 2013-05-11 09:15 - 00000128 ____A C:\Windows\System32\netcfg-34273.txt

2013-05-11 09:15 - 2013-05-11 09:15 - 00000117 ____A C:\Windows\System32\netcfg-24273.txt

2013-05-11 09:15 - 2013-05-11 09:15 - 00000117 ____A C:\Windows\System32\netcfg-24117.txt

2013-05-11 09:14 - 2013-05-11 09:15 - 00000000 ___RD C:\Windows\BrowserChoice

2013-05-11 09:10 - 2013-05-11 09:10 - 00002263 ____A C:\Users\Public\Desktop\Google Chrome.lnk

2013-05-11 09:09 - 2013-05-12 14:00 - 00001170 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2013-05-11 09:09 - 2013-05-12 14:00 - 00001166 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2013-05-11 09:09 - 2013-05-11 09:10 - 00000000 ____D C:\Users\Barbara\AppData\Local\Google

2013-05-11 09:09 - 2013-05-11 09:10 - 00000000 ____D C:\Program Files (x86)\Google

2013-05-11 09:06 - 2013-05-11 09:27 - 00000000 ____D C:\ProgramData\G DATA

2013-05-11 09:06 - 2013-05-11 09:06 - 00122744 ____A (G Data Software AG) C:\Windows\System32\Drivers\MiniIcpt.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00098760 ____A (G Data Software) C:\Windows\System32\Drivers\TS4nt.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00065912 ____A (G Data Software AG) C:\Windows\System32\Drivers\gdwfpcd64.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00064376 ____A (G Data Software AG) C:\Windows\System32\Drivers\HookCentre.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00059768 ____A (G Data Software AG) C:\Windows\System32\Drivers\PktIcpt.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00054136 ____A (G Data Software AG) C:\Windows\System32\Drivers\GDBehave.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00002139 ____A C:\Users\Public\Desktop\G Data TotalProtection.lnk

2013-05-11 09:06 - 2013-05-11 09:06 - 00000000 ____D C:\Windows\SysWOW64\BioAPIFFDB

2013-05-11 09:06 - 2013-05-11 09:06 - 00000000 ____D C:\ProgramData\G DATA Software

2013-05-11 09:06 - 2013-05-11 09:06 - 00000000 ____D C:\Program Files (x86)\G Data

2013-05-11 09:05 - 2013-05-17 17:23 - 75016696 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe

2013-05-11 09:05 - 2013-05-11 09:55 - 00000000 ____D C:\Users\Barbara\AppData\Local\Downloaded Installations

2013-05-11 09:04 - 2013-05-02 16:29 - 00278800 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe

2013-05-11 09:04 - 2012-08-31 01:52 - 00017888 ____A (Microsoft Corporation) C:\Windows\System32\msvcr100_clr0400.dll

2013-05-11 09:03 - 2013-02-21 11:29 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll

2013-05-11 09:03 - 2013-02-21 11:29 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll

2013-05-11 09:03 - 2013-02-21 11:29 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll

2013-05-11 09:03 - 2013-02-21 11:29 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll

2013-05-11 09:03 - 2013-02-21 11:14 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll

2013-05-11 09:03 - 2013-02-21 11:14 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll

2013-05-11 09:03 - 2013-02-19 10:53 - 00534528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll

2013-05-11 09:03 - 2013-01-04 06:32 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb

2013-05-11 09:03 - 2013-01-04 05:19 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb

2013-05-11 09:03 - 2012-11-08 05:20 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll

2013-05-11 09:03 - 2012-11-08 05:20 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll

2013-05-11 09:03 - 2012-08-31 01:53 - 00017888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100_clr0400.dll

2013-05-11 09:02 - 2013-03-02 12:02 - 00058288 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe

2013-05-11 09:02 - 2013-03-02 11:57 - 00337128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\USBXHCI.SYS

2013-05-11 09:02 - 2013-03-02 11:57 - 00332520 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\storport.sys

2013-05-11 09:02 - 2013-03-02 11:57 - 00283880 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\spaceport.sys

2013-05-11 09:02 - 2013-03-02 11:57 - 00077544 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\storahci.sys

2013-05-11 09:02 - 2013-03-02 11:45 - 00194792 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\sdbus.sys

2013-05-11 09:02 - 2013-03-02 11:45 - 00148712 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tpm.sys

2013-05-11 09:02 - 2013-03-02 11:45 - 00125160 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dumpsd.sys

2013-05-11 09:02 - 2013-03-02 11:39 - 00495336 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\vhdmp.sys

2013-05-11 09:02 - 2013-03-02 11:39 - 00327912 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\Classpnp.sys

2013-05-11 09:02 - 2013-03-02 10:59 - 02231528 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys

2013-05-11 09:02 - 2013-03-02 10:59 - 00411880 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS

2013-05-11 09:02 - 2013-03-02 09:24 - 00034304 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe

2013-05-11 09:02 - 2013-03-02 09:23 - 01338880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00893952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00621056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00601088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00504320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00356352 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00246784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00125952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00100864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncInfo.dll

2013-05-11 09:02 - 2013-03-02 09:23 - 00083968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll

2013-05-11 09:02 - 2013-03-02 09:22 - 05091840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll

2013-05-11 09:02 - 2013-03-02 09:22 - 00850944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll

2013-05-11 09:02 - 2013-03-02 09:22 - 00357888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll

2013-05-11 09:02 - 2013-03-02 09:21 - 00550912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll

2013-05-11 09:02 - 2013-03-02 09:21 - 00309760 ____A (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll

2013-05-11 09:02 - 2013-03-02 09:21 - 00145408 ____A (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl

2013-05-11 09:02 - 2013-03-02 09:21 - 00036352 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DevDispItemProvider.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 03240448 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 01627648 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 01619968 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 01161728 ____A (Microsoft Corporation) C:\Windows\System32\sppobjs.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 01149952 ____A (Microsoft Corporation) C:\Windows\System32\winmde.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 01101824 ____A (Microsoft Corporation) C:\Windows\System32\wmpmde.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00951808 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Globalization.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00760320 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00645120 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00328192 ____A (Microsoft Corporation) C:\Windows\System32\ubpm.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00251904 ____A (Microsoft Corporation) C:\Windows\System32\WUSettingsProvider.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00245248 ____A (Microsoft Corporation) C:\Windows\System32\usbmon.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00180224 ____A (Microsoft Corporation) C:\Windows\System32\SystemEventsBrokerServer.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00173568 ____A (Microsoft Corporation) C:\Windows\System32\storewuauth.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00171008 ____A (Microsoft Corporation) C:\Windows\System32\TimeBrokerServer.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00141824 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\wpdbusenum.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00098304 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00077824 ____A (Microsoft Corporation) C:\Windows\System32\taskhost.exe

2013-05-11 09:02 - 2013-03-02 03:45 - 00072192 ____A (Microsoft Corporation) C:\Windows\System32\taskhostex.exe

2013-05-11 09:02 - 2013-03-02 03:45 - 00071168 ____A (Microsoft Corporation) C:\Windows\System32\WSDPrintProxy.DLL

2013-05-11 09:02 - 2013-03-02 03:45 - 00043520 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll

2013-05-11 09:02 - 2013-03-02 03:45 - 00039424 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe

2013-05-11 09:02 - 2013-03-02 03:44 - 05978624 ____A (Microsoft Corporation) C:\Windows\System32\mstscax.dll

2013-05-11 09:02 - 2013-03-02 03:44 - 01048576 ____A (Microsoft Corporation) C:\Windows\System32\mfasfsrcsnk.dll

2013-05-11 09:02 - 2013-03-02 03:44 - 00703488 ____A (Microsoft Corporation) C:\Windows\System32\drvstore.dll

2013-05-11 09:02 - 2013-03-02 03:44 - 00455168 ____A (Microsoft Corporation) C:\Windows\System32\netcfgx.dll

2013-05-11 09:02 - 2013-03-02 03:44 - 00448512 ____A (Microsoft Corporation) C:\Windows\System32\SettingSync.dll

2013-05-11 09:02 - 2013-03-02 03:44 - 00150016 ____A (Microsoft Corporation) C:\Windows\System32\discan.dll

2013-05-11 09:02 - 2013-03-02 03:44 - 00128512 ____A (Microsoft Corporation) C:\Windows\System32\SettingSyncInfo.dll

2013-05-11 09:02 - 2013-03-02 03:44 - 00117248 ____A (Microsoft Corporation) C:\Windows\System32\NdisImPlatform.dll

2013-05-11 09:02 - 2013-03-02 03:44 - 00049152 ____A (Microsoft Corporation) C:\Windows\System32\DevDispItemProvider.dll

2013-05-11 09:02 - 2013-03-02 03:43 - 00389120 ____A (Microsoft Corporation) C:\Windows\System32\BCP47Langs.dll

2013-05-11 09:02 - 2013-03-02 03:43 - 00156160 ____A (Microsoft Corporation) C:\Windows\System32\powercfg.cpl

2013-05-11 09:02 - 2013-03-02 03:15 - 00026112 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mouhid.sys

2013-05-11 09:02 - 2013-03-01 05:56 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\monitor.sys

2013-05-11 09:02 - 2013-02-21 00:08 - 00387867 ____A C:\Windows\System32\ApnDatabase.xml

2013-05-11 09:02 - 2012-11-06 05:20 - 00018432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll

2013-05-11 09:02 - 2012-11-06 05:20 - 00017408 ____A (Microsoft Corporation) C:\Windows\System32\wuaext.dll

2013-05-11 09:02 - 2012-11-06 05:00 - 00099328 ____A (Microsoft Corporation) C:\Windows\System32\wushareduxresources.dll

2013-05-11 09:02 - 2012-11-02 06:20 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll

2013-05-11 09:02 - 2012-09-20 08:55 - 00212200 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\UCX01000.SYS

2013-05-11 09:01 - 2013-03-19 23:19 - 04041728 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys

2013-05-11 09:01 - 2013-02-02 12:19 - 00496872 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbhub.sys

2013-05-11 09:01 - 2013-02-02 12:19 - 00446184 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\USBHUB3.SYS

2013-05-11 09:01 - 2013-02-02 12:19 - 00061672 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\crashdmp.sys

2013-05-11 09:01 - 2013-02-02 11:54 - 01933544 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys

2013-05-11 09:01 - 2013-02-02 11:28 - 00993512 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys

2013-05-11 09:01 - 2013-02-02 09:40 - 10792448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll

2013-05-11 09:01 - 2013-02-02 09:40 - 00410624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlroamextension.dll

2013-05-11 09:01 - 2013-02-02 09:40 - 00370688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll

2013-05-11 09:01 - 2013-02-02 09:40 - 00197632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll

2013-05-11 09:01 - 2013-02-02 09:40 - 00155136 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll

2013-05-11 09:01 - 2013-02-02 09:40 - 00080896 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe

2013-05-11 09:01 - 2013-02-02 09:40 - 00079360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe

2013-05-11 09:01 - 2013-02-02 09:39 - 00325632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll

2013-05-11 09:01 - 2013-02-02 09:39 - 00157696 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll

2013-05-11 09:01 - 2013-02-02 09:39 - 00115712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll

2013-05-11 09:01 - 2013-02-02 09:39 - 00055296 ____A (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll

2013-05-11 09:01 - 2013-02-02 09:39 - 00018432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll

2013-05-11 09:01 - 2013-02-02 09:39 - 00015872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll

2013-05-11 09:01 - 2013-02-02 09:39 - 00012288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll

2013-05-11 09:01 - 2013-02-02 09:38 - 00567808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll

2013-05-11 09:01 - 2013-02-02 09:24 - 00107520 ____A (Microsoft Corporation) C:\Windows\System32\taskkill.exe

2013-05-11 09:01 - 2013-02-02 09:24 - 00102400 ____A (Microsoft Corporation) C:\Windows\System32\tasklist.exe

2013-05-11 09:01 - 2013-02-02 09:23 - 13643264 ____A (Microsoft Corporation) C:\Windows\System32\Windows.UI.Xaml.dll

2013-05-11 09:01 - 2013-02-02 09:23 - 00731648 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll

2013-05-11 09:01 - 2013-02-02 09:23 - 00611840 ____A (Microsoft Corporation) C:\Windows\System32\wpd_ci.dll

2013-05-11 09:01 - 2013-02-02 09:23 - 00543232 ____A (Microsoft Corporation) C:\Windows\System32\wlroamextension.dll

2013-05-11 09:01 - 2013-02-02 09:23 - 00475136 ____A (Microsoft Corporation) C:\Windows\System32\WWanAPI.dll

2013-05-11 09:01 - 2013-02-02 09:23 - 00293376 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Networking.Connectivity.dll

2013-05-11 09:01 - 2013-02-02 09:23 - 00228352 ____A (Microsoft Corporation) C:\Windows\System32\XpsRasterService.dll

2013-05-11 09:01 - 2013-02-02 09:23 - 00087552 ____A (Microsoft Corporation) C:\Windows\System32\wersvc.dll

2013-05-11 09:01 - 2013-02-02 09:22 - 00416256 ____A (Microsoft Corporation) C:\Windows\System32\schannel.dll

2013-05-11 09:01 - 2013-02-02 09:21 - 00467456 ____A (Microsoft Corporation) C:\Windows\System32\netprofmsvc.dll

2013-05-11 09:01 - 2013-02-02 09:21 - 00385024 ____A (Microsoft Corporation) C:\Windows\System32\ncsi.dll

2013-05-11 09:01 - 2013-02-02 09:21 - 00225280 ____A (Microsoft Corporation) C:\Windows\System32\mbsmsapi.dll

2013-05-11 09:01 - 2013-02-02 09:20 - 00729600 ____A (Microsoft Corporation) C:\Windows\System32\duser.dll

2013-05-11 09:01 - 2013-02-02 09:20 - 00260096 ____A (Microsoft Corporation) C:\Windows\System32\hotspotauth.dll

2013-05-11 09:01 - 2013-02-02 08:25 - 00297984 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ks.sys

2013-05-11 09:01 - 2013-02-02 08:25 - 00082944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hidclass.sys

2013-05-11 09:01 - 2013-02-02 08:25 - 00037632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\BthAvrcpTg.sys

2013-05-11 09:01 - 2013-01-29 02:57 - 00035232 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\WdBoot.sys

2013-05-11 09:01 - 2013-01-29 00:08 - 00230904 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\WdFilter.sys

2013-05-11 09:01 - 2013-01-10 02:53 - 00028904 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\msgpiowin32.sys

2013-05-11 09:01 - 2013-01-10 02:40 - 00303848 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgmms1.sys

2013-05-11 09:01 - 2013-01-10 02:29 - 00785504 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\Wdf01000.sys

2013-05-11 09:01 - 2013-01-10 02:29 - 00091880 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\partmgr.sys

2013-05-11 09:01 - 2013-01-10 00:26 - 01752064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll

2013-05-11 09:01 - 2013-01-10 00:26 - 01611776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe

2013-05-11 09:01 - 2013-01-10 00:26 - 00890880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll

2013-05-11 09:01 - 2013-01-10 00:26 - 00436736 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL

2013-05-11 09:01 - 2013-01-10 00:26 - 00410624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll

2013-05-11 09:01 - 2013-01-10 00:26 - 00278528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srm.dll

2013-05-11 09:01 - 2013-01-10 00:26 - 00261120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll

2013-05-11 09:01 - 2013-01-10 00:26 - 00202752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmstormod.dll

2013-05-11 09:01 - 2013-01-10 00:26 - 00083968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wiaacmgr.exe

2013-05-11 09:01 - 2013-01-10 00:26 - 00067584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll

2013-05-11 09:01 - 2013-01-10 00:25 - 00582144 ____A (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 02094592 ____A (Microsoft Corporation) C:\Windows\System32\mmc.exe

2013-05-11 09:01 - 2013-01-10 00:23 - 01964544 ____A (Microsoft Corporation) C:\Windows\System32\wlidsvc.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 01886208 ____A (Microsoft Corporation) C:\Windows\System32\setupapi.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 00728064 ____A (Microsoft Corporation) C:\Windows\System32\samsrv.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 00594944 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Networking.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 00406016 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Media.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 00279040 ____A (Microsoft Corporation) C:\Windows\System32\srm.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 00274432 ____A (Microsoft Corporation) C:\Windows\System32\srmstormod.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 00256000 ____A (Microsoft Corporation) C:\Windows\System32\WSDMon.dll

2013-05-11 09:01 - 2013-01-10 00:23 - 00095232 ____A (Microsoft Corporation) C:\Windows\System32\wiaacmgr.exe

2013-05-11 09:01 - 2013-01-10 00:22 - 01120768 ____A (Microsoft Corporation) C:\Windows\System32\msctf.dll

2013-05-11 09:01 - 2013-01-10 00:22 - 00894464 ____A (Microsoft Corporation) C:\Windows\System32\iphlpsvc.dll

2013-05-11 09:01 - 2013-01-10 00:22 - 00820736 ____A (Microsoft Corporation) C:\Windows\System32\gpprefcl.dll

2013-05-11 09:01 - 2013-01-10 00:22 - 00666112 ____A (Microsoft Corporation) C:\Windows\System32\MP4SDECD.DLL

2013-05-11 09:01 - 2013-01-10 00:22 - 00438272 ____A (Microsoft Corporation) C:\Windows\System32\lsm.dll

2013-05-11 09:01 - 2013-01-10 00:22 - 00159232 ____A (Microsoft Corporation) C:\Windows\System32\inetpp.dll

2013-05-11 09:01 - 2013-01-09 04:59 - 00341504 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\HdAudio.sys

2013-05-11 09:01 - 2012-11-27 04:57 - 00018432 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\BtaMPM.sys

2013-05-11 09:01 - 2012-11-27 04:55 - 00029952 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\BthhfHid.sys

2013-05-11 09:01 - 2012-11-20 05:56 - 00027136 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbohci.sys

2013-05-11 09:01 - 2012-11-20 05:54 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hidi2c.sys

2013-05-11 09:01 - 2012-11-10 05:23 - 00148480 ____A (Microsoft Corporation) C:\Windows\System32\poqexec.exe

2013-05-11 09:01 - 2012-11-10 05:23 - 00132608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe

2013-05-11 09:01 - 2012-11-10 05:22 - 00144384 ____A (Microsoft Corporation) C:\Windows\System32\tssdisai.dll

2013-05-11 09:01 - 2012-11-10 05:22 - 00126976 ____A (Microsoft Corporation) C:\Windows\System32\RDWebAI.dll

2013-05-11 09:01 - 2012-11-10 05:22 - 00122880 ____A (Microsoft Corporation) C:\Windows\System32\VmHostAI.dll

2013-05-11 09:01 - 2012-11-10 05:20 - 00135680 ____A (Microsoft Corporation) C:\Windows\System32\appserverai.dll

2013-05-11 09:01 - 2012-11-09 05:49 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\tzres.dll

2013-05-11 09:01 - 2012-11-09 05:03 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll

2013-05-11 09:01 - 2012-11-02 06:19 - 00171520 ____A (Microsoft Corporation) C:\Windows\System32\ncbservice.dll

2013-05-11 09:01 - 2012-11-02 06:18 - 00107520 ____A (Microsoft Corporation) C:\Windows\System32\httpprxm.dll

2013-05-11 09:01 - 2012-11-02 06:18 - 00062464 ____A (Microsoft Corporation) C:\Windows\System32\adhsvc.dll

2013-05-11 09:01 - 2012-11-02 06:18 - 00022528 ____A (Microsoft Corporation) C:\Windows\System32\adhapi.dll

2013-05-11 09:01 - 2012-11-02 06:18 - 00017920 ____A (Microsoft Corporation) C:\Windows\System32\httpprxp.dll

2013-05-11 09:01 - 2012-11-02 06:18 - 00015872 ____A (Microsoft Corporation) C:\Windows\System32\keepaliveprovider.dll

2013-05-11 09:01 - 2012-10-12 07:14 - 01347072 ____A (Microsoft Corporation) C:\Windows\System32\srmclient.dll

2013-05-11 09:01 - 2012-10-12 07:14 - 00652800 ____A (Microsoft Corporation) C:\Windows\System32\srmscan.dll

2013-05-11 09:01 - 2012-10-12 07:14 - 00172032 ____A (Microsoft Corporation) C:\Windows\System32\srmshell.dll

2013-05-11 09:01 - 2012-10-12 07:14 - 00134144 ____A (Microsoft Corporation) C:\Windows\System32\adrclient.dll

2013-05-11 09:01 - 2012-10-12 07:14 - 00087040 ____A (Microsoft Corporation) C:\Windows\System32\srmtrace.dll

2013-05-11 09:01 - 2012-10-12 07:14 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\srm_ps.dll

2013-05-11 09:01 - 2012-10-12 06:41 - 00987648 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmclient.dll

2013-05-11 09:01 - 2012-10-12 06:41 - 00487936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmscan.dll

2013-05-11 09:01 - 2012-10-12 06:41 - 00128000 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmshell.dll

2013-05-11 09:01 - 2012-10-12 06:41 - 00104448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\adrclient.dll

2013-05-11 09:01 - 2012-10-12 06:41 - 00068096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmtrace.dll

2013-05-11 09:01 - 2012-10-12 06:41 - 00015872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srm_ps.dll

2013-05-11 09:01 - 2012-09-20 08:55 - 00488168 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbport.sys

2013-05-11 09:01 - 2012-09-20 08:55 - 00079080 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbehci.sys

2013-05-11 09:01 - 2012-09-20 08:55 - 00021736 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbd.sys

2013-05-11 09:01 - 2012-09-20 07:32 - 00356352 ____A (Microsoft Corporation) C:\Windows\System32\nlasvc.dll

2013-05-11 09:01 - 2012-09-20 07:32 - 00072192 ____A (Microsoft Corporation) C:\Windows\System32\nlaapi.dll

2013-05-11 09:01 - 2012-09-20 07:09 - 00032256 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbuhci.sys

2013-05-11 09:00 - 2013-03-02 09:23 - 00375808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll

2013-05-11 09:00 - 2013-03-02 09:22 - 00361984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll

2013-05-11 09:00 - 2013-03-02 03:44 - 01011200 ____A (Microsoft Corporation) C:\Windows\System32\reseteng.dll

2013-05-11 09:00 - 2013-03-02 03:44 - 00468992 ____A (Microsoft Corporation) C:\Windows\System32\MFMediaEngine.dll

2013-05-11 09:00 - 2013-02-12 01:17 - 00020992 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usb8023.sys

2013-05-11 09:00 - 2013-02-05 23:31 - 00622080 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srv2.sys

2013-05-11 09:00 - 2013-02-05 23:29 - 00370688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb.sys

2013-05-11 09:00 - 2013-02-05 23:28 - 00247808 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srvnet.sys

2013-05-11 09:00 - 2013-02-05 23:28 - 00215552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb20.sys

2013-05-11 09:00 - 2013-02-02 06:41 - 01437184 ____A (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll

2013-05-11 09:00 - 2013-02-02 06:31 - 01690624 ____A (Microsoft Corporation) C:\Windows\System32\GdiPlus.dll

2013-05-11 09:00 - 2012-12-15 05:55 - 00443392 ____A (Microsoft Corporation) C:\Windows\System32\ReAgent.dll

2013-05-11 09:00 - 2012-11-26 05:21 - 00071168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll

2013-05-11 09:00 - 2012-11-26 05:20 - 00086016 ____A (Microsoft Corporation) C:\Windows\System32\ncryptsslp.dll

2013-05-11 09:00 - 2012-11-03 06:26 - 00132096 ____A (Microsoft Corporation) C:\Windows\System32\sysreset.exe

2013-05-11 09:00 - 2012-11-03 06:26 - 00034816 ____A (Microsoft Corporation) C:\Windows\System32\dpnsvr.exe

2013-05-11 09:00 - 2012-11-03 06:26 - 00032256 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe

2013-05-11 09:00 - 2012-11-03 06:25 - 00945152 ____A (Microsoft Corporation) C:\Windows\System32\resetengmig.dll

2013-05-11 09:00 - 2012-11-03 06:24 - 00463872 ____A (Microsoft Corporation) C:\Windows\System32\dpnet.dll

2013-05-11 09:00 - 2012-11-03 06:24 - 00375808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll

2013-05-11 09:00 - 2012-11-03 06:24 - 00067584 ____A (Microsoft Corporation) C:\Windows\System32\dpnathlp.dll

2013-05-11 09:00 - 2012-11-03 06:24 - 00058880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll

2013-05-11 09:00 - 2012-11-03 06:24 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\dpnhupnp.dll

2013-05-11 09:00 - 2012-11-03 06:24 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\dpnhpast.dll

2013-05-11 09:00 - 2012-11-03 06:24 - 00008192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll

2013-05-11 09:00 - 2012-11-03 06:24 - 00008192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll

2013-05-11 09:00 - 2012-11-03 06:04 - 00004096 ____A (Microsoft Corporation) C:\Windows\System32\dpnlobby.dll

2013-05-11 09:00 - 2012-11-03 06:04 - 00003584 ____A (Microsoft Corporation) C:\Windows\System32\dpnaddr.dll

2013-05-11 09:00 - 2012-11-03 06:00 - 00003072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll

2013-05-11 09:00 - 2012-11-03 06:00 - 00002560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll

2013-05-11 09:00 - 2012-10-24 04:25 - 00026624 ____A (Microsoft Corporation) C:\Windows\System32\ReAgentc.exe

2013-05-11 09:00 - 2012-10-24 04:25 - 00013312 ____A (Microsoft Corporation) C:\Windows\System32\pcalua.exe

2013-05-11 09:00 - 2012-10-24 04:24 - 00405504 ____A (Microsoft Corporation) C:\Windows\System32\pcasvc.dll

2013-05-11 09:00 - 2012-10-24 04:24 - 00031232 ____A (Microsoft Corporation) C:\Windows\System32\pcadm.dll

2013-05-11 09:00 - 2012-10-24 04:05 - 00011776 ____A (Microsoft Corporation) C:\Windows\System32\pcaevts.dll

2013-05-11 09:00 - 2012-10-24 03:48 - 00024064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe

2013-05-11 09:00 - 2012-10-10 08:04 - 00094208 ____A (Microsoft Corporation) C:\Windows\System32\synceng.dll

2013-05-11 09:00 - 2012-10-10 07:31 - 00072192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll

2013-05-11 09:00 - 2012-10-06 05:53 - 02893824 ____A (Microsoft Corporation) C:\Windows\System32\msmpeg2vdec.dll

2013-05-11 09:00 - 2012-10-06 05:15 - 02400256 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll

2013-05-11 08:59 - 2012-12-16 09:28 - 00046080 ____A (Adobe Systems) C:\Windows\System32\atmlib.dll

2013-05-11 08:59 - 2012-12-16 09:20 - 00035328 ____A (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll

2013-05-11 08:59 - 2012-12-16 09:08 - 00362496 ____A (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll

2013-05-11 08:59 - 2012-12-16 08:57 - 00300032 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll

2013-05-11 08:59 - 2012-11-08 05:24 - 00075776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll

2013-05-11 08:59 - 2012-11-08 05:24 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll

2013-05-11 08:59 - 2012-11-08 05:20 - 00096256 ____A (Microsoft Corporation) C:\Windows\System32\fontsub.dll

2013-05-11 08:59 - 2012-11-08 05:20 - 00014336 ____A (Microsoft Corporation) C:\Windows\System32\dciman32.dll

2013-05-11 08:59 - 2012-11-08 05:02 - 00003072 ____A (Microsoft Corporation) C:\Windows\System32\lpk.dll

2013-05-11 08:59 - 2012-11-08 05:01 - 00003072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll

2013-05-11 08:59 - 2012-11-01 05:41 - 01802240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll

2013-05-11 08:59 - 2012-11-01 05:41 - 01438720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll

2013-05-11 08:59 - 2012-11-01 05:40 - 02361344 ____A (Microsoft Corporation) C:\Windows\System32\msxml6.dll

2013-05-11 08:59 - 2012-11-01 05:40 - 01836032 ____A (Microsoft Corporation) C:\Windows\System32\msxml3.dll

2013-05-11 08:59 - 2012-11-01 05:21 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\msxml6r.dll

2013-05-11 08:59 - 2012-11-01 05:21 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\msxml3r.dll

2013-05-11 08:59 - 2012-11-01 05:20 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll

2013-05-11 08:59 - 2012-11-01 05:20 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll

2013-05-11 08:50 - 2013-05-17 21:51 - 01895981 ____A C:\Windows\WindowsUpdate.log

2013-05-11 08:50 - 2013-05-17 17:15 - 00000000 ____D C:\Users\Barbara\AppData\Local\Packages

2013-05-11 08:50 - 2013-05-12 18:14 - 00000000 ____D C:\Users\Barbara\AppData\Local\VirtualStore

2013-05-11 08:50 - 2013-05-11 10:45 - 00000000 ____D C:\users\Barbara

2013-05-11 08:50 - 2013-05-11 09:15 - 00000000 ____D C:\ProgramData\PRICache

2013-05-11 08:50 - 2013-05-11 08:50 - 00000020 ___SH C:\Users\Barbara\ntuser.ini

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Risorse di stampa

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Risorse di rete

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Recenti

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Modelli

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Menu Avvio

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Impostazioni locali

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Documents\Video

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Documents\Musica

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Documents\Immagini

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Documenti

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Dati applicazioni

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\AppData\Local\Dati applicazioni

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\AppData\Local\Cronologia

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 ____D C:\Windows\CSC

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Adobe

2013-05-11 08:49 - 2013-05-11 08:49 - 00000117 ____A C:\Windows\System32\netcfg-63118.txt

2013-05-11 08:49 - 2013-05-11 08:49 - 00000117 ____A C:\Windows\System32\netcfg-59171.txt

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Public\Documents\Video

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Public\Documents\Musica

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Public\Documents\Immagini

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Risorse di stampa

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Risorse di rete

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Recenti

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Modelli

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Menu Avvio

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Impostazioni locali

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Documents\Video

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Documents\Musica

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Documents\Immagini

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Documenti

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Dati applicazioni

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\AppData\Local\Dati applicazioni

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\AppData\Local\Cronologia

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\Documents\Video

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\Documents\Musica

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\Documents\Immagini

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\AppData\Local\Dati applicazioni

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\AppData\Local\Cronologia

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\ProgramData\Modelli

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\ProgramData\Menu Avvio

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\ProgramData\Documenti

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\ProgramData\Dati applicazioni

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Program Files\File comuni

2013-05-11 08:46 - 2013-05-11 08:46 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf

2013-05-11 08:45 - 2013-05-11 17:12 - 00279472 ____A C:\Windows\PFRO.log

2013-05-11 08:45 - 2013-05-11 08:45 - 00001135 ____A C:\Windows\System32\netcfg-52026.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000185 ____A C:\Windows\System32\netcfg-54896.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000164 ____A C:\Windows\System32\netcfg-53289.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000161 ____A C:\Windows\System32\netcfg-54506.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000160 ____A C:\Windows\System32\netcfg-54662.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000160 ____A C:\Windows\System32\netcfg-54241.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000160 ____A C:\Windows\System32\netcfg-51885.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000159 ____A C:\Windows\System32\netcfg-53991.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000157 ____A C:\Windows\System32\netcfg-54397.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000157 ____A C:\Windows\System32\netcfg-51714.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000150 ____A C:\Windows\System32\netcfg-53867.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000000 ____A C:\Windows\ativpsrm.bin

==================== One Month Modified Files and Folders =======

2013-05-18 15:00 - 2013-05-18 15:00 - 00000000 ____D C:\FRST

2013-05-18 14:58 - 2013-05-18 14:58 - 00000000 ____A C:\Recovery.txt

2013-05-18 13:55 - 2013-05-11 10:16 - 00000000 ____D C:\Program Files (x86)\Steam

2013-05-18 13:55 - 2012-07-26 06:26 - 00262144 __ASH C:\Windows\System32\config\BBI

2013-05-18 13:54 - 2012-07-26 08:22 - 00000006 ___AH C:\Windows\Tasks\SA.DAT

2013-05-18 13:42 - 2013-05-11 17:33 - 00280792 ____A C:\Windows\SysWOW64\PnkBstrB.xtr

2013-05-18 13:42 - 2013-05-11 17:32 - 00280792 ____A C:\Windows\SysWOW64\PnkBstrB.exe

2013-05-18 13:41 - 2013-05-11 17:32 - 00280856 ____A C:\Windows\SysWOW64\PnkBstrB.ex0

2013-05-18 13:40 - 2013-05-11 17:20 - 00000000 ____D C:\Users\Barbara\Documents\my games

2013-05-18 12:00 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\System32\sru

2013-05-18 11:18 - 2013-05-17 20:13 - 00000954 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-998324891-904564694-1887333963-1001UA.job

2013-05-18 10:31 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\rescache

2013-05-18 10:10 - 2012-07-26 10:55 - 00791176 ____A C:\Windows\System32\perfh010.dat

2013-05-18 10:10 - 2012-07-26 10:55 - 00153544 ____A C:\Windows\System32\perfc010.dat

2013-05-18 10:10 - 2012-07-26 08:28 - 01785262 ____A C:\Windows\System32\PerfStringBackup.INI

2013-05-18 10:07 - 2012-07-26 08:21 - 00014969 ____A C:\Windows\setupact.log

2013-05-18 10:01 - 2013-05-18 10:01 - 01877468 ____A (Farbar) C:\Users\Barbara\Downloads\FRST64.exe

2013-05-18 09:00 - 2013-05-11 23:16 - 01075196 ____A C:\Windows\SysWOW64\sig.bin

2013-05-18 09:00 - 2013-05-11 23:16 - 00055048 ____A C:\Windows\SysWOW64\nmp.map

2013-05-17 21:51 - 2013-05-11 08:50 - 01895981 ____A C:\Windows\WindowsUpdate.log

2013-05-17 21:51 - 2012-07-26 09:12 - 00000000 ___RD C:\Windows\ToastData

2013-05-17 20:18 - 2013-05-17 20:13 - 00000932 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-998324891-904564694-1887333963-1001Core.job

2013-05-17 20:14 - 2013-05-17 20:12 - 00000000 ____D C:\Users\Barbara\AppData\Local\Facebook

2013-05-17 20:13 - 2013-05-17 20:13 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0 (2).exe

2013-05-17 20:12 - 2013-05-17 20:12 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0 (1).exe

2013-05-17 20:11 - 2013-05-17 20:11 - 00501248 ____A (Facebook Inc.) C:\Users\Barbara\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe

2013-05-17 17:23 - 2013-05-11 09:05 - 75016696 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe

2013-05-17 17:20 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent

2013-05-17 17:16 - 2013-05-17 17:16 - 00002165 ____A C:\Users\Barbara\Documents\mazzo magic - collegamento.lnk

2013-05-17 17:15 - 2013-05-11 08:50 - 00000000 ____D C:\Users\Barbara\AppData\Local\Packages

2013-05-17 17:14 - 2013-05-17 17:13 - 00210951 ____A C:\Users\Barbara\Documents\mazzo magic.oxps

2013-05-17 17:13 - 2013-05-17 17:13 - 00000000 ____D C:\ProgramData\HP

2013-05-17 16:37 - 2013-05-17 16:37 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\OpenOffice.org

2013-05-16 21:26 - 2013-05-12 19:02 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\TS3Client

2013-05-14 19:45 - 2013-05-12 21:18 - 00015254 ____A C:\Users\Barbara\AppData\Roaming\Bubble Dock.installation.log

2013-05-14 19:45 - 2013-05-12 21:18 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Nosibay

2013-05-14 15:06 - 2013-05-14 15:06 - 06953496 ____A (Microsoft Corporation) C:\Users\Barbara\Downloads\Silverlight.exe

2013-05-14 08:52 - 2013-05-11 09:29 - 00000000 ____D C:\ProgramData\DriverGenius

2013-05-13 06:46 - 2013-05-13 06:46 - 00000127 ____A C:\Users\Barbara\Desktop\ckfiles.txt

2013-05-13 06:44 - 2013-05-13 06:44 - 00681472 ____A () C:\Users\Barbara\Desktop\CKScanner.exe

2013-05-12 23:26 - 2013-05-12 23:26 - 00022555 ____A C:\Users\Barbara\Desktop\dds.txt

2013-05-12 23:26 - 2013-05-12 23:26 - 00002695 ____A C:\Users\Barbara\Desktop\attach.txt

2013-05-12 23:12 - 2013-05-12 23:12 - 00688992 ____R (Swearware) C:\Users\Barbara\Desktop\dds.com

2013-05-12 23:12 - 2013-05-12 23:12 - 00688992 ____A (Swearware) C:\Users\Barbara\Downloads\dds.scr

2013-05-12 21:21 - 2013-05-12 21:17 - 00001269 ____A C:\Users\Barbara\AppData\Roaming\Bubble Dock.boostrap.log

2013-05-12 21:18 - 2013-05-12 21:17 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\WinRAR

2013-05-12 21:17 - 2013-05-12 21:17 - 01650044 ____A C:\Users\Barbara\Desktop\wrar420it.exe

2013-05-12 21:17 - 2013-05-12 21:17 - 00000000 ____D C:\Program Files (x86)\WinRAR

2013-05-12 21:16 - 2013-05-12 21:16 - 00393048 ____A (Softonic ) C:\Users\Barbara\Downloads\SoftonicDownloader_per_winrar.exe

2013-05-12 21:16 - 2013-05-12 21:16 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Macromedia

2013-05-12 19:01 - 2013-05-12 19:01 - 00000975 ____A C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk

2013-05-12 19:01 - 2013-05-12 19:01 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client

2013-05-12 18:14 - 2013-05-11 08:50 - 00000000 ____D C:\Users\Barbara\AppData\Local\VirtualStore

2013-05-12 14:00 - 2013-05-11 09:09 - 00001170 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2013-05-12 14:00 - 2013-05-11 09:09 - 00001166 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2013-05-11 18:48 - 2013-05-11 17:32 - 00076888 ____A C:\Windows\SysWOW64\PnkBstrA.exe

2013-05-11 18:47 - 2013-05-11 18:47 - 00000000 ____D C:\Program Files (x86)\Microsoft Chart Controls

2013-05-11 18:47 - 2013-05-11 17:19 - 00010449 ____A C:\Windows\DirectX.log

2013-05-11 18:15 - 2013-05-11 18:15 - 00001117 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2013-05-11 18:15 - 2013-05-11 18:15 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Malwarebytes

2013-05-11 18:15 - 2013-05-11 18:15 - 00000000 ____D C:\ProgramData\Malwarebytes

2013-05-11 18:15 - 2013-05-11 18:15 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-05-11 17:33 - 2013-05-11 17:33 - 00000000 ____D C:\Users\Barbara\AppData\Local\PunkBuster

2013-05-11 17:32 - 2013-05-11 17:32 - 00000000 ____D C:\Users\Barbara\AppData\Local\CrashRpt

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Program Files\Reference Assemblies

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Program Files\MSBuild

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies

2013-05-11 17:31 - 2013-05-11 17:31 - 00000000 ____D C:\Program Files (x86)\MSBuild

2013-05-11 17:14 - 2013-05-11 17:14 - 01719648 ____A C:\Windows\SysWOW64\PerfStringBackup.INI

2013-05-11 17:13 - 2013-05-11 17:13 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Intel Corporation

2013-05-11 17:12 - 2013-05-11 17:12 - 00309400 ____A C:\Windows\System32\FNTCACHE.DAT

2013-05-11 17:12 - 2013-05-11 08:45 - 00279472 ____A C:\Windows\PFRO.log

2013-05-11 17:09 - 2013-05-11 17:09 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information

2013-05-11 17:09 - 2013-05-11 17:09 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\InstallShield

2013-05-11 17:09 - 2013-05-11 09:36 - 00000000 ____D C:\Program Files (x86)\Intel

2013-05-11 11:04 - 2013-05-11 11:02 - 12384248 ____A (Macrovision Corporation) C:\Users\Barbara\Downloads\iata_cd (1).exe

2013-05-11 10:57 - 2013-05-11 10:57 - 00106648 ____A (G Data Software) C:\Windows\System32\Drivers\GRD.sys

2013-05-11 10:51 - 2013-05-11 10:50 - 07767368 ____A (Intel Corporation) C:\Users\Barbara\Downloads\iata_cd.exe

2013-05-11 10:51 - 2013-05-11 10:47 - 17171440 ____A (Intel Corporation) C:\Users\Barbara\Downloads\SetupRST (1).exe

2013-05-11 10:45 - 2013-05-11 10:45 - 00000000 ____D C:\Users\Barbara\Intel

2013-05-11 10:45 - 2013-05-11 10:42 - 17171440 ____A (Intel Corporation) C:\Users\Barbara\Downloads\SetupRST.exe

2013-05-11 10:45 - 2013-05-11 08:50 - 00000000 ____D C:\users\Barbara

2013-05-11 10:38 - 2013-05-11 10:30 - 34954912 ____A (TeamSpeak Systems GmbH) C:\Users\Barbara\Downloads\TeamSpeak3-Client-win64-3.0.10.1.exe

2013-05-11 10:31 - 2013-05-11 10:31 - 00001196 ____A C:\Users\Public\Desktop\OpenOffice.org 3.4.1.lnk

2013-05-11 10:31 - 2013-05-11 10:31 - 00000000 ____D C:\Users\Barbara\Desktop\OpenOffice.org 3.4.1 (it) Installation Files

2013-05-11 10:31 - 2013-05-11 10:31 - 00000000 ____D C:\Program Files (x86)\OpenOffice.org 3

2013-05-11 10:25 - 2012-07-26 09:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel

2013-05-11 10:25 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\WinStore

2013-05-11 10:25 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\PolicyDefinitions

2013-05-11 10:25 - 2012-07-26 06:38 - 00000000 ____D C:\Windows\System32\oobe

2013-05-11 10:19 - 2013-05-11 10:19 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf

2013-05-11 10:16 - 2013-05-11 10:16 - 00000925 ____A C:\Users\Public\Desktop\Steam.lnk

2013-05-11 10:08 - 2013-05-11 10:08 - 00000117 ____A C:\Windows\System32\netcfg-21044.txt

2013-05-11 10:08 - 2013-05-11 10:08 - 00000117 ____A C:\Windows\System32\netcfg-20950.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000117 ____A C:\Windows\System32\netcfg-32198.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000117 ____A C:\Windows\System32\netcfg-32167.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000117 ____A C:\Windows\System32\netcfg-22620.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000117 ____A C:\Windows\System32\netcfg-22417.txt

2013-05-11 09:59 - 2013-05-11 09:59 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\ATI

2013-05-11 09:59 - 2013-05-11 09:59 - 00000000 ____D C:\Users\Barbara\AppData\Local\ATI

2013-05-11 09:59 - 2013-05-11 09:59 - 00000000 ____D C:\ProgramData\ATI

2013-05-11 09:55 - 2013-05-11 09:20 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}

2013-05-11 09:55 - 2013-05-11 09:05 - 00000000 ____D C:\Users\Barbara\AppData\Local\Downloaded Installations

2013-05-11 09:52 - 2013-05-11 09:52 - 00002233 ____A C:\Users\Public\Desktop\TuneUp Manutenzione in 1 clic.lnk

2013-05-11 09:52 - 2013-05-11 09:52 - 00002189 ____A C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk

2013-05-11 09:52 - 2013-05-11 09:52 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\TuneUp Software

2013-05-11 09:52 - 2013-05-11 09:52 - 00000000 ____D C:\ProgramData\TuneUp Software

2013-05-11 09:52 - 2013-05-11 09:52 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013

2013-05-11 09:49 - 2013-05-11 09:49 - 00001111 ____A C:\Users\Public\Desktop\Samsung Magician.lnk

2013-05-11 09:49 - 2013-05-11 09:49 - 00000000 ____D C:\ProgramData\Samsung

2013-05-11 09:49 - 2013-05-11 09:49 - 00000000 ____D C:\Program Files (x86)\Samsung Magician

2013-05-11 09:44 - 2012-08-31 22:07 - 00008192 _RASH C:\BOOTSECT.BAK

2013-05-11 09:44 - 2012-07-26 09:13 - 00262144 ____A C:\Windows\System32\config\BCD-Template

2013-05-11 09:42 - 2013-05-11 09:42 - 00000117 ____A C:\Windows\System32\netcfg-33259.txt

2013-05-11 09:42 - 2013-05-11 09:42 - 00000117 ____A C:\Windows\System32\netcfg-33212.txt

2013-05-11 09:41 - 2013-05-11 09:41 - 00000117 ____A C:\Windows\System32\netcfg-23712.txt

2013-05-11 09:41 - 2013-05-11 09:41 - 00000117 ____A C:\Windows\System32\netcfg-23524.txt

2013-05-11 09:36 - 2013-05-11 09:30 - 00000000 ____D C:\Users\Public\Documents\DriverGenius

2013-05-11 09:35 - 2013-05-11 09:35 - 00000000 ____D C:\ProgramData\AMD

2013-05-11 09:35 - 2013-05-11 09:35 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies

2013-05-11 09:35 - 2013-05-11 09:35 - 00000000 ____D C:\Program Files (x86)\AMD AVT

2013-05-11 09:35 - 2013-05-11 09:34 - 00000000 ____D C:\Program Files\ATI Technologies

2013-05-11 09:34 - 2013-05-11 09:34 - 00000000 ____D C:\Program Files\ATI

2013-05-11 09:34 - 2013-05-11 09:34 - 00000000 ____D C:\Program Files (x86)\ATI Technologies

2013-05-11 09:34 - 2012-07-26 09:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared

2013-05-11 09:29 - 2013-05-11 09:29 - 00001215 ____A C:\Users\Barbara\Desktop\Driver Genius Professional Edition.lnk

2013-05-11 09:29 - 2013-05-11 09:29 - 00000000 ____D C:\Program Files (x86)\Driver-Soft

2013-05-11 09:28 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\LiveKernelReports

2013-05-11 09:27 - 2013-05-11 09:06 - 00000000 ____D C:\ProgramData\G DATA

2013-05-11 09:15 - 2013-05-11 09:15 - 00000128 ____A C:\Windows\System32\netcfg-34273.txt

2013-05-11 09:15 - 2013-05-11 09:15 - 00000117 ____A C:\Windows\System32\netcfg-24273.txt

2013-05-11 09:15 - 2013-05-11 09:15 - 00000117 ____A C:\Windows\System32\netcfg-24117.txt

2013-05-11 09:15 - 2013-05-11 09:14 - 00000000 ___RD C:\Windows\BrowserChoice

2013-05-11 09:15 - 2013-05-11 08:50 - 00000000 ____D C:\ProgramData\PRICache

2013-05-11 09:13 - 2012-07-26 09:12 - 00000000 ____D C:\Program Files\Windows Defender

2013-05-11 09:13 - 2012-07-26 09:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender

2013-05-11 09:10 - 2013-05-11 09:10 - 00002263 ____A C:\Users\Public\Desktop\Google Chrome.lnk

2013-05-11 09:10 - 2013-05-11 09:09 - 00000000 ____D C:\Users\Barbara\AppData\Local\Google

2013-05-11 09:10 - 2013-05-11 09:09 - 00000000 ____D C:\Program Files (x86)\Google

2013-05-11 09:06 - 2013-05-11 09:06 - 00122744 ____A (G Data Software AG) C:\Windows\System32\Drivers\MiniIcpt.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00098760 ____A (G Data Software) C:\Windows\System32\Drivers\TS4nt.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00065912 ____A (G Data Software AG) C:\Windows\System32\Drivers\gdwfpcd64.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00064376 ____A (G Data Software AG) C:\Windows\System32\Drivers\HookCentre.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00059768 ____A (G Data Software AG) C:\Windows\System32\Drivers\PktIcpt.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00054136 ____A (G Data Software AG) C:\Windows\System32\Drivers\GDBehave.sys

2013-05-11 09:06 - 2013-05-11 09:06 - 00002139 ____A C:\Users\Public\Desktop\G Data TotalProtection.lnk

2013-05-11 09:06 - 2013-05-11 09:06 - 00000000 ____D C:\Windows\SysWOW64\BioAPIFFDB

2013-05-11 09:06 - 2013-05-11 09:06 - 00000000 ____D C:\ProgramData\G DATA Software

2013-05-11 09:06 - 2013-05-11 09:06 - 00000000 ____D C:\Program Files (x86)\G Data

2013-05-11 09:04 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\System32\restore

2013-05-11 08:55 - 2013-05-11 09:38 - 00000000 ____D C:\Windows.old.000

2013-05-11 08:50 - 2013-05-11 09:44 - 00000000 ____D C:\Windows\Panther

2013-05-11 08:50 - 2013-05-11 08:50 - 00000020 ___SH C:\Users\Barbara\ntuser.ini

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Risorse di stampa

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Risorse di rete

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Recenti

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Modelli

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Menu Avvio

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Impostazioni locali

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Documents\Video

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Documents\Musica

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Documents\Immagini

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Documenti

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\Dati applicazioni

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\AppData\Local\Dati applicazioni

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 __SHD C:\Users\Barbara\AppData\Local\Cronologia

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 ____D C:\Windows\CSC

2013-05-11 08:50 - 2013-05-11 08:50 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Adobe

2013-05-11 08:49 - 2013-05-11 08:49 - 00000117 ____A C:\Windows\System32\netcfg-63118.txt

2013-05-11 08:49 - 2013-05-11 08:49 - 00000117 ____A C:\Windows\System32\netcfg-59171.txt

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Public\Documents\Video

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Public\Documents\Musica

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Public\Documents\Immagini

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Risorse di stampa

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Risorse di rete

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Recenti

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Modelli

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Menu Avvio

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Impostazioni locali

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Documents\Video

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Documents\Musica

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Documents\Immagini

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Documenti

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\Dati applicazioni

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\AppData\Local\Dati applicazioni

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default\AppData\Local\Cronologia

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\Documents\Video

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\Documents\Musica

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\Documents\Immagini

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\AppData\Local\Dati applicazioni

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Users\Default User\AppData\Local\Cronologia

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\ProgramData\Modelli

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\ProgramData\Menu Avvio

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\ProgramData\Documenti

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\ProgramData\Dati applicazioni

2013-05-11 08:48 - 2013-05-11 08:48 - 00000000 __SHD C:\Program Files\File comuni

2013-05-11 08:48 - 2012-08-31 21:21 - 00000000 __SHD C:\Recovery

2013-05-11 08:48 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\System32\Recovery

2013-05-11 08:48 - 2012-07-26 09:12 - 00000000 ____D C:\Program Files\Windows NT

2013-05-11 08:48 - 2012-07-26 06:37 - 00000000 __RHD C:\users\Default

2013-05-11 08:46 - 2013-05-11 08:46 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf

2013-05-11 08:46 - 2012-07-26 09:13 - 00001720 ____A C:\Windows\DtcInstall.log

2013-05-11 08:45 - 2013-05-11 08:45 - 00001135 ____A C:\Windows\System32\netcfg-52026.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000185 ____A C:\Windows\System32\netcfg-54896.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000164 ____A C:\Windows\System32\netcfg-53289.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000161 ____A C:\Windows\System32\netcfg-54506.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000160 ____A C:\Windows\System32\netcfg-54662.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000160 ____A C:\Windows\System32\netcfg-54241.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000160 ____A C:\Windows\System32\netcfg-51885.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000159 ____A C:\Windows\System32\netcfg-53991.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000157 ____A C:\Windows\System32\netcfg-54397.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000157 ____A C:\Windows\System32\netcfg-51714.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000150 ____A C:\Windows\System32\netcfg-53867.txt

2013-05-11 08:45 - 2013-05-11 08:45 - 00000000 ____A C:\Windows\ativpsrm.bin

2013-05-07 21:07 - 2012-07-26 09:14 - 00693112 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe

2013-05-07 21:07 - 2012-07-26 09:14 - 00078200 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

2013-05-02 16:29 - 2013-05-11 09:04 - 00278800 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe

==================== Known DLLs (Whitelisted) ================

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit

C:\Windows\System32\wininit.exe => MD5 is legit

C:\Windows\explorer.exe => MD5 is legit

C:\Windows\SysWOW64\explorer.exe => MD5 is legit

C:\Windows\System32\svchost.exe => MD5 is legit

C:\Windows\SysWOW64\svchost.exe => MD5 is legit

C:\Windows\System32\services.exe => MD5 is legit

C:\Windows\System32\User32.dll => MD5 is legit

C:\Windows\SysWOW64\User32.dll => MD5 is legit

C:\Windows\System32\userinit.exe => MD5 is legit

C:\Windows\SysWOW64\userinit.exe => MD5 is legit

C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK

HKLM\...\exefile\DefaultIcon: %1 => OK

HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points =========================

Restore point made on: 2013-05-17 17:23:14

==================== Memory info ===========================

Percentage of memory in use: 15%

Total physical RAM: 4095.05 MB

Available physical RAM: 3477.66 MB

Total Pagefile: 4095.05 MB

Available Pagefile: 3483.82 MB

Total Virtual: 8192 MB

Available Virtual: 8191.87 MB

==================== Drives ================================

Drive c: (Boot SSD) (Fixed) (Total:107.34 GB) (Free:28.96 GB) NTFS (Disk=0 Partition=1) ==>[Drive with boot components (obtained from BCD)]

Drive d: () (Removable) (Total:1.85 GB) (Free:1.71 GB) FAT (Disk=1 Partition=1)

Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

==================== MBR & Partition Table ==================

========================================================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119 GB) (Disk ID: 341F3E41)

Partition 1: (Active) - (Size=107 GB) - (Type=07 NTFS)

========================================================

Disk: 1 (Size: 2 GB) (Disk ID: 00000000)

Partition 1: (Not Active) - (Size=2 GB) - (Type=06)

Last Boot: 2013-05-11 08:45

==================== End Of Log ============================

Link to post
Share on other sites

Please carefully follow this procedure

Please download the attached fixlist.txt and SAVE / copy it to your flashdrive.

NOTICE: This script was written specifically for this user, for use on this particular system. Running this on another machine may cause damage to your operating system

On Vista or Windows 7/8: Now please enter System Recovery Options. (as you did before)

Run FRST64 or FRST (which ever one you're using) and press the Fix button just once and wait.

The tool will make a log on the flashdrive (Fixlog.txt) please post it into a new reply.

Next,

remove the flash-drive and restart your system into Windows 8 normal mode.

then,

Download aswMBR.exe ( 511KB ) to your desktop.

On Windows 7 / 8 or Vista, RIGHT click on aswMBR.exe and select Run As Administrator to start.

On Windows XP, double click the exe to start.

IF prompted to update Avast definitions, answer NO.

aswmbr-1_zps5bcff15d.gif

On the following screen:

aswmbr-2_zpse79f2c16.gif

uncheck trace disk IO calls at the bottom left :excl:

Now, Click the "Scan" button to start scan.

Have patience as it scans.

On completion of the scan (Note if the Fix button is enabled (not the FixMBR button) and tell me)

Now click save log, save it to your desktop and Copy & Paste in your next reply.

Do NOT click any Fix button.

EXIT the tool.

Fixlist.txt

Link to post
Share on other sites

Hello I've followed your procedure for frst64 and here it is log file:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-05-2013

Ran by SYSTEM at 2013-05-20 00:11:37 Run:1

Running from D:\

Boot Mode: Recovery

==============================================

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.

==== End of Fixlog ====

Then I've tried with aswMBR.exe but after a very short while scanning stops and a message warns me AVK Anti vir stops working. Then I've to exit program !?!

Link to post
Share on other sites

You answered NO to download of antivirus? Maybe you are not following my suggestions properly.

Put aside aswMBR.

IF you have a previous copy of TDSSKILLER, delete it now.

Please read carefully and follow these steps.

  • Download TDSSKiller and save it to your Desktop.
  • Double-Click on TDSSKiller.exe to run the application, then on Start Scan.
    If running Vista or Windows 7, do a RIGHT-Click and select Run as Administrator to start TDSSKILLER.exe.
  • If an infected file is detected, the default action will be Cure, click on Continue.
    TDSSKillerMal-1.png
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
    Skip and click on Continue
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
    TDSSKillerCompleted.png
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.

Link to post
Share on other sites

Here it is the log: 21:59:17.0676 5904 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42

21:59:18.0771 5904 ============================================================

21:59:18.0771 5904 Current date / time: 2013/05/20 21:59:18.0771

21:59:18.0771 5904 SystemInfo:

21:59:18.0771 5904

21:59:18.0771 5904 OS Version: 6.2.9200 ServicePack: 0.0

21:59:18.0771 5904 Product type: Workstation

21:59:18.0771 5904 ComputerName: BARNEYPC

21:59:18.0771 5904 UserName: Barbara

21:59:18.0771 5904 Windows directory: C:\Windows

21:59:18.0771 5904 System windows directory: C:\Windows

21:59:18.0771 5904 Running under WOW64

21:59:18.0771 5904 Processor architecture: Intel x64

21:59:18.0771 5904 Number of processors: 2

21:59:18.0771 5904 Page size: 0x1000

21:59:18.0771 5904 Boot type: Normal boot

21:59:18.0771 5904 ============================================================

21:59:18.0987 5904 Drive \Device\Harddisk0\DR0 - Size: 0x1DCF856000 (119.24 Gb), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

21:59:18.0991 5904 ============================================================

21:59:18.0991 5904 \Device\Harddisk0\DR0:

21:59:18.0991 5904 MBR partitions:

21:59:18.0991 5904 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xD6AE334

21:59:18.0991 5904 ============================================================

21:59:18.0992 5904 C: <-> \Device\Harddisk0\DR0\Partition1

21:59:18.0992 5904 ============================================================

21:59:18.0992 5904 Initialize success

21:59:18.0992 5904 ============================================================

21:59:49.0290 6012 ============================================================

21:59:49.0290 6012 Scan started

21:59:49.0290 6012 Mode: Manual;

21:59:49.0291 6012 ============================================================

21:59:49.0479 6012 ================ Scan system memory ========================

21:59:49.0479 6012 System memory - ok

21:59:49.0479 6012 ================ Scan services =============================

21:59:49.0504 6012 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys

21:59:49.0505 6012 1394ohci - ok

21:59:49.0510 6012 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\Windows\system32\drivers\3ware.sys

21:59:49.0512 6012 3ware - ok

21:59:49.0519 6012 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\Windows\system32\drivers\ACPI.sys

21:59:49.0523 6012 ACPI - ok

21:59:49.0526 6012 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\Windows\system32\Drivers\acpiex.sys

21:59:49.0528 6012 acpiex - ok

21:59:49.0530 6012 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\Windows\System32\drivers\acpipagr.sys

21:59:49.0531 6012 acpipagr - ok

21:59:49.0534 6012 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys

21:59:49.0536 6012 AcpiPmi - ok

21:59:49.0539 6012 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\Windows\System32\drivers\acpitime.sys

21:59:49.0540 6012 acpitime - ok

21:59:49.0547 6012 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\Windows\system32\drivers\adp94xx.sys

21:59:49.0552 6012 adp94xx - ok

21:59:49.0559 6012 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\Windows\system32\drivers\adpahci.sys

21:59:49.0563 6012 adpahci - ok

21:59:49.0568 6012 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\Windows\system32\drivers\adpu320.sys

21:59:49.0570 6012 adpu320 - ok

21:59:49.0577 6012 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll

21:59:49.0578 6012 AeLookupSvc - ok

21:59:49.0586 6012 [ 36D6A3201721558A8AFBCC09C2DA4C2C ] AFD C:\Windows\system32\drivers\afd.sys

21:59:49.0592 6012 AFD - ok

21:59:49.0596 6012 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\Windows\system32\drivers\agp440.sys

21:59:49.0597 6012 agp440 - ok

21:59:49.0600 6012 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\Windows\System32\alg.exe

21:59:49.0602 6012 ALG - ok

21:59:49.0606 6012 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\Windows\system32\AUInstallAgent.dll

21:59:49.0609 6012 AllUserInstallAgent - ok

21:59:49.0614 6012 [ 310F86335B0505DDC6D2DD48E66EF06B ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe

21:59:49.0617 6012 AMD External Events Utility - ok

21:59:49.0621 6012 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\Windows\System32\drivers\amdk8.sys

21:59:49.0622 6012 AmdK8 - ok

21:59:49.0625 6012 [ 99DA2A5AF036F792CE0FFE3C1B2223BD ] amdkmafd C:\Windows\system32\drivers\amdkmafd.sys

21:59:49.0626 6012 amdkmafd - ok

21:59:49.0718 6012 [ 79CC9BE187E3144E1B58A54B842475E7 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys

21:59:49.0817 6012 amdkmdag - ok

21:59:49.0827 6012 [ 07561D3B7FD99F6E186C49C2D0628E38 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys

21:59:49.0833 6012 amdkmdap - ok

21:59:49.0837 6012 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\Windows\System32\drivers\amdppm.sys

21:59:49.0839 6012 AmdPPM - ok

21:59:49.0843 6012 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\Windows\system32\drivers\amdsata.sys

21:59:49.0844 6012 amdsata - ok

21:59:49.0850 6012 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys

21:59:49.0853 6012 amdsbs - ok

21:59:49.0857 6012 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\Windows\system32\drivers\amdxata.sys

21:59:49.0858 6012 amdxata - ok

21:59:49.0861 6012 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\Windows\system32\drivers\appid.sys

21:59:49.0863 6012 AppID - ok

21:59:49.0866 6012 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\Windows\System32\appidsvc.dll

21:59:49.0867 6012 AppIDSvc - ok

21:59:49.0871 6012 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\Windows\System32\appinfo.dll

21:59:49.0871 6012 Appinfo - ok

21:59:49.0876 6012 [ 2D14788C5D0836292BEB27BBE109BE56 ] AppMgmt C:\Windows\System32\appmgmts.dll

21:59:49.0878 6012 AppMgmt - ok

21:59:49.0881 6012 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\Windows\system32\drivers\arc.sys

21:59:49.0883 6012 arc - ok

21:59:49.0888 6012 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\Windows\system32\drivers\arcsas.sys

21:59:49.0890 6012 arcsas - ok

21:59:49.0893 6012 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

21:59:49.0894 6012 AsyncMac - ok

21:59:49.0897 6012 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\Windows\system32\drivers\atapi.sys

21:59:49.0898 6012 atapi - ok

21:59:49.0903 6012 [ 005D1AA28FFAA7FB327842B3CAFF726E ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW86.sys

21:59:49.0904 6012 AtiHDAudioService - ok

21:59:49.0909 6012 [ 810ED88782952228AF9C0985FB7D259E ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll

21:59:49.0911 6012 AudioEndpointBuilder - ok

21:59:49.0921 6012 [ 25CA8B87479A374919563B3EE7136F32 ] Audiosrv C:\Windows\System32\Audiosrv.dll

21:59:49.0925 6012 Audiosrv - ok

21:59:49.0942 6012 [ BF3B991E0E22F9E6A82CCF6512CB51D0 ] AVKProxy C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe

21:59:49.0947 6012 AVKProxy - ok

21:59:49.0956 6012 [ 29DA2D5958B352022A1BB5CE6FDB427C ] AVKService C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKService.exe

21:59:49.0958 6012 AVKService - ok

21:59:49.0977 6012 [ BD66948F382D077AC9833B6414D1F06E ] AVKWCtl C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKWCtlX64.exe

21:59:49.0995 6012 AVKWCtl - ok

21:59:49.0999 6012 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\Windows\System32\AxInstSV.dll

21:59:50.0001 6012 AxInstSV - ok

21:59:50.0009 6012 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys

21:59:50.0025 6012 b06bdrv - ok

21:59:50.0028 6012 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys

21:59:50.0029 6012 BasicDisplay - ok

21:59:50.0033 6012 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys

21:59:50.0034 6012 BasicRender - ok

21:59:50.0040 6012 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\Windows\System32\bdesvc.dll

21:59:50.0042 6012 BDESVC - ok

21:59:50.0045 6012 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\Windows\system32\drivers\Beep.sys

21:59:50.0046 6012 Beep - ok

21:59:50.0056 6012 [ 9E6A544F465C582AB42444A217CF04DC ] BFE C:\Windows\System32\bfe.dll

21:59:50.0064 6012 BFE - ok

21:59:50.0076 6012 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\Windows\System32\qmgr.dll

21:59:50.0092 6012 BITS - ok

21:59:50.0096 6012 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\Windows\system32\DRIVERS\bowser.sys

21:59:50.0097 6012 bowser - ok

21:59:50.0102 6012 [ 975398A3D2C1FEA73FC93931978DF354 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll

21:59:50.0103 6012 BrokerInfrastructure - ok

21:59:50.0107 6012 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\Windows\System32\browser.dll

21:59:50.0109 6012 Browser - ok

21:59:50.0112 6012 [ F17DEEAC7D51D44CF1BFF8DD4F0A2B6D ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys

21:59:50.0113 6012 BthAvrcpTg - ok

21:59:50.0116 6012 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys

21:59:50.0118 6012 BthHFEnum - ok

21:59:50.0121 6012 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys

21:59:50.0122 6012 bthhfhid - ok

21:59:50.0125 6012 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys

21:59:50.0127 6012 BTHMODEM - ok

21:59:50.0131 6012 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\Windows\system32\bthserv.dll

21:59:50.0133 6012 bthserv - ok

21:59:50.0137 6012 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys

21:59:50.0138 6012 cdfs - ok

21:59:50.0143 6012 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\Windows\System32\drivers\cdrom.sys

21:59:50.0145 6012 cdrom - ok

21:59:50.0150 6012 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\Windows\System32\certprop.dll

21:59:50.0152 6012 CertPropSvc - ok

21:59:50.0155 6012 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\Windows\System32\drivers\circlass.sys

21:59:50.0156 6012 circlass - ok

21:59:50.0162 6012 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\Windows\system32\drivers\CLFS.sys

21:59:50.0166 6012 CLFS - ok

21:59:50.0174 6012 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\Windows\System32\drivers\CmBatt.sys

21:59:50.0175 6012 CmBatt - ok

21:59:50.0183 6012 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\Windows\system32\Drivers\cng.sys

21:59:50.0189 6012 CNG - ok

21:59:50.0193 6012 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys

21:59:50.0194 6012 CompositeBus - ok

21:59:50.0196 6012 COMSysApp - ok

21:59:50.0200 6012 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\Windows\system32\drivers\condrv.sys

21:59:50.0201 6012 condrv - ok

21:59:50.0206 6012 [ F0E78B119D12BA81F163D48C0FF30B9A ] CryptSvc C:\Windows\system32\cryptsvc.dll

21:59:50.0208 6012 CryptSvc - ok

21:59:50.0216 6012 [ F2C69C3D98249DE14D4B2832516D4FD5 ] CSC C:\Windows\system32\drivers\csc.sys

21:59:50.0222 6012 CSC - ok

21:59:50.0232 6012 [ 22CCB6AFF617AAC6121DF6CDA5ABF3F4 ] CscService C:\Windows\System32\cscsvc.dll

21:59:50.0240 6012 CscService - ok

21:59:50.0243 6012 [ C4D01BD86D6B207275FC143EEA951D75 ] dam C:\Windows\system32\drivers\dam.sys

21:59:50.0245 6012 dam - ok

21:59:50.0256 6012 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\Windows\system32\rpcss.dll

21:59:50.0260 6012 DcomLaunch - ok

21:59:50.0267 6012 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\Windows\System32\defragsvc.dll

21:59:50.0270 6012 defragsvc - ok

21:59:50.0276 6012 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\Windows\system32\das.dll

21:59:50.0280 6012 DeviceAssociationService - ok

21:59:50.0284 6012 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\Windows\system32\umpnpmgr.dll

21:59:50.0286 6012 DeviceInstall - ok

21:59:50.0290 6012 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys

21:59:50.0292 6012 Dfsc - ok

21:59:50.0298 6012 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\Windows\system32\dhcpcore.dll

21:59:50.0300 6012 Dhcp - ok

21:59:50.0303 6012 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\Windows\system32\drivers\discache.sys

21:59:50.0304 6012 discache - ok

21:59:50.0308 6012 [ 560495FF4CA22E1D9B1972FA18F43B6F ] disk C:\Windows\system32\drivers\disk.sys

21:59:50.0310 6012 disk - ok

21:59:50.0313 6012 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\Windows\System32\drivers\dmvsc.sys

21:59:50.0314 6012 dmvsc - ok

21:59:50.0319 6012 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\Windows\System32\dnsrslvr.dll

21:59:50.0327 6012 Dnscache - ok

21:59:50.0332 6012 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\Windows\System32\dot3svc.dll

21:59:50.0335 6012 dot3svc - ok

21:59:50.0340 6012 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\Windows\system32\dps.dll

21:59:50.0343 6012 DPS - ok

21:59:50.0346 6012 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\Windows\system32\drivers\drmkaud.sys

21:59:50.0347 6012 drmkaud - ok

21:59:50.0351 6012 [ BF48F32EE248C3D371DA5DC93BBEADA7 ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll

21:59:50.0353 6012 DsmSvc - ok

21:59:50.0369 6012 [ 6D1B8A9A2C0BD4851D8AF1AB43E67AD9 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

21:59:50.0402 6012 DXGKrnl - ok

21:59:50.0406 6012 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\Windows\System32\eapsvc.dll

21:59:50.0408 6012 Eaphost - ok

21:59:50.0437 6012 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\Windows\system32\drivers\evbda.sys

21:59:50.0465 6012 ebdrv - ok

21:59:50.0469 6012 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\Windows\System32\lsass.exe

21:59:50.0471 6012 EFS - ok

21:59:50.0474 6012 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys

21:59:50.0476 6012 EhStorClass - ok

21:59:50.0479 6012 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys

21:59:50.0481 6012 EhStorTcgDrv - ok

21:59:50.0484 6012 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\Windows\System32\drivers\errdev.sys

21:59:50.0485 6012 ErrDev - ok

21:59:50.0495 6012 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\Windows\system32\es.dll

21:59:50.0498 6012 EventSystem - ok

21:59:50.0503 6012 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\Windows\system32\drivers\exfat.sys

21:59:50.0505 6012 exfat - ok

21:59:50.0510 6012 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\Windows\system32\drivers\fastfat.sys

21:59:50.0513 6012 fastfat - ok

21:59:50.0522 6012 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\Windows\system32\fxssvc.exe

21:59:50.0525 6012 Fax - ok

21:59:50.0528 6012 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\Windows\System32\drivers\fdc.sys

21:59:50.0529 6012 fdc - ok

21:59:50.0532 6012 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\Windows\system32\fdPHost.dll

21:59:50.0534 6012 fdPHost - ok

21:59:50.0536 6012 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\Windows\system32\fdrespub.dll

21:59:50.0538 6012 FDResPub - ok

21:59:50.0542 6012 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\Windows\system32\fhsvc.dll

21:59:50.0544 6012 fhsvc - ok

21:59:50.0547 6012 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys

21:59:50.0549 6012 FileInfo - ok

21:59:50.0552 6012 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\Windows\system32\drivers\filetrace.sys

21:59:50.0553 6012 Filetrace - ok

21:59:50.0556 6012 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\Windows\System32\drivers\flpydisk.sys

21:59:50.0557 6012 flpydisk - ok

21:59:50.0564 6012 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\Windows\system32\drivers\fltmgr.sys

21:59:50.0565 6012 FltMgr - ok

21:59:50.0580 6012 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\Windows\system32\FntCache.dll

21:59:50.0591 6012 FontCache - ok

21:59:50.0596 6012 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

21:59:50.0597 6012 FontCache3.0.0.0 - ok

21:59:50.0602 6012 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\Windows\system32\drivers\FsDepends.sys

21:59:50.0603 6012 FsDepends - ok

21:59:50.0607 6012 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

21:59:50.0608 6012 Fs_Rec - ok

21:59:50.0615 6012 [ FA228F4BB10DC7ED7E7D131C034E2331 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys

21:59:50.0619 6012 fvevol - ok

21:59:50.0623 6012 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\Windows\System32\drivers\fxppm.sys

21:59:50.0624 6012 FxPPM - ok

21:59:50.0627 6012 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys

21:59:50.0628 6012 gagp30kx - ok

21:59:50.0644 6012 [ 0A7B2688460070F4EE311E8F7D4D31B5 ] GDBackupSvc C:\Program Files (x86)\G Data\TotalProtection\AVKBackup\AVKBackupService.exe

21:59:50.0652 6012 GDBackupSvc - ok

21:59:50.0657 6012 [ 116F4672A804DA33E1159C005AE88B9C ] GDBehave C:\Windows\system32\drivers\GDBehave.sys

21:59:50.0658 6012 GDBehave - ok

21:59:50.0675 6012 [ CC011FABE68CDC2EC9B0DEA07B8414C9 ] GDFwSvc C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFwSvcx64.exe

21:59:50.0681 6012 GDFwSvc - ok

21:59:50.0686 6012 [ E02AC68F1FC31D38EAD729E00BD68C93 ] GDMnIcpt C:\Windows\system32\drivers\MiniIcpt.sys

21:59:50.0687 6012 GDMnIcpt - ok

21:59:50.0691 6012 [ 290DDB8C97249F99569B77E9DF2F76FC ] GDPkIcpt C:\Windows\system32\drivers\PktIcpt.sys

21:59:50.0692 6012 GDPkIcpt - ok

21:59:50.0698 6012 [ B7D4DF09A86A5DC98F74A2FA2875C154 ] GDScan C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe

21:59:50.0701 6012 GDScan - ok

21:59:50.0714 6012 [ 546BAE77CA5C147A222EB1A4B0E8D60D ] GDTunerSvc C:\Program Files (x86)\G Data\TotalProtection\AVKTuner\AVKTunerService.exe

21:59:50.0726 6012 GDTunerSvc - ok

21:59:50.0730 6012 [ E64C471DBD91ADEB0B4C78C204326ECD ] gdwfpcd C:\Windows\system32\drivers\gdwfpcd64.sys

21:59:50.0731 6012 gdwfpcd - ok

21:59:50.0734 6012 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys

21:59:50.0736 6012 gencounter - ok

21:59:50.0738 6012 GLogin - ok

21:59:50.0742 6012 [ CA18ECFCFFDD638ECE80799A9056B238 ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys

21:59:50.0744 6012 GPIOClx0101 - ok

21:59:50.0759 6012 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\Windows\System32\gpsvc.dll

21:59:50.0764 6012 gpsvc - ok

21:59:50.0769 6012 [ 9580CBF03D2EE08BD1C0D701AAE4092A ] GRD C:\Windows\system32\drivers\GRD.sys

21:59:50.0771 6012 GRD - ok

21:59:50.0775 6012 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

21:59:50.0776 6012 gupdate - ok

21:59:50.0778 6012 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

21:59:50.0779 6012 gupdatem - ok

21:59:50.0785 6012 [ C2504AA983B5D411F7D31402E8B57725 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys

21:59:50.0788 6012 HdAudAddService - ok

21:59:50.0792 6012 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys

21:59:50.0793 6012 HDAudBus - ok

21:59:50.0796 6012 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\Windows\System32\drivers\HidBatt.sys

21:59:50.0797 6012 HidBatt - ok

21:59:50.0800 6012 [ A25BAE8C1F2830C8E5625EC7E4E968BE ] HidBth C:\Windows\System32\drivers\hidbth.sys

21:59:50.0802 6012 HidBth - ok

21:59:50.0806 6012 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys

21:59:50.0807 6012 hidi2c - ok

21:59:50.0810 6012 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\Windows\System32\drivers\hidir.sys

21:59:50.0811 6012 HidIr - ok

21:59:50.0814 6012 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\Windows\system32\hidserv.dll

21:59:50.0816 6012 hidserv - ok

21:59:50.0819 6012 [ 590B6F71BCDA4368B4BF7D8DF22B60F7 ] HidUsb C:\Windows\System32\drivers\hidusb.sys

21:59:50.0820 6012 HidUsb - ok

21:59:50.0824 6012 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\Windows\system32\kmsvc.dll

21:59:50.0826 6012 hkmsvc - ok

21:59:50.0831 6012 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\Windows\system32\ListSvc.dll

21:59:50.0834 6012 HomeGroupListener - ok

21:59:50.0840 6012 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\Windows\system32\provsvc.dll

21:59:50.0843 6012 HomeGroupProvider - ok

21:59:50.0846 6012 [ 3CD18F0B3681FB267E67763CC3152D4E ] HookCentre C:\Windows\system32\drivers\HookCentre.sys

21:59:50.0847 6012 HookCentre - ok

21:59:50.0850 6012 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys

21:59:50.0851 6012 HpSAMD - ok

21:59:50.0863 6012 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\Windows\system32\drivers\HTTP.sys

21:59:50.0871 6012 HTTP - ok

21:59:50.0875 6012 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys

21:59:50.0875 6012 hwpolicy - ok

21:59:50.0878 6012 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys

21:59:50.0879 6012 hyperkbd - ok

21:59:50.0882 6012 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys

21:59:50.0883 6012 HyperVideo - ok

21:59:50.0886 6012 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys

21:59:50.0888 6012 i8042prt - ok

21:59:50.0898 6012 [ AE0C5DF7E7DA3E7AC29B64CFA8C4F044 ] iaStorA C:\Windows\system32\drivers\iaStorA.sys

21:59:50.0900 6012 iaStorA - ok

21:59:50.0904 6012 [ 777788D9B63CCEEEF2DB353BA4EDD454 ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

21:59:50.0905 6012 IAStorDataMgrSvc - ok

21:59:50.0912 6012 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys

21:59:50.0916 6012 iaStorV - ok

21:59:50.0920 6012 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\Windows\system32\drivers\iirsp.sys

21:59:50.0921 6012 iirsp - ok

21:59:50.0934 6012 [ 531B5A98145DA689741A0AC18F14EA94 ] IKEEXT C:\Windows\System32\ikeext.dll

21:59:50.0940 6012 IKEEXT - ok

21:59:50.0945 6012 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\Windows\system32\drivers\intelide.sys

21:59:50.0946 6012 intelide - ok

21:59:50.0950 6012 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\Windows\System32\drivers\intelppm.sys

21:59:50.0951 6012 intelppm - ok

21:59:50.0954 6012 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

21:59:50.0956 6012 IpFilterDriver - ok

21:59:50.0967 6012 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\Windows\System32\iphlpsvc.dll

21:59:50.0972 6012 iphlpsvc - ok

21:59:50.0976 6012 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys

21:59:50.0977 6012 IPMIDRV - ok

21:59:50.0982 6012 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\Windows\system32\drivers\ipnat.sys

21:59:50.0984 6012 IPNAT - ok

21:59:50.0987 6012 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\Windows\system32\drivers\irenum.sys

21:59:50.0988 6012 IRENUM - ok

21:59:50.0991 6012 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\Windows\system32\drivers\isapnp.sys

21:59:50.0992 6012 isapnp - ok

21:59:50.0997 6012 [ 69C8BF0BC2B0EA10F130F4D3104DC2EF ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys

21:59:51.0001 6012 iScsiPrt - ok

21:59:51.0005 6012 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys

21:59:51.0006 6012 kbdclass - ok

21:59:51.0009 6012 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\Windows\System32\drivers\kbdhid.sys

21:59:51.0010 6012 kbdhid - ok

21:59:51.0013 6012 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys

21:59:51.0014 6012 kdnic - ok

21:59:51.0016 6012 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\Windows\system32\lsass.exe

21:59:51.0017 6012 KeyIso - ok

21:59:51.0021 6012 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys

21:59:51.0023 6012 KSecDD - ok

21:59:51.0027 6012 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys

21:59:51.0029 6012 KSecPkg - ok

21:59:51.0032 6012 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys

21:59:51.0033 6012 ksthunk - ok

21:59:51.0040 6012 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\Windows\system32\msdtckrm.dll

21:59:51.0044 6012 KtmRm - ok

21:59:51.0048 6012 [ 028F31A7CC8231661A3C9C1F7EE7160D ] L1E C:\Windows\system32\DRIVERS\L1E62x64.sys

21:59:51.0049 6012 L1E - ok

21:59:51.0055 6012 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\Windows\system32\srvsvc.dll

21:59:51.0058 6012 LanmanServer - ok

21:59:51.0063 6012 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll

21:59:51.0065 6012 LanmanWorkstation - ok

21:59:51.0070 6012 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys

21:59:51.0071 6012 lltdio - ok

21:59:51.0077 6012 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\Windows\System32\lltdsvc.dll

21:59:51.0080 6012 lltdsvc - ok

21:59:51.0083 6012 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\Windows\System32\lmhsvc.dll

21:59:51.0085 6012 lmhosts - ok

21:59:51.0090 6012 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys

21:59:51.0092 6012 LSI_SAS - ok

21:59:51.0095 6012 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys

21:59:51.0097 6012 LSI_SAS2 - ok

21:59:51.0101 6012 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys

21:59:51.0103 6012 LSI_SCSI - ok

21:59:51.0107 6012 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys

21:59:51.0108 6012 LSI_SSS - ok

21:59:51.0115 6012 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\Windows\System32\lsm.dll

21:59:51.0118 6012 LSM - ok

21:59:51.0122 6012 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\Windows\system32\drivers\luafv.sys

21:59:51.0124 6012 luafv - ok

21:59:51.0127 6012 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys

21:59:51.0128 6012 MBAMProtector - ok

21:59:51.0135 6012 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

21:59:51.0139 6012 MBAMScheduler - ok

21:59:51.0148 6012 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

21:59:51.0152 6012 MBAMService - ok

21:59:51.0156 6012 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\Windows\system32\drivers\megasas.sys

21:59:51.0157 6012 megasas - ok

21:59:51.0163 6012 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys

21:59:51.0167 6012 MegaSR - ok

21:59:51.0170 6012 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\Windows\system32\mmcss.dll

21:59:51.0172 6012 MMCSS - ok

21:59:51.0175 6012 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\Windows\system32\drivers\modem.sys

21:59:51.0177 6012 Modem - ok

21:59:51.0179 6012 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\Windows\System32\drivers\monitor.sys

21:59:51.0180 6012 monitor - ok

21:59:51.0182 6012 [ 618446B98C79776654340CE27C73485E ] mouclass C:\Windows\System32\drivers\mouclass.sys

21:59:51.0184 6012 mouclass - ok

21:59:51.0187 6012 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\Windows\System32\drivers\mouhid.sys

21:59:51.0188 6012 mouhid - ok

21:59:51.0192 6012 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\Windows\system32\drivers\mountmgr.sys

21:59:51.0193 6012 mountmgr - ok

21:59:51.0197 6012 [ 0D1609DD82C7440F5D5BF21A9D4D5C0C ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

21:59:51.0198 6012 mpsdrv - ok

21:59:51.0210 6012 [ 3031573A739DBEE8923851929D0AF423 ] MpsSvc C:\Windows\system32\mpssvc.dll

21:59:51.0219 6012 MpsSvc - ok

21:59:51.0224 6012 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys

21:59:51.0226 6012 MRxDAV - ok

21:59:51.0232 6012 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

21:59:51.0244 6012 mrxsmb - ok

21:59:51.0250 6012 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

21:59:51.0253 6012 mrxsmb10 - ok

21:59:51.0258 6012 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

21:59:51.0261 6012 mrxsmb20 - ok

21:59:51.0265 6012 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys

21:59:51.0267 6012 MsBridge - ok

21:59:51.0271 6012 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\Windows\System32\msdtc.exe

21:59:51.0274 6012 MSDTC - ok

21:59:51.0279 6012 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\Windows\system32\drivers\Msfs.sys

21:59:51.0280 6012 Msfs - ok

21:59:51.0283 6012 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys

21:59:51.0284 6012 msgpiowin32 - ok

21:59:51.0287 6012 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys

21:59:51.0288 6012 mshidkmdf - ok

21:59:51.0291 6012 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys

21:59:51.0292 6012 mshidumdf - ok

21:59:51.0295 6012 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\Windows\system32\drivers\msisadrv.sys

21:59:51.0296 6012 msisadrv - ok

21:59:51.0300 6012 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\Windows\system32\iscsiexe.dll

21:59:51.0303 6012 MSiSCSI - ok

21:59:51.0306 6012 msiserver - ok

21:59:51.0309 6012 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

21:59:51.0310 6012 MSKSSRV - ok

21:59:51.0313 6012 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys

21:59:51.0319 6012 MsLldp - ok

21:59:51.0322 6012 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

21:59:51.0323 6012 MSPCLOCK - ok

21:59:51.0326 6012 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys

21:59:51.0327 6012 MSPQM - ok

21:59:51.0333 6012 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys

21:59:51.0337 6012 MsRPC - ok

21:59:51.0342 6012 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\Windows\System32\drivers\mssmbios.sys

21:59:51.0343 6012 mssmbios - ok

21:59:51.0345 6012 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys

21:59:51.0346 6012 MSTEE - ok

21:59:51.0349 6012 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\Windows\System32\drivers\MTConfig.sys

21:59:51.0350 6012 MTConfig - ok

21:59:51.0353 6012 [ 03B7145C889603537E9FFEABB1AD1089 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys

21:59:51.0354 6012 MTsensor - ok

21:59:51.0359 6012 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\Windows\system32\Drivers\mup.sys

21:59:51.0360 6012 Mup - ok

21:59:51.0364 6012 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\Windows\system32\drivers\mvumis.sys

21:59:51.0365 6012 mvumis - ok

21:59:51.0373 6012 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\Windows\system32\qagentRT.dll

21:59:51.0375 6012 napagent - ok

21:59:51.0382 6012 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

21:59:51.0387 6012 NativeWifiP - ok

21:59:51.0391 6012 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\Windows\System32\ncasvc.dll

21:59:51.0394 6012 NcaSvc - ok

21:59:51.0397 6012 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll

21:59:51.0399 6012 NcdAutoSetup - ok

21:59:51.0410 6012 [ 03CFE4108D1DE16D6C59455B5C73319C ] NDIS C:\Windows\system32\drivers\ndis.sys

21:59:51.0419 6012 NDIS - ok

21:59:51.0425 6012 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys

21:59:51.0426 6012 NdisCap - ok

21:59:51.0430 6012 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys

21:59:51.0432 6012 NdisImPlatform - ok

21:59:51.0435 6012 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

21:59:51.0436 6012 NdisTapi - ok

21:59:51.0439 6012 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

21:59:51.0441 6012 Ndisuio - ok

21:59:51.0445 6012 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

21:59:51.0447 6012 NdisWan - ok

21:59:51.0450 6012 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\Windows\system32\DRIVERS\ndiswan.sys

21:59:51.0451 6012 NDISWANLEGACY - ok

21:59:51.0454 6012 [ CE6EBC0AD38CC6482D8FBB744FF15CE2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys

21:59:51.0456 6012 NDProxy - ok

21:59:51.0459 6012 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\Windows\system32\drivers\Ndu.sys

21:59:51.0461 6012 Ndu - ok

21:59:51.0464 6012 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

21:59:51.0465 6012 NetBIOS - ok

21:59:51.0470 6012 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys

21:59:51.0474 6012 NetBT - ok

21:59:51.0477 6012 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\Windows\system32\lsass.exe

21:59:51.0478 6012 Netlogon - ok

21:59:51.0483 6012 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\Windows\System32\netman.dll

21:59:51.0486 6012 Netman - ok

21:59:51.0494 6012 [ 5FF52E13C72838D87DAF228EC9E92C89 ] netprofm C:\Windows\System32\netprofmsvc.dll

21:59:51.0499 6012 netprofm - ok

21:59:51.0504 6012 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

21:59:51.0509 6012 NetTcpPortSharing - ok

21:59:51.0512 6012 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys

21:59:51.0514 6012 nfrd960 - ok

21:59:51.0519 6012 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\Windows\System32\nlasvc.dll

21:59:51.0524 6012 NlaSvc - ok

21:59:51.0527 6012 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\Windows\system32\drivers\Npfs.sys

21:59:51.0528 6012 Npfs - ok

21:59:51.0531 6012 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys

21:59:51.0532 6012 npsvctrig - ok

21:59:51.0535 6012 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\Windows\system32\nsisvc.dll

21:59:51.0536 6012 nsi - ok

21:59:51.0539 6012 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

21:59:51.0541 6012 nsiproxy - ok

21:59:51.0561 6012 [ 76929F4A69E425911A63B407E26C2589 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys

21:59:51.0568 6012 Ntfs - ok

21:59:51.0572 6012 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\Windows\system32\drivers\Null.sys

21:59:51.0573 6012 Null - ok

21:59:51.0578 6012 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\Windows\system32\drivers\nvraid.sys

21:59:51.0580 6012 nvraid - ok

21:59:51.0584 6012 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\Windows\system32\drivers\nvstor.sys

21:59:51.0586 6012 nvstor - ok

21:59:51.0591 6012 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys

21:59:51.0593 6012 nv_agp - ok

21:59:51.0599 6012 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\Windows\system32\pnrpsvc.dll

21:59:51.0601 6012 p2pimsvc - ok

21:59:51.0608 6012 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\Windows\system32\p2psvc.dll

21:59:51.0612 6012 p2psvc - ok

21:59:51.0616 6012 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\Windows\System32\drivers\parport.sys

21:59:51.0618 6012 Parport - ok

21:59:51.0621 6012 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\Windows\system32\drivers\partmgr.sys

21:59:51.0623 6012 partmgr - ok

21:59:51.0629 6012 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\Windows\System32\pcasvc.dll

21:59:51.0633 6012 PcaSvc - ok

21:59:51.0639 6012 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\Windows\system32\drivers\pci.sys

21:59:51.0640 6012 pci - ok

21:59:51.0643 6012 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\Windows\system32\drivers\pciide.sys

21:59:51.0644 6012 pciide - ok

21:59:51.0649 6012 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys

21:59:51.0651 6012 pcmcia - ok

21:59:51.0655 6012 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\Windows\system32\drivers\pcw.sys

21:59:51.0656 6012 pcw - ok

21:59:51.0660 6012 [ 5253C826AD5C433CBF24E0A76F93C414 ] pdc C:\Windows\system32\drivers\pdc.sys

21:59:51.0666 6012 pdc - ok

21:59:51.0677 6012 [ 70DBB6A8B52B3830922F1C5789E1BEEB ] PEAUTH C:\Windows\system32\drivers\peauth.sys

21:59:51.0684 6012 PEAUTH - ok

21:59:51.0708 6012 [ DF0D9BDCB600913F40FF125BF8CE1979 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll

21:59:51.0730 6012 PeerDistSvc - ok

21:59:51.0741 6012 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\Windows\SysWow64\perfhost.exe

21:59:51.0743 6012 PerfHost - ok

21:59:51.0761 6012 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\Windows\system32\pla.dll

21:59:51.0774 6012 pla - ok

21:59:51.0779 6012 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\Windows\system32\umpnpmgr.dll

21:59:51.0780 6012 PlugPlay - ok

21:59:51.0783 6012 PnkBstrA - ok

21:59:51.0786 6012 PnkBstrB - ok

21:59:51.0790 6012 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll

21:59:51.0792 6012 PNRPAutoReg - ok

21:59:51.0798 6012 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\Windows\system32\pnrpsvc.dll

21:59:51.0800 6012 PNRPsvc - ok

21:59:51.0807 6012 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll

21:59:51.0812 6012 PolicyAgent - ok

21:59:51.0817 6012 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\Windows\system32\umpo.dll

21:59:51.0819 6012 Power - ok

21:59:51.0823 6012 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

21:59:51.0825 6012 PptpMiniport - ok

21:59:51.0850 6012 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll

21:59:51.0897 6012 PrintNotify - ok

21:59:51.0902 6012 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\Windows\System32\drivers\processr.sys

21:59:51.0903 6012 Processor - ok

21:59:51.0908 6012 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\Windows\system32\profsvc.dll

21:59:51.0910 6012 ProfSvc - ok

21:59:51.0914 6012 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\Windows\system32\DRIVERS\pacer.sys

21:59:51.0916 6012 Psched - ok

21:59:51.0922 6012 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\Windows\system32\qwave.dll

21:59:51.0926 6012 QWAVE - ok

21:59:51.0929 6012 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

21:59:51.0930 6012 QWAVEdrv - ok

21:59:51.0933 6012 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

21:59:51.0934 6012 RasAcd - ok

21:59:51.0937 6012 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys

21:59:51.0938 6012 RasAgileVpn - ok

21:59:51.0943 6012 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\Windows\System32\rasauto.dll

21:59:51.0945 6012 RasAuto - ok

21:59:51.0949 6012 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

21:59:51.0950 6012 Rasl2tp - ok

21:59:51.0957 6012 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\Windows\System32\rasmans.dll

21:59:51.0960 6012 RasMan - ok

21:59:51.0964 6012 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

21:59:51.0965 6012 RasPppoe - ok

21:59:51.0969 6012 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

21:59:51.0970 6012 RasSstp - ok

21:59:51.0977 6012 [ B72C33DBD5326B3864CF2091AF8B906B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys

21:59:51.0981 6012 rdbss - ok

21:59:51.0985 6012 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys

21:59:51.0986 6012 rdpbus - ok

21:59:51.0991 6012 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys

21:59:51.0993 6012 RDPDR - ok

21:59:51.0998 6012 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys

21:59:51.0999 6012 RdpVideoMiniport - ok

21:59:52.0004 6012 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys

21:59:52.0007 6012 RDPWD - ok

21:59:52.0012 6012 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys

21:59:52.0014 6012 rdyboost - ok

21:59:52.0018 6012 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\Windows\System32\mprdim.dll

21:59:52.0020 6012 RemoteAccess - ok

21:59:52.0025 6012 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\Windows\system32\regsvc.dll

21:59:52.0028 6012 RemoteRegistry - ok

21:59:52.0031 6012 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll

21:59:52.0033 6012 RpcEptMapper - ok

21:59:52.0036 6012 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\Windows\system32\locator.exe

21:59:52.0037 6012 RpcLocator - ok

21:59:52.0048 6012 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\Windows\system32\rpcss.dll

21:59:52.0052 6012 RpcSs - ok

21:59:52.0056 6012 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys

21:59:52.0057 6012 rspndr - ok

21:59:52.0060 6012 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\Windows\System32\drivers\vms3cap.sys

21:59:52.0061 6012 s3cap - ok

21:59:52.0064 6012 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\Windows\system32\lsass.exe

21:59:52.0065 6012 SamSs - ok

21:59:52.0068 6012 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys

21:59:52.0070 6012 sbp2port - ok

21:59:52.0075 6012 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\Windows\System32\SCardSvr.dll

21:59:52.0078 6012 SCardSvr - ok

21:59:52.0081 6012 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys

21:59:52.0082 6012 scfilter - ok

21:59:52.0096 6012 [ EDCDF4DB82EF825B94B190D544C8C58B ] Schedule C:\Windows\system32\schedsvc.dll

21:59:52.0104 6012 Schedule - ok

21:59:52.0109 6012 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\Windows\System32\certprop.dll

21:59:52.0110 6012 SCPolicySvc - ok

21:59:52.0115 6012 [ 047315E75392CEA447ACC86257824C16 ] sdbus C:\Windows\System32\drivers\sdbus.sys

21:59:52.0117 6012 sdbus - ok

21:59:52.0121 6012 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\Windows\System32\SDRSVC.dll

21:59:52.0124 6012 SDRSVC - ok

21:59:52.0128 6012 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\Windows\System32\drivers\sdstor.sys

21:59:52.0129 6012 sdstor - ok

21:59:52.0132 6012 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys

21:59:52.0133 6012 secdrv - ok

21:59:52.0136 6012 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\Windows\system32\seclogon.dll

21:59:52.0138 6012 seclogon - ok

21:59:52.0142 6012 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\Windows\System32\sens.dll

21:59:52.0144 6012 SENS - ok

21:59:52.0148 6012 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\Windows\system32\sensrsvc.dll

21:59:52.0151 6012 SensrSvc - ok

21:59:52.0154 6012 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\Windows\system32\drivers\SerCx.sys

21:59:52.0155 6012 SerCx - ok

21:59:52.0159 6012 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\Windows\System32\drivers\serenum.sys

21:59:52.0160 6012 Serenum - ok

21:59:52.0163 6012 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\Windows\System32\drivers\serial.sys

21:59:52.0165 6012 Serial - ok

21:59:52.0168 6012 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\Windows\System32\drivers\sermouse.sys

21:59:52.0169 6012 sermouse - ok

21:59:52.0178 6012 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\Windows\system32\sessenv.dll

21:59:52.0182 6012 SessionEnv - ok

21:59:52.0185 6012 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys

21:59:52.0187 6012 sfloppy - ok

21:59:52.0194 6012 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\Windows\System32\ipnathlp.dll

21:59:52.0199 6012 SharedAccess - ok

21:59:52.0208 6012 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\Windows\System32\shsvcs.dll

21:59:52.0212 6012 ShellHWDetection - ok

21:59:52.0215 6012 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys

21:59:52.0217 6012 SiSRaid2 - ok

21:59:52.0220 6012 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys

21:59:52.0222 6012 SiSRaid4 - ok

21:59:52.0227 6012 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\Windows\System32\snmptrap.exe

21:59:52.0229 6012 SNMPTRAP - ok

21:59:52.0235 6012 [ 739A739DCC5D02FE30EDEADEBD7B9898 ] spaceport C:\Windows\system32\drivers\spaceport.sys

21:59:52.0238 6012 spaceport - ok

21:59:52.0241 6012 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\Windows\system32\drivers\SpbCx.sys

21:59:52.0242 6012 SpbCx - ok

21:59:52.0253 6012 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\Windows\System32\spoolsv.exe

21:59:52.0268 6012 Spooler - ok

21:59:52.0309 6012 [ EC84D961501054F87A6878EC5D53388F ] sppsvc C:\Windows\system32\sppsvc.exe

21:59:52.0333 6012 sppsvc - ok

21:59:52.0341 6012 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\Windows\system32\DRIVERS\srv.sys

21:59:52.0345 6012 srv - ok

21:59:52.0354 6012 [ 9912FDF63EC78E1977083E20DEAE4889 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys

21:59:52.0360 6012 srv2 - ok

21:59:52.0366 6012 [ FD8B4F201B681C555A4AF41922C52557 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys

21:59:52.0368 6012 srvnet - ok

21:59:52.0374 6012 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll

21:59:52.0377 6012 SSDPSRV - ok

21:59:52.0381 6012 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\Windows\system32\sstpsvc.dll

21:59:52.0383 6012 SstpSvc - ok

21:59:52.0385 6012 Steam Client Service - ok

21:59:52.0389 6012 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\Windows\system32\drivers\stexstor.sys

21:59:52.0390 6012 stexstor - ok

21:59:52.0398 6012 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\Windows\System32\wiaservc.dll

21:59:52.0405 6012 stisvc - ok

21:59:52.0409 6012 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\Windows\system32\drivers\storahci.sys

21:59:52.0410 6012 storahci - ok

21:59:52.0414 6012 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys

21:59:52.0415 6012 storflt - ok

21:59:52.0418 6012 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\Windows\system32\storsvc.dll

21:59:52.0419 6012 StorSvc - ok

21:59:52.0422 6012 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\Windows\system32\drivers\storvsc.sys

21:59:52.0424 6012 storvsc - ok

21:59:52.0428 6012 [ 1A36AC469140F87CDE62D7F8524E270C ] storvsp C:\Windows\System32\drivers\storvsp.sys

21:59:52.0429 6012 storvsp - ok

21:59:52.0432 6012 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\Windows\system32\svsvc.dll

21:59:52.0434 6012 svsvc - ok

21:59:52.0437 6012 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\Windows\System32\drivers\swenum.sys

21:59:52.0438 6012 swenum - ok

21:59:52.0445 6012 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\Windows\System32\swprv.dll

21:59:52.0451 6012 swprv - ok

21:59:52.0466 6012 [ DC21E1F06343773D7E24362DCEF7944B ] SysMain C:\Windows\system32\sysmain.dll

21:59:52.0479 6012 SysMain - ok

21:59:52.0484 6012 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll

21:59:52.0486 6012 SystemEventsBroker - ok

21:59:52.0489 6012 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\Windows\System32\TabSvc.dll

21:59:52.0492 6012 TabletInputService - ok

21:59:52.0498 6012 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\Windows\System32\tapisrv.dll

21:59:52.0502 6012 TapiSrv - ok

21:59:52.0523 6012 [ B6D52E2C38B49A156E58FF5B9C6CA8BE ] Tcpip C:\Windows\system32\drivers\tcpip.sys

21:59:52.0543 6012 Tcpip - ok

21:59:52.0565 6012 [ B6D52E2C38B49A156E58FF5B9C6CA8BE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys

21:59:52.0573 6012 TCPIP6 - ok

21:59:52.0578 6012 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

21:59:52.0579 6012 tcpipreg - ok

21:59:52.0584 6012 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\Windows\system32\DRIVERS\tdx.sys

21:59:52.0586 6012 tdx - ok

21:59:52.0589 6012 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\Windows\System32\drivers\terminpt.sys

21:59:52.0591 6012 terminpt - ok

21:59:52.0600 6012 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\Windows\System32\termsrv.dll

21:59:52.0608 6012 TermService - ok

21:59:52.0612 6012 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\Windows\system32\themeservice.dll

21:59:52.0614 6012 Themes - ok

21:59:52.0617 6012 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\Windows\system32\mmcss.dll

21:59:52.0618 6012 THREADORDER - ok

21:59:52.0622 6012 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll

21:59:52.0625 6012 TimeBroker - ok

21:59:52.0629 6012 [ 6F0BFF80EE2A5BC841286A51F893CBAD ] TPM C:\Windows\system32\drivers\tpm.sys

21:59:52.0631 6012 TPM - ok

21:59:52.0635 6012 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\Windows\System32\trkwks.dll

21:59:52.0638 6012 TrkWks - ok

21:59:52.0641 6012 [ 8D516AEF3C1DF980664CF17BB1FF6093 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

21:59:52.0647 6012 TrustedInstaller - ok

21:59:52.0651 6012 [ 59BD43714E1034A913F019413905D387 ] TS4NT C:\Windows\system32\Drivers\TS4nt.sys

21:59:52.0653 6012 TS4NT - ok

21:59:52.0660 6012 [ 85F364B166A2A66EEB022141EFF2651B ] TSNxGService C:\Program Files (x86)\G Data\TotalProtection\TSNxG\TSNxGService.exe

21:59:52.0663 6012 TSNxGService - ok

21:59:52.0667 6012 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys

21:59:52.0668 6012 TsUsbFlt - ok

21:59:52.0671 6012 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys

21:59:52.0672 6012 TsUsbGD - ok

21:59:52.0695 6012 [ 4550AC4C9320BB5AF3D46CF8D70C4B5D ] TuneUp.UtilitiesSvc C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe

21:59:52.0704 6012 TuneUp.UtilitiesSvc - ok

21:59:52.0707 6012 [ 7BC3381C0713F613B31ACDE38B71CB53 ] TuneUpUtilitiesDrv C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys

21:59:52.0708 6012 TuneUpUtilitiesDrv - ok

21:59:52.0713 6012 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys

21:59:52.0715 6012 tunnel - ok

21:59:52.0718 6012 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\Windows\system32\drivers\uagp35.sys

21:59:52.0720 6012 uagp35 - ok

21:59:52.0723 6012 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\Windows\System32\drivers\uaspstor.sys

21:59:52.0725 6012 UASPStor - ok

21:59:52.0730 6012 [ 1ED222DFE6C13DA50FE081ABF90CAFE1 ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys

21:59:52.0733 6012 UCX01000 - ok

21:59:52.0739 6012 [ DC5A461591C71AF7F19DC048A81E3F88 ] udfs C:\Windows\system32\DRIVERS\udfs.sys

21:59:52.0743 6012 udfs - ok

21:59:52.0748 6012 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\Windows\system32\UI0Detect.exe

21:59:52.0750 6012 UI0Detect - ok

21:59:52.0754 6012 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys

21:59:52.0755 6012 uliagpkx - ok

21:59:52.0758 6012 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\Windows\System32\drivers\umbus.sys

21:59:52.0760 6012 umbus - ok

21:59:52.0763 6012 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\Windows\System32\drivers\umpass.sys

21:59:52.0764 6012 UmPass - ok

21:59:52.0769 6012 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\Windows\System32\umrdp.dll

21:59:52.0773 6012 UmRdpService - ok

21:59:52.0781 6012 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\Windows\System32\upnphost.dll

21:59:52.0788 6012 upnphost - ok

21:59:52.0792 6012 [ 2AF9F0E16D75B8F783A1ACE74EF51C9B ] usbccgp C:\Windows\System32\drivers\usbccgp.sys

21:59:52.0794 6012 usbccgp - ok

21:59:52.0798 6012 [ B395B62B62F28106218FA6FB17F4C797 ] usbcir C:\Windows\System32\drivers\usbcir.sys

21:59:52.0799 6012 usbcir - ok

21:59:52.0803 6012 [ 52F267AEE8CA5AA5CEB88C6A71EE1E86 ] usbehci C:\Windows\System32\drivers\usbehci.sys

21:59:52.0804 6012 usbehci - ok

21:59:52.0812 6012 [ ADBF89B8E0BB372FEFE2E4B84E1E20AE ] usbhub C:\Windows\System32\drivers\usbhub.sys

21:59:52.0816 6012 usbhub - ok

21:59:52.0824 6012 [ C5986337DE3BF63ABD9ED4D834D34B89 ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys

21:59:52.0829 6012 USBHUB3 - ok

21:59:52.0832 6012 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\Windows\System32\drivers\usbohci.sys

21:59:52.0833 6012 usbohci - ok

21:59:52.0836 6012 [ BA3ABE0CD1C14B3295BAD0F076B84CAC ] usbprint C:\Windows\System32\drivers\usbprint.sys

21:59:52.0837 6012 usbprint - ok

21:59:52.0840 6012 [ A9858597B6DB695F78A37F6755A6FF98 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys

21:59:52.0842 6012 usbscan - ok

21:59:52.0846 6012 [ F77177F6C95B2116EE7AD23B5EF57007 ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS

21:59:52.0848 6012 USBSTOR - ok

21:59:52.0851 6012 [ D25EF4A6EC244C5DE85D88A05B7C149D ] usbuhci C:\Windows\System32\drivers\usbuhci.sys

21:59:52.0852 6012 usbuhci - ok

21:59:52.0857 6012 [ 11C0CF143D246E2F0E9BDBF17A0CC70B ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS

21:59:52.0861 6012 USBXHCI - ok

21:59:52.0865 6012 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\Windows\system32\lsass.exe

21:59:52.0865 6012 VaultSvc - ok

21:59:52.0867 6012 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys

21:59:52.0868 6012 vdrvroot - ok

21:59:52.0879 6012 [ 8A8CDA9E3CF2E0B4C6CC19FBC6FB9A71 ] vds C:\Windows\System32\vds.exe

21:59:52.0883 6012 vds - ok

21:59:52.0887 6012 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys

21:59:52.0889 6012 VerifierExt - ok

21:59:52.0897 6012 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys

21:59:52.0901 6012 vhdmp - ok

21:59:52.0905 6012 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\Windows\system32\drivers\viaide.sys

21:59:52.0906 6012 viaide - ok

21:59:52.0911 6012 [ 0E43886F01C85B47BA0A3157274BCF59 ] Vid C:\Windows\System32\drivers\Vid.sys

21:59:52.0914 6012 Vid - ok

21:59:52.0918 6012 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\Windows\system32\drivers\vmbus.sys

21:59:52.0920 6012 vmbus - ok

21:59:52.0923 6012 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys

21:59:52.0924 6012 VMBusHID - ok

21:59:52.0928 6012 [ B4F432A51826FFC66F4DF72A83E8E4B1 ] vmbusr C:\Windows\System32\drivers\vmbusr.sys

21:59:52.0930 6012 vmbusr - ok

21:59:52.0936 6012 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\Windows\System32\ICSvc.dll

21:59:52.0940 6012 vmicheartbeat - ok

21:59:52.0945 6012 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\Windows\System32\ICSvc.dll

21:59:52.0947 6012 vmickvpexchange - ok

21:59:52.0952 6012 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\Windows\System32\ICSvc.dll

21:59:52.0953 6012 vmicrdv - ok

21:59:52.0958 6012 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\Windows\System32\ICSvc.dll

21:59:52.0960 6012 vmicshutdown - ok

21:59:52.0964 6012 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\Windows\System32\ICSvc.dll

21:59:52.0966 6012 vmictimesync - ok

21:59:52.0970 6012 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\Windows\System32\ICSvc.dll

21:59:52.0972 6012 vmicvss - ok

21:59:52.0976 6012 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\Windows\system32\drivers\volmgr.sys

21:59:52.0978 6012 volmgr - ok

21:59:52.0984 6012 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys

21:59:52.0987 6012 volmgrx - ok

21:59:52.0994 6012 [ 2FB3CDFD5EAF4CD9D4AFAF96877D13AE ] volsnap C:\Windows\system32\drivers\volsnap.sys

21:59:52.0997 6012 volsnap - ok

21:59:53.0001 6012 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\Windows\System32\drivers\vpci.sys

21:59:53.0002 6012 vpci - ok

21:59:53.0005 6012 [ 0190AFFF28F600461C0164353CC7EE27 ] vpcivsp C:\Windows\System32\drivers\vpcivsp.sys

21:59:53.0006 6012 vpcivsp - ok

21:59:53.0011 6012 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys

21:59:53.0013 6012 vsmraid - ok

21:59:53.0028 6012 [ EA658570314042C914964FC72AB50E6B ] VSS C:\Windows\system32\vssvc.exe

21:59:53.0043 6012 VSS - ok

21:59:53.0049 6012 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys

21:59:53.0052 6012 VSTXRAID - ok

21:59:53.0055 6012 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys

21:59:53.0056 6012 vwifibus - ok

21:59:53.0064 6012 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\Windows\system32\w32time.dll

21:59:53.0068 6012 W32Time - ok

21:59:53.0071 6012 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\Windows\System32\drivers\wacompen.sys

21:59:53.0072 6012 WacomPen - ok

21:59:53.0076 6012 [ 6081CEC9EF9EB145D8B46655C7708D51 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys

21:59:53.0077 6012 Wanarp - ok

21:59:53.0080 6012 [ 6081CEC9EF9EB145D8B46655C7708D51 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

21:59:53.0080 6012 Wanarpv6 - ok

21:59:53.0097 6012 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\Windows\system32\wbengine.exe

21:59:53.0113 6012 wbengine - ok

21:59:53.0119 6012 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll

21:59:53.0123 6012 WbioSrvc - ok

21:59:53.0129 6012 [ D9C1E82651BF19C6FF69CEC6FD400124 ] Wcmsvc C:\Windows\System32\wcmsvc.dll

21:59:53.0132 6012 Wcmsvc - ok

21:59:53.0139 6012 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\Windows\System32\wcncsvc.dll

21:59:53.0144 6012 wcncsvc - ok

21:59:53.0148 6012 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

21:59:53.0150 6012 WcsPlugInService - ok

21:59:53.0153 6012 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\Windows\system32\drivers\wd.sys

21:59:53.0154 6012 Wd - ok

21:59:53.0157 6012 [ 6F4B5DDDC3B86091E94BC47347A78AF7 ] WdBoot C:\Windows\system32\drivers\WdBoot.sys

21:59:53.0158 6012 WdBoot - ok

21:59:53.0169 6012 [ 2ADC985B85A71BD7D99712EC0C24358B ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

21:59:53.0177 6012 Wdf01000 - ok

21:59:53.0182 6012 [ 99D404A9A0AFC4734E014EBEBAC13F8F ] WdFilter C:\Windows\system32\drivers\WdFilter.sys

21:59:53.0185 6012 WdFilter - ok

21:59:53.0189 6012 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\Windows\system32\wdi.dll

21:59:53.0191 6012 WdiServiceHost - ok

21:59:53.0194 6012 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\Windows\system32\wdi.dll

21:59:53.0196 6012 WdiSystemHost - ok

21:59:53.0201 6012 [ F2002DA5E6B78C15B2CD48CFF8F0FBB6 ] WebClient C:\Windows\System32\webclnt.dll

21:59:53.0204 6012 WebClient - ok

21:59:53.0209 6012 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\Windows\system32\wecsvc.dll

21:59:53.0213 6012 Wecsvc - ok

21:59:53.0216 6012 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\Windows\System32\wercplsupport.dll

21:59:53.0218 6012 wercplsupport - ok

21:59:53.0222 6012 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\Windows\System32\WerSvc.dll

21:59:53.0224 6012 WerSvc - ok

21:59:53.0228 6012 [ FE762D3498719C3A23471BBA62F747B4 ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys

21:59:53.0229 6012 WFPLWFS - ok

21:59:53.0233 6012 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\Windows\System32\wiarpc.dll

21:59:53.0235 6012 WiaRpc - ok

21:59:53.0238 6012 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\Windows\system32\drivers\wimmount.sys

21:59:53.0239 6012 WIMMount - ok

21:59:53.0241 6012 WinDefend - ok

21:59:53.0254 6012 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll

21:59:53.0258 6012 WinHttpAutoProxySvc - ok

21:59:53.0265 6012 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

21:59:53.0267 6012 Winmgmt - ok

21:59:53.0293 6012 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\Windows\system32\WsmSvc.dll

21:59:53.0319 6012 WinRM - ok

21:59:53.0338 6012 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\Windows\System32\wlansvc.dll

21:59:53.0352 6012 WlanSvc - ok

21:59:53.0372 6012 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\Windows\system32\wlidsvc.dll

21:59:53.0382 6012 wlidsvc - ok

21:59:53.0386 6012 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys

21:59:53.0387 6012 WmiAcpi - ok

21:59:53.0393 6012 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

21:59:53.0396 6012 wmiApSrv - ok

21:59:53.0398 6012 WMPNetworkSvc - ok

21:59:53.0402 6012 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys

21:59:53.0404 6012 wpcfltr - ok

21:59:53.0406 6012 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\Windows\System32\wpcsvc.dll

21:59:53.0408 6012 WPCSvc - ok

21:59:53.0412 6012 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll

21:59:53.0415 6012 WPDBusEnum - ok

21:59:53.0418 6012 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys

21:59:53.0419 6012 WpdUpFltr - ok

21:59:53.0422 6012 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

21:59:53.0423 6012 ws2ifsl - ok

21:59:53.0427 6012 [ FB0C1B7F94FA08E72F19F6F2CE7210E1 ] wscsvc C:\Windows\System32\wscsvc.dll

21:59:53.0429 6012 wscsvc - ok

21:59:53.0431 6012 WSearch - ok

21:59:53.0455 6012 [ C10BFFEE7E0D7A1366E84F251796C51D ] WSService C:\Windows\System32\WSService.dll

21:59:53.0477 6012 WSService - ok

21:59:53.0506 6012 [ 79F95469604B77296346DE7DB463EA2A ] wuauserv C:\Windows\system32\wuaueng.dll

21:59:53.0524 6012 wuauserv - ok

21:59:53.0528 6012 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys

21:59:53.0530 6012 WudfPf - ok

21:59:53.0534 6012 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys

21:59:53.0537 6012 WUDFRd - ok

21:59:53.0541 6012 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFSensorLP C:\Windows\system32\DRIVERS\WUDFRd.sys

21:59:53.0541 6012 WUDFSensorLP - ok

21:59:53.0545 6012 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll

21:59:53.0548 6012 wudfsvc - ok

21:59:53.0552 6012 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdFs C:\Windows\system32\DRIVERS\WUDFRd.sys

21:59:53.0553 6012 WUDFWpdFs - ok

21:59:53.0560 6012 [ F9D8D2E6ECE08B278621D5BF3A7240A6 ] WwanSvc C:\Windows\System32\wwansvc.dll

21:59:53.0566 6012 WwanSvc - ok

21:59:53.0570 6012 ================ Scan global ===============================

21:59:53.0574 6012 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\Windows\system32\basesrv.dll

21:59:53.0579 6012 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\Windows\system32\winsrv.dll

21:59:53.0585 6012 [ BD7C6949984D19AAA609896B675E7357 ] C:\Windows\system32\sxssrv.dll

21:59:53.0592 6012 [ 8F226143046435C75C033B0C52E90FFE ] C:\Windows\system32\services.exe

21:59:53.0595 6012 [Global] - ok

21:59:53.0596 6012 ================ Scan MBR ==================================

21:59:53.0598 6012 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0

21:59:53.0665 6012 \Device\Harddisk0\DR0 - ok

21:59:53.0665 6012 ================ Scan VBR ==================================

21:59:53.0667 6012 [ FCA09CFF60105C83DA8E14CFA1CF0BCB ] \Device\Harddisk0\DR0\Partition1

21:59:53.0668 6012 \Device\Harddisk0\DR0\Partition1 - ok

21:59:53.0668 6012 ============================================================

21:59:53.0668 6012 Scan finished

21:59:53.0668 6012 ============================================================

21:59:53.0673 6008 Detected object count: 0

21:59:53.0673 6008 Actual detected object count: 0

How's going ? :) THX

Link to post
Share on other sites

You said this system has 4 GB of RAM, which is sufficient. No idea why you are getting any message on "insuficient memory". Further, if that is from games & or from Steam, please, let's put that aside. Let's do not play games if we think this machine is infected.

The Tdsskiller run was good.

Delete any prior copy of Roguekiller.exe if you have any from before.

  • Download & SAVE to your Desktop Tigzy's RogueKiller >> from here << or
    >> from here <<
  • Quit all programs that you may have started.
  • Please disconnect any USB or external storage drives from the computer before you run this scan! i_arrow-l.gif
  • For Vista or Windows 7 / 8, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.
    For Windows XP, double-click to start.
  • When prompted to accept the EULA, please do so.
  • Wait until Prescan has finished ... i_arrow-l.gif
  • Then Click on Scan button at upper right of screen.
  • Wait until the Status box shows "Scan Finished"
  • Click on Report and copy/paste the content of the Notepad into your next reply.
  • The log should be found in RKreport[1].txt on your Desktop
  • Do NOT press any Fix button.
  • Exit/Close RogueKiller

Download OTL by OldTimer to your desktop: http://oldtimer.geekstogo.com/OTL.exe

  • Close all open windows on the Task Bar. Click the otlDesktopIcon.png icon (for Vista, or Windows 7 or 8 Right click the icon and Run as Administrator) to start the program.
  • In the lower right corner, checkmark "LOP Check" and checkmark "Purity Check".
  • Now click Run Scan at Top left and let the program run uninterrupted. It will take about 4 minutes.
  • It will produce two logs for you, one will pop up called OTL.txt, the other will be saved on your desktop and called Extras.txt.
  • Exit Notepad. Remember where you've saved these 2 files as we will need both of them shortly!
  • Exit OTL by clicking the X at top right.

Download Security Check by screen317 and save it to your Desktop: here

  • Run Security Check
  • Follow the onscreen instructions inside of the command window.
  • A Notepad document should open automatically called checkup.txt; close Notepad. We will need this log, too, so remember where you've saved it!

Then copy/paste the following into your post (in order):
  • the contents of OTL.txt;
  • the contents of Extras.txt ; and
  • the contents of checkup.txt

Be sure to do a Preview prior to pressing Add Reply because all reports may not fit into 1 single reply. You may have to do more than 1 reply.

Do not use the attachment feature to place any of your reports. Always put them in-line inside the body of reply.

Link to post
Share on other sites

Here it is:

OTL 1/2:

OTL logfile created on: 24/05/2013 19.33.18 - Run 1

OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Barbara\Desktop

64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation

Internet Explorer (Version = 9.10.9200.16580)

Locale: 00000410 | Country: Italia | Language: ITA | Date Format: dd/MM/yyyy

4,00 Gb Total Physical Memory | 2,57 Gb Available Physical Memory | 64,24% Memory free

4,38 Gb Paging File | 2,58 Gb Available in Paging File | 58,86% Paging File free

Paging file location(s): c:\pagefile.sys 100 1024 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)

Drive C: | 107,34 Gb Total Space | 10,34 Gb Free Space | 9,63% Space Free | Partition Type: NTFS

Computer Name: BARNEYPC | User Name: Barbara | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans

Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/05/24 19.29.24 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Barbara\Desktop\OTL.exe

PRC - [2013/05/11 19.48.40 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe

PRC - [2013/05/04 01.35.30 | 001,635,752 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Steam\Steam.exe

PRC - [2013/05/04 01.35.30 | 000,543,656 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe

PRC - [2013/04/09 10.57.09 | 001,312,720 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

PRC - [2013/04/04 14.50.32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

PRC - [2013/04/04 14.50.32 | 000,532,040 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

PRC - [2013/04/04 14.50.32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

PRC - [2012/03/15 12.02.30 | 000,306,184 | ---- | M] (G Data Software) -- C:\Program Files (x86)\G Data\TotalProtection\TSNxG\TSNxGService.exe

PRC - [2012/03/13 12.01.14 | 001,609,208 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\G Data\TotalProtection\AVKBackup\AVKBackupService.exe

PRC - [2012/02/02 12.21.36 | 001,524,728 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe

PRC - [2012/01/27 15.01.06 | 000,471,048 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe

PRC - [2012/01/27 05.18.28 | 000,985,080 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\G Data\TotalProtection\AVKTray\AVKTray.exe

PRC - [2012/01/27 05.13.02 | 001,470,968 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFirewallTray.exe

PRC - [2012/01/27 04.43.34 | 000,468,472 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKService.exe

========== Modules (No Company Name) ==========

MOD - [2013/05/04 01.35.30 | 001,114,536 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\chromehtml.DLL

MOD - [2013/04/24 04.30.08 | 000,652,800 | ---- | M] () -- C:\Program Files (x86)\Steam\SDL2.dll

MOD - [2013/04/09 10.57.07 | 000,390,096 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\ppGoogleNaClPluginChrome.dll

MOD - [2013/04/09 10.57.05 | 004,050,896 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\pdf.dll

MOD - [2013/04/09 10.56.15 | 000,598,480 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\libglesv2.dll

MOD - [2013/04/09 10.56.14 | 000,124,368 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\libegl.dll

MOD - [2013/04/09 10.56.13 | 001,606,096 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\ffmpegsumo.dll

MOD - [2013/03/27 02.16.40 | 020,341,672 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\libcef.dll

MOD - [2012/12/11 19.51.10 | 001,100,800 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avcodec-53.dll

MOD - [2012/12/11 19.51.10 | 000,192,000 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avformat-53.dll

MOD - [2012/12/11 19.51.10 | 000,124,416 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avutil-51.dll

========== Services (SafeList) ==========

SRV:64bit: - [2013/04/09 06.48.42 | 000,169,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)

SRV:64bit: - [2013/03/29 03.34.18 | 000,241,152 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)

SRV:64bit: - [2013/03/02 04.45.07 | 000,171,008 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)

SRV:64bit: - [2013/03/02 04.45.05 | 000,180,224 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)

SRV:64bit: - [2013/02/02 10.21.45 | 000,467,456 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)

SRV:64bit: - [2013/01/10 01.23.16 | 001,964,544 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)

SRV:64bit: - [2013/01/10 01.22.35 | 000,438,272 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)

SRV:64bit: - [2012/09/20 11.10.47 | 002,367,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\WSService.dll -- (WSService)

SRV:64bit: - [2012/09/20 08.31.18 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)

SRV:64bit: - [2012/09/20 08.30.41 | 000,179,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)

SRV:64bit: - [2012/07/26 05.30.05 | 002,675,200 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)

SRV:64bit: - [2012/07/26 05.07.47 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)

SRV:64bit: - [2012/07/26 05.07.42 | 000,263,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)

SRV:64bit: - [2012/07/26 05.07.40 | 000,283,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)

SRV:64bit: - [2012/07/26 05.07.25 | 000,012,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)

SRV:64bit: - [2012/07/26 05.06.34 | 000,743,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)

SRV:64bit: - [2012/07/26 05.06.33 | 000,161,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)

SRV:64bit: - [2012/07/26 05.06.33 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)

SRV:64bit: - [2012/07/26 05.05.55 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)

SRV:64bit: - [2012/07/26 05.05.34 | 000,037,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)

SRV:64bit: - [2012/07/26 05.05.28 | 000,207,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)

SRV:64bit: - [2012/07/26 05.05.24 | 000,342,016 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)

SRV:64bit: - [2012/07/26 05.05.08 | 000,122,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AUInstallAgent.dll -- (AllUserInstallAgent)

SRV:64bit: - [2012/07/26 05.05.04 | 000,187,392 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)

SRV:64bit: - [2012/07/26 02.24.02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)

SRV:64bit: - [2012/07/26 02.24.02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)

SRV:64bit: - [2012/07/26 02.24.02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)

SRV:64bit: - [2012/07/26 02.24.02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)

SRV:64bit: - [2012/07/26 02.24.02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)

SRV:64bit: - [2012/07/26 02.24.02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)

SRV - [2013/05/11 19.48.40 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)

SRV - [2013/05/04 01.35.30 | 000,543,656 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)

SRV - [2013/04/04 14.50.32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)

SRV - [2013/04/04 14.50.32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)

SRV - [2013/01/31 10.57.24 | 002,402,080 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe -- (TuneUp.UtilitiesSvc)

SRV - [2012/11/19 12.15.20 | 000,014,904 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)

SRV - [2012/07/26 05.30.05 | 002,675,200 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll -- (PrintNotify)

SRV - [2012/07/26 05.20.04 | 000,018,432 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)

SRV - [2012/03/15 12.02.30 | 000,306,184 | ---- | M] (G Data Software) [Auto | Running] -- C:\Program Files (x86)\G Data\TotalProtection\TSNxG\TSNxGService.exe -- (TSNxGService)

SRV - [2012/03/13 12.01.14 | 001,609,208 | ---- | M] (G Data Software AG) [Auto | Running] -- C:\Program Files (x86)\G Data\TotalProtection\AVKBackup\AVKBackupService.exe -- (GDBackupSvc)

SRV - [2012/03/08 12.59.20 | 001,218,040 | ---- | M] (G Data Software AG) [On_Demand | Stopped] -- C:\Program Files (x86)\G Data\TotalProtection\AVKTuner\AVKTunerService.exe -- (GDTunerSvc)

SRV - [2012/02/02 12.21.36 | 001,524,728 | ---- | M] (G Data Software AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe -- (AVKProxy)

SRV - [2012/01/27 15.01.06 | 000,471,048 | ---- | M] (G Data Software AG) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe -- (GDScan)

SRV - [2012/01/27 05.07.28 | 001,765,352 | ---- | M] (G Data Software AG) [On_Demand | Running] -- C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFwSvcx64.exe -- (GDFwSvc)

SRV - [2012/01/27 05.01.08 | 002,006,872 | ---- | M] (G Data Software AG) [Auto | Running] -- C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKWCtlX64.exe -- (AVKWCtl)

SRV - [2012/01/27 04.43.34 | 000,468,472 | ---- | M] (G Data Software AG) [Auto | Running] -- C:\Program Files (x86)\G Data\TotalProtection\AVK\AVKService.exe -- (AVKService)

========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/05/11 11.57.51 | 000,106,648 | ---- | M] (G Data Software) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\GRD.sys -- (GRD)

DRV:64bit: - [2013/05/11 10.06.56 | 000,098,760 | ---- | M] (G Data Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\TS4nt.sys -- (TS4NT)

DRV:64bit: - [2013/05/11 10.06.51 | 000,059,768 | ---- | M] (G Data Software AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\PktIcpt.sys -- (GDPkIcpt)

DRV:64bit: - [2013/05/11 10.06.43 | 000,122,744 | ---- | M] (G Data Software AG) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\MiniIcpt.sys -- (GDMnIcpt)

DRV:64bit: - [2013/05/11 10.06.43 | 000,064,376 | ---- | M] (G Data Software AG) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\HookCentre.sys -- (HookCentre)

DRV:64bit: - [2013/05/11 10.06.43 | 000,054,136 | ---- | M] (G Data Software AG) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\GDBehave.sys -- (GDBehave)

DRV:64bit: - [2013/05/11 10.06.41 | 000,065,912 | ---- | M] (G Data Software AG) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\gdwfpcd64.sys -- (gdwfpcd)

DRV:64bit: - [2013/04/09 07.27.43 | 000,284,424 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\spaceport.sys -- (spaceport)

DRV:64bit: - [2013/04/04 14.50.32 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\Drivers\mbam.sys -- (MBAMProtector)

DRV:64bit: - [2013/03/29 04.35.28 | 000,021,600 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdkmafd.sys -- (amdkmafd)

DRV:64bit: - [2013/03/29 04.35.02 | 011,658,752 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\atikmdag.sys -- (amdkmdag)

DRV:64bit: - [2013/03/29 03.09.44 | 000,581,120 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\atikmpag.sys -- (amdkmdap)

DRV:64bit: - [2013/03/02 12.57.48 | 000,337,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\USBXHCI.SYS -- (USBXHCI)

DRV:64bit: - [2013/03/02 12.57.46 | 000,077,544 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\storahci.sys -- (storahci)

DRV:64bit: - [2013/03/02 12.45.20 | 000,148,712 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\tpm.sys -- (TPM)

DRV:64bit: - [2013/03/02 12.45.19 | 000,194,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdbus.sys -- (sdbus)

DRV:64bit: - [2013/03/02 12.39.38 | 000,069,864 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\pdc.sys -- (pdc)

DRV:64bit: - [2013/02/14 13.41.14 | 000,094,208 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\AtihdW86.sys -- (AtiHDAudioService)

DRV:64bit: - [2013/02/02 13.19.44 | 000,446,184 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\USBHUB3.SYS -- (USBHUB3)

DRV:64bit: - [2013/02/02 09.25.23 | 000,037,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys -- (BthAvrcpTg)

DRV:64bit: - [2013/01/29 03.57.05 | 000,035,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdBoot.sys -- (WdBoot)

DRV:64bit: - [2013/01/29 01.08.22 | 000,230,904 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdFilter.sys -- (WdFilter)

DRV:64bit: - [2013/01/10 03.53.32 | 000,028,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpiowin32.sys -- (msgpiowin32)

DRV:64bit: - [2012/11/27 05.55.44 | 000,029,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthhfHid.sys -- (bthhfhid)

DRV:64bit: - [2012/11/20 06.54.31 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hidi2c.sys -- (hidi2c)

DRV:64bit: - [2012/11/19 12.10.38 | 000,652,344 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\iaStorA.sys -- (iaStorA)

DRV:64bit: - [2012/11/06 05.55.44 | 000,022,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\fxppm.sys -- (FxPPM)

DRV:64bit: - [2012/10/12 10.08.01 | 000,027,880 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys -- (RdpVideoMiniport)

DRV:64bit: - [2012/10/11 09.25.48 | 000,056,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdstor.sys -- (sdstor)

DRV:64bit: - [2012/10/11 09.13.49 | 000,058,088 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\Drivers\dam.sys -- (dam)

DRV:64bit: - [2012/09/20 09.55.33 | 000,212,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\UCX01000.SYS -- (UCX01000)

DRV:64bit: - [2012/09/20 09.55.30 | 000,120,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpioclx.sys -- (GPIOClx0101)

DRV:64bit: - [2012/09/20 09.55.27 | 003,265,256 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\evbda.sys -- (ebdrv)

DRV:64bit: - [2012/09/20 09.55.24 | 000,533,224 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\bxvbda.sys -- (b06bdrv)

DRV:64bit: - [2012/07/26 07.26.46 | 000,025,328 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)

DRV:64bit: - [2012/07/26 07.26.45 | 000,033,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\condrv.sys -- (condrv)

DRV:64bit: - [2012/07/26 07.00.58 | 000,322,800 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS -- (VSTXRAID)

DRV:64bit: - [2012/07/26 07.00.58 | 000,106,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\VerifierExt.sys -- (VerifierExt)

DRV:64bit: - [2012/07/26 07.00.58 | 000,097,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\uaspstor.sys -- (UASPStor)

DRV:64bit: - [2012/07/26 07.00.57 | 000,077,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\acpiex.sys -- (acpiex)

DRV:64bit: - [2012/07/26 07.00.55 | 000,064,240 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\mvumis.sys -- (mvumis)

DRV:64bit: - [2012/07/26 07.00.55 | 000,030,960 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\stexstor.sys -- (stexstor)

DRV:64bit: - [2012/07/26 07.00.52 | 000,092,400 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sas2.sys -- (LSI_SAS2)

DRV:64bit: - [2012/07/26 07.00.52 | 000,081,136 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sss.sys -- (LSI_SSS)

DRV:64bit: - [2012/07/26 07.00.52 | 000,064,752 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\HpSAMD.sys -- (HpSAMD)

DRV:64bit: - [2012/07/26 07.00.51 | 000,113,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)

DRV:64bit: - [2012/07/26 07.00.51 | 000,081,136 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\EhStorClass.sys -- (EhStorClass)

DRV:64bit: - [2012/07/26 07.00.49 | 000,258,288 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsbs.sys -- (amdsbs)

DRV:64bit: - [2012/07/26 07.00.49 | 000,106,736 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\3ware.sys -- (3ware)

DRV:64bit: - [2012/07/26 07.00.49 | 000,076,016 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsata.sys -- (amdsata)

DRV:64bit: - [2012/07/26 07.00.48 | 000,026,352 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdxata.sys -- (amdxata)

DRV:64bit: - [2012/07/26 06.57.54 | 000,361,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\clfs.sys -- (CLFS)

DRV:64bit: - [2012/07/26 06.54.34 | 000,096,496 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\wfplwfs.sys -- (WFPLWFS)

DRV:64bit: - [2012/07/26 06.53.16 | 000,067,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vpci.sys -- (vpci)

DRV:64bit: - [2012/07/26 05.17.38 | 000,036,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\terminpt.sys -- (terminpt)

DRV:64bit: - [2012/07/26 04.29.14 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mshidumdf.sys -- (mshidumdf)

DRV:64bit: - [2012/07/26 04.29.08 | 000,048,640 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicDisplay.sys -- (BasicDisplay)

DRV:64bit: - [2012/07/26 04.29.03 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\HyperVideo.sys -- (HyperVideo)

DRV:64bit: - [2012/07/26 04.28.52 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicRender.sys -- (BasicRender)

DRV:64bit: - [2012/07/26 04.27.58 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vmgencounter.sys -- (gencounter)

DRV:64bit: - [2012/07/26 04.27.41 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\kdnic.sys -- (kdnic)

DRV:64bit: - [2012/07/26 04.27.37 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpitime.sys -- (acpitime)

DRV:64bit: - [2012/07/26 04.27.33 | 000,023,552 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\npsvctrig.sys -- (npsvctrig)

DRV:64bit: - [2012/07/26 04.27.29 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys -- (WpdUpFltr)

DRV:64bit: - [2012/07/26 04.27.16 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpipagr.sys -- (acpipagr)

DRV:64bit: - [2012/07/26 04.27.01 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hyperkbd.sys -- (hyperkbd)

DRV:64bit: - [2012/07/26 04.26.46 | 000,062,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SerCx.sys -- (SerCx)

DRV:64bit: - [2012/07/26 04.26.43 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SpbCx.sys -- (SpbCx)

DRV:64bit: - [2012/07/26 04.26.34 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbGD.sys -- (TsUsbGD)

DRV:64bit: - [2012/07/26 04.26.13 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\bthhfenum.sys -- (BthHFEnum)

DRV:64bit: - [2012/07/26 04.25.57 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\dmvsc.sys -- (dmvsc)

DRV:64bit: - [2012/07/26 04.25.56 | 000,057,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys -- (TsUsbFlt)

DRV:64bit: - [2012/07/26 04.25.26 | 000,203,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\Vid.sys -- (Vid)

DRV:64bit: - [2012/07/26 04.25.22 | 000,067,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\storvsp.sys -- (storvsp)

DRV:64bit: - [2012/07/26 04.25.13 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\wpcfltr.sys -- (wpcfltr)

DRV:64bit: - [2012/07/26 04.25.12 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vmbusr.sys -- (vmbusr)

DRV:64bit: - [2012/07/26 04.25.12 | 000,066,048 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vpcivsp.sys -- (vpcivsp)

DRV:64bit: - [2012/07/26 04.25.01 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys -- (NdisImPlatform)

DRV:64bit: - [2012/07/26 04.23.53 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\mslldp.sys -- (MsLldp)

DRV:64bit: - [2012/07/26 04.23.42 | 000,097,792 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\Drivers\Ndu.sys -- (Ndu)

DRV:64bit: - [2012/06/02 16.31.31 | 000,059,904 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\L1E62x64.sys -- (L1E)

DRV:64bit: - [2005/03/29 01.30.38 | 000,008,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\ASACPI.sys -- (MTsensor)

DRV - [2012/11/16 16.51.26 | 000,011,880 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys -- (TuneUpUtilitiesDrv)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://t.it.msn.com/

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = it-IT

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 48 8E 37 BF 1E 4E CE 01 [binary data]

IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR

IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)

FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)

FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Barbara\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)

CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}

CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}

CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\PepperFlash\pepflashplayer.dll

CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer

CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\ppGoogleNaClPluginChrome.dll

CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\pdf.dll

CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll

CHR - Extension: Documenti Google = C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\

CHR - Extension: Google Drive = C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\

CHR - Extension: YouTube = C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\

CHR - Extension: Ricerca Google = C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\

CHR - Extension: Gmail = C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/07/26 07.26.49 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\Drivers\etc\hosts

O2 - BHO: (G Data BankGuard) - {BA3295CF-17ED-4F49-9E95-D999A0ADBFDC} - C:\Program Files (x86)\Common Files\G DATA\AVKProxy\BanksafeBHO.dll (G Data Software AG)

O4 - HKLM..\Run: [G Data AntiVirus Tray Application] C:\Program Files (x86)\G Data\TotalProtection\AVKTray\AVKTray.exe (G Data Software AG)

O4 - HKLM..\Run: [GDFirewallTray] C:\Program Files (x86)\G Data\TotalProtection\Firewall\GDFirewallTray.exe (G Data Software AG)

O4 - HKLM..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation)

O4 - HKLM..\Run: [startCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)

O4 - HKCU..\Run: [Facebook Update] C:\Users\Barbara\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)

O4 - HKCU..\Run: [steam] C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)

O4 - Startup: C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()

O4 - Startup: C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Magician.lnk = C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (Samsung Electronics.)

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3

O1364bit: - gopher Prefix: missing

O13 - gopher Prefix: missing

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4F26A0E8-41C0-49E6-9670-69ECD9E52163}: DhcpNameServer = 192.168.1.1

O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: UserInit - (c:\program files (x86)\g data\totalprotection\avkkid\avkcks.exe) - c:\program files (x86)\g data\totalprotection\avkkid\avkcks.exe ()

O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)

O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)

O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.

O27:64bit: - HKLM IFEO\iastorui.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27:64bit: - HKLM IFEO\quickstart.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27:64bit: - HKLM IFEO\sbase.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27:64bit: - HKLM IFEO\scalc.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27:64bit: - HKLM IFEO\sdraw.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27:64bit: - HKLM IFEO\simpress.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27:64bit: - HKLM IFEO\smath.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27:64bit: - HKLM IFEO\soffice.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27:64bit: - HKLM IFEO\swriter.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\iastorui.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\quickstart.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\sbase.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\scalc.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\sdraw.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\simpress.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\smath.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\soffice.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O27 - HKLM IFEO\swriter.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2013\TUAutoReactivator64.exe (TuneUp Software)

O30 - LSA: Security Packages - (livessp) - File not found

O32 - HKLM CDRom: AutoRun - 1

O34 - HKLM BootExecute: (autocheck autochk *)

O35:64bit: - HKLM\..comfile [open] -- "%1" %*

O35:64bit: - HKLM\..exefile [open] -- "%1" %*

O35 - HKLM\..comfile [open] -- "%1" %*

O35 - HKLM\..exefile [open] -- "%1" %*

O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*

O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*

O37 - HKLM\...com [@ = comfile] -- "%1" %*

O37 - HKLM\...exe [@ = exefile] -- "%1" %*

O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)

O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/05/24 19.29.23 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Barbara\Desktop\OTL.exe

[2013/05/24 19.28.08 | 000,000,000 | ---D | C] -- C:\Users\Barbara\Desktop\RK_Quarantine

[2013/05/20 21.58.28 | 002,237,968 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Barbara\Desktop\tdsskiller.exe

[2013/05/20 00.03.19 | 004,745,728 | ---- | C] (AVAST Software) -- C:\Users\Barbara\Desktop\aswMBR.exe

[2013/05/19 12.45.25 | 013,648,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.UI.Xaml.dll

[2013/05/19 12.45.24 | 003,552,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll

[2013/05/19 12.45.23 | 014,267,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll

[2013/05/19 12.45.22 | 011,878,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll

[2013/05/19 12.45.21 | 010,789,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.UI.Xaml.dll

[2013/05/19 12.45.21 | 002,107,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll

[2013/05/19 12.45.20 | 002,767,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll

[2013/05/19 12.45.20 | 001,593,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll

[2013/05/19 12.45.19 | 001,829,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll

[2013/05/19 12.45.18 | 001,444,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSAudDecMFT.dll

[2013/05/19 12.45.13 | 010,116,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twinui.dll

[2013/05/19 12.45.12 | 001,113,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSAudDecMFT.dll

[2013/05/19 12.45.11 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll

[2013/05/19 12.45.11 | 000,306,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kd_02_10ec.dll

[2013/05/19 12.45.11 | 000,298,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rsaenh.dll

[2013/05/19 12.45.10 | 008,857,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twinui.dll

[2013/05/19 12.45.10 | 000,489,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioEng.dll

[2013/05/19 12.45.10 | 000,446,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll

[2013/05/19 12.45.10 | 000,435,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssph.dll

[2013/05/19 12.45.10 | 000,373,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchProtocolHost.exe

[2013/05/19 12.45.10 | 000,367,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe

[2013/05/19 12.45.10 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmredir.dll

[2013/05/19 12.45.09 | 002,303,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll

[2013/05/19 12.45.09 | 001,403,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi

[2013/05/19 12.45.09 | 000,804,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RecoveryDrive.exe

[2013/05/19 12.45.09 | 000,595,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Networking.dll

[2013/05/19 12.45.09 | 000,456,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpncore.dll

[2013/05/19 12.45.09 | 000,253,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe

[2013/05/19 12.45.08 | 002,035,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll

[2013/05/19 12.45.08 | 001,267,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe

[2013/05/19 12.45.08 | 001,217,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi

[2013/05/19 12.45.08 | 001,093,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe

[2013/05/19 12.45.08 | 000,523,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll

[2013/05/19 12.45.08 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Networking.BackgroundTransfer.dll

[2013/05/19 12.45.08 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dmvdsitf.dll

[2013/05/19 12.45.07 | 000,659,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll

[2013/05/19 12.45.07 | 000,503,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll

[2013/05/19 12.45.07 | 000,468,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MFMediaEngine.dll

[2013/05/19 12.45.07 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\intl.cpl

[2013/05/19 12.45.07 | 000,411,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Networking.dll

[2013/05/19 12.45.07 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll

[2013/05/19 12.45.07 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Networking.BackgroundTransfer.dll

[2013/05/19 12.45.07 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fhengine.dll

[2013/05/19 12.45.07 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iuilp.dll

[2013/05/19 12.45.07 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFilterHost.exe

[2013/05/19 12.45.07 | 000,169,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioEndpointBuilder.dll

[2013/05/19 12.45.07 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Robocopy.exe

[2013/05/19 12.45.07 | 000,123,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll

[2013/05/19 12.45.07 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Robocopy.exe

[2013/05/19 12.45.07 | 000,077,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdvm.dll

[2013/05/19 12.45.06 | 000,745,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll

[2013/05/19 12.45.06 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\GenuineCenter.dll

[2013/05/19 12.45.06 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\intl.cpl

[2013/05/19 12.45.06 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll

[2013/05/19 12.45.06 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFMediaEngine.dll

[2013/05/19 12.45.06 | 000,284,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\spaceport.sys

[2013/05/19 12.45.06 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll

[2013/05/19 12.45.06 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dmvdsitf.dll

[2013/05/19 12.45.06 | 000,086,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdnet.dll

[2013/05/19 12.45.06 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys

[2013/05/19 12.45.06 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fmifs.dll

[2013/05/19 12.45.05 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssprxy.dll

[2013/05/19 12.45.05 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscntrs.dll

[2013/05/19 12.45.05 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fmifs.dll

[2013/05/19 12.45.05 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msshooks.dll

[2013/05/19 12.45.05 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msshooks.dll

[2013/05/19 12.07.46 | 000,000,000 | R--D | C] -- C:\Users\Barbara\Documents\Scanned Documents

[2013/05/19 12.07.46 | 000,000,000 | ---D | C] -- C:\Users\Barbara\Documents\Fax

[2013/05/18 16.00.50 | 000,000,000 | ---D | C] -- C:\FRST

[2013/05/17 21.12.00 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Local\Facebook

[2013/05/17 18.15.43 | 003,958,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll

[2013/05/17 18.15.41 | 000,915,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uxtheme.dll

[2013/05/17 18.15.41 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll

[2013/05/17 18.15.41 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll

[2013/05/17 18.15.41 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll

[2013/05/17 18.15.41 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UXInit.dll

[2013/05/17 18.15.41 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe

[2013/05/17 18.15.41 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UXInit.dll

[2013/05/17 18.15.37 | 006,987,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe

[2013/05/17 18.15.30 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll

[2013/05/17 18.15.30 | 000,112,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe

[2013/05/17 18.15.29 | 002,851,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll

[2013/05/17 18.15.29 | 002,382,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll

[2013/05/17 18.13.17 | 000,000,000 | ---D | C] -- C:\ProgramData\HP

[2013/05/17 17.37.07 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Roaming\OpenOffice.org

[2013/05/13 00.12.30 | 000,688,992 | R--- | C] (Swearware) -- C:\Users\Barbara\Desktop\dds.com

[2013/05/12 22.18.06 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Roaming\Nosibay

[2013/05/12 22.17.50 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Roaming\WinRAR

[2013/05/12 22.17.50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR

[2013/05/12 22.17.49 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

[2013/05/12 22.17.47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinRAR

[2013/05/12 22.16.39 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Roaming\Macromedia

[2013/05/12 20.02.00 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Roaming\TS3Client

[2013/05/12 20.01.33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client

[2013/05/12 20.01.25 | 000,000,000 | ---D | C] -- C:\Program Files\TeamSpeak 3 Client

[2013/05/11 19.47.27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Chart Controls

[2013/05/11 19.15.06 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Roaming\Malwarebytes

[2013/05/11 19.15.04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware

[2013/05/11 19.15.04 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes

[2013/05/11 19.15.03 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys

[2013/05/11 19.15.03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware

[2013/05/11 18.33.06 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Local\PunkBuster

[2013/05/11 18.32.57 | 000,000,000 | ---D | C] -- C:\Users\Barbara\AppData\Local\CrashRpt

[2013/05/11 18.31.48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Reference Assemblies

[2013/05/11 18.31.48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSBuild

[2013/05/11 18.31.42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\XPSViewer

[2013/05/11 18.31.42 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies

[2013/05/11 18.31.42 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild

[2013/05/11 18.30.10 | 001,166,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationNative_v0300.dll

[2013/05/11 18.30.10 | 000,778,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationNative_v0300.dll

[2013/05/11 18.30.10 | 000,124,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll

[2013/05/11 18.30.10 | 000,102,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll

[2013/05/11 18.30.10 | 000,035,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TsWpfWrp.exe

[2013/05/11 18.30.10 | 000,035,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsWpfWrp.exe

[2013/05/11 18.20.17 | 000,000,000 | ---D | C] -- C:\Users\Barbara\Documents\my games

[2013/05/11 18.20.14 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll

[2013/05/11 18.20.14 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll

[2013/05/11 18.20.14 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll

[2013/05/11 18.20.14 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll

[2013/05/11 18.20.13 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll

[2013/05/11 18.20.13 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_7.dll

[2013/05/11 18.20.12 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll

[2013/05/11 18.20.12 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll

[2013/05/11 18.20.12 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_43.dll

[2013/05/11 18.20.12 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll

[2013/05/11 18.20.11 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll

[2013/05/11 18.20.11 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll

[2013/05/11 18.20.10 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll

[2013/05/11 18.20.10 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll

[2013/05/11 18.20.10 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll

[2013/05/11 18.20.10 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll

[2013/05/11 18.20.09 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_6.dll

[2013/05/11 18.20.09 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_6.dll

[2013/05/11 18.20.09 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_4.dll

[2013/05/11 18.20.09 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_4.dll

[2013/05/11 18.20.08 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_6.dll

[2013/05/11 18.20.08 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_6.dll

[2013/05/11 18.20.07 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_5.dll

[2013/05/11 18.20.07 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll

[2013/05/11 18.20.07 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_7.dll

[2013/05/11 18.20.07 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_7.dll

[2013/05/11 18.20.06 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_42.dll

[2013/05/11 18.20.06 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_42.dll

[2013/05/11 18.20.06 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_5.dll

[2013/05/11 18.20.06 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_5.dll

[2013/05/11 18.20.05 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_42.dll

[2013/05/11 18.20.05 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_42.dll

[2013/05/11 18.20.04 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_42.dll

[2013/05/11 18.20.04 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll

[2013/05/11 18.20.04 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll

[2013/05/11 18.20.04 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll

[2013/05/11 18.20.04 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_42.dll

[2013/05/11 18.20.04 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_42.dll

[2013/05/11 18.20.03 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_41.dll

[2013/05/11 18.20.03 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_41.dll

[2013/05/11 18.20.03 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_41.dll

[2013/05/11 18.20.03 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_41.dll

[2013/05/11 18.20.02 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_41.dll

[2013/05/11 18.20.02 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_41.dll

[2013/05/11 18.20.01 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_4.dll

[2013/05/11 18.20.01 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_4.dll

[2013/05/11 18.20.01 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_3.dll

[2013/05/11 18.20.01 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll

[2013/05/11 18.20.00 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_4.dll

[2013/05/11 18.20.00 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_4.dll

[2013/05/11 18.19.58 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll

[2013/05/11 18.19.58 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll

[2013/05/11 18.19.58 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll

[2013/05/11 18.19.58 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll

[2013/05/11 18.19.58 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_6.dll

[2013/05/11 18.19.58 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_6.dll

[2013/05/11 18.19.57 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll

[2013/05/11 18.19.57 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll

[2013/05/11 18.19.56 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_3.dll

[2013/05/11 18.19.56 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll

[2013/05/11 18.19.56 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_2.dll

[2013/05/11 18.19.56 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll

[2013/05/11 18.19.55 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll

[2013/05/11 18.19.55 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_3.dll

[2013/05/11 18.19.55 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_5.dll

[2013/05/11 18.19.55 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll

[2013/05/11 18.19.54 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_2.dll

[2013/05/11 18.19.54 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_2.dll

[2013/05/11 18.19.54 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_1.dll

[2013/05/11 18.19.54 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_1.dll

[2013/05/11 18.19.53 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_39.dll

[2013/05/11 18.19.53 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_39.dll

[2013/05/11 18.19.53 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_39.dll

[2013/05/11 18.19.53 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_39.dll

[2013/05/11 18.19.53 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_2.dll

[2013/05/11 18.19.53 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_2.dll

[2013/05/11 18.19.52 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_39.dll

[2013/05/11 18.19.52 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_39.dll

[2013/05/11 18.19.52 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_1.dll

[2013/05/11 18.19.52 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_1.dll

[2013/05/11 18.19.52 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_0.dll

[2013/05/11 18.19.52 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_0.dll

[2013/05/11 18.19.51 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_38.dll

[2013/05/11 18.19.51 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_38.dll

[2013/05/11 18.19.51 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_38.dll

[2013/05/11 18.19.51 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_38.dll

[2013/05/11 18.19.51 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_1.dll

[2013/05/11 18.19.51 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_1.dll

[2013/05/11 18.19.51 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_4.dll

[2013/05/11 18.19.51 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_4.dll

[2013/05/11 18.19.50 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_38.dll

[2013/05/11 18.19.50 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_38.dll

[2013/05/11 18.19.50 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_0.dll

[2013/05/11 18.19.50 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_0.dll

[2013/05/11 18.19.49 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_37.dll

[2013/05/11 18.19.49 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_37.dll

[2013/05/11 18.19.49 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_37.dll

[2013/05/11 18.19.49 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_37.dll

[2013/05/11 18.19.49 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_0.dll

[2013/05/11 18.19.49 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_0.dll

[2013/05/11 18.19.49 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_3.dll

[2013/05/11 18.19.49 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_3.dll

[2013/05/11 18.19.48 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_37.dll

[2013/05/11 18.19.48 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_37.dll

[2013/05/11 18.19.48 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_10.dll

[2013/05/11 18.19.48 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_10.dll

[2013/05/11 18.19.47 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_36.dll

[2013/05/11 18.19.47 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_36.dll

[2013/05/11 18.19.47 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_36.dll

[2013/05/11 18.19.47 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_36.dll

[2013/05/11 18.19.46 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_36.dll

[2013/05/11 18.19.46 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_36.dll

[2013/05/11 18.19.46 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_9.dll

[2013/05/11 18.19.46 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll

[2013/05/11 18.19.45 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_35.dll

[2013/05/11 18.19.45 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll

[2013/05/11 18.19.45 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_35.dll

[2013/05/11 18.19.45 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll

[2013/05/11 18.19.44 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll

[2013/05/11 18.19.44 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll

[2013/05/11 18.19.44 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_8.dll

[2013/05/11 18.19.44 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll

[2013/05/11 18.19.44 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_2.dll

[2013/05/11 18.19.44 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_2.dll

[2013/05/11 18.19.43 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_34.dll

[2013/05/11 18.19.43 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll

[2013/05/11 18.19.43 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_34.dll

[2013/05/11 18.19.43 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll

[2013/05/11 18.19.42 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_34.dll

[2013/05/11 18.19.42 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll

[2013/05/11 18.19.41 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_7.dll

[2013/05/11 18.19.41 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll

[2013/05/11 18.19.41 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_3.dll

[2013/05/11 18.19.41 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_3.dll

[2013/05/11 18.19.40 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_33.dll

[2013/05/11 18.19.40 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll

[2013/05/11 18.19.40 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_33.dll

[2013/05/11 18.19.40 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll

[2013/05/11 18.19.40 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_33.dll

[2013/05/11 18.19.40 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll

[2013/05/11 18.19.39 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_6.dll

[2013/05/11 18.19.39 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll

[2013/05/11 18.19.38 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll

[2013/05/11 18.19.38 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll

[2013/05/11 18.19.38 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10.dll

[2013/05/11 18.19.38 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll

[2013/05/11 18.19.38 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_5.dll

[2013/05/11 18.19.38 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll

[2013/05/11 18.19.37 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_31.dll

[2013/05/11 18.19.37 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll

[2013/05/11 18.19.37 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_4.dll

[2013/05/11 18.19.37 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll

[2013/05/11 18.19.37 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_1.dll

[2013/05/11 18.19.37 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll

[2013/05/11 18.19.36 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_3.dll

[2013/05/11 18.19.36 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll

[2013/05/11 18.19.36 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll

[2013/05/11 18.19.36 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll

[2013/05/11 18.19.36 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_2.dll

[2013/05/11 18.19.36 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll

[2013/05/11 18.19.36 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll

[2013/05/11 18.19.36 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll

[2013/05/11 18.19.35 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll

[2013/05/11 18.19.35 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll

[2013/05/11 18.19.35 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll

[2013/05/11 18.19.35 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll

[2013/05/11 18.19.35 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll

[2013/05/11 18.19.35 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll

[2013/05/11 18.19.35 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll

[2013/05/11 18.19.35 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll

[2013/05/11 18.19.34 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll

[2013/05/11 18.19.34 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll

[2013/05/11 18.19.34 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll

[2013/05/11 18.19.34 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll

[2013/05/11 18.19.33 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll

[2013/05/11 18.19.33 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll

[2013/05/11 18.19.33 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll

[2013/05/11 18.19.33 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.