Jump to content

Inbound to svchost.exe blocked by Malwarebytes.


Recommended Posts

Hi,

 

Today I noticed an inbound connection that was blocked by malwarebytes. C:\Windows\System32\svchost.exe Port 123

I checked yesterdays protection log and noticed the same block, however from different IP address. I checked logs from rest of the week, and found no sings from it. The detection from today seems to come from Netherlands, and the yesterdays one from Lithuania. 

Since these were inbound instead of outbound that means that Malwarebytes is doing its job right? But I don't think that its normal to be "under attack" like this. And i'm kinda paranoid when it comes to pc viruses so better to be safe than sorry.

 

I did a clean install for Windows 10 about 2 weeks ago, formatted my drives. I moved some files over, from my old PC, such as pictures, text documents, music and skype chat history. Among the first things I installed on this PC were Avira antivirus (free) and Malwarebytes premium.

 

I have avira and malwarebytes set for daily scans.

 

I have attached the protection logs from today and yesterday and a full scan report of malwayrebytes which came up with nothing.

 

Are these random attacks? Should I be worried? Am I under attack? Am I infected? Am I just paranoid?

 

Thank you very much for your help in advance. Really appreciate what you are doing here.

 

Full disclosure: I had p2p software "Deluge" installed, but I uninstalled it since the rules say so. I added skype.exe to process exclusions.  

 

Protectionlog 30.1.2016.txt

Protectionlog 31.1.2016.txt

scanlog 31.1.2016.txt

Link to post
Share on other sites

Hello and welcome to Malwarebytes,

Please be aware the following P2P/Piracy Warning is a standard opening reply made here at Malwarebytes, we make no accusations but do make you aware of Forum Protocol....

If you're using Peer 2 Peer software such as uTorrent, BitTorrent or similar you must either fully uninstall them or completely disable them from running while being assisted here.Failure to remove or disable such software will result in your topic being closed and no further assistance being provided.If you have illegal/cracked software, cracks, keygens etc. on the system, please remove or uninstall them now and read the policy on Piracy.


Anyone other than the original starter of this thread please DO NOT follow the instructions and advice posted as replies here, my help and advice is NOT related to your system and will probably cause more harm than good...

Please open Malwarebytes Anti-Malware.

  • On the Settings tab > Detection and Protection sub tab, Detection Options, tick the box "Scan for rootkits". <---- Very Important
  • Under Non-Malware Protection sub tab Change PUP and PUM entries to Treat detections as Malware
  • Click on the Scan tab, then click on Scan Now >> . If an update is available, click the Update Now button.
  • A Threat Scan will begin.
  • With some infections, you may or may not see this message box.

            'Could not load DDA driver'
  • Click 'Yes' to this message, to allow the driver to load after a restart.
  • Allow the computer to restart. Continue with the rest of these instructions.
  • When the scan is complete, click Apply Actions.
  • Wait for the prompt to restart the computer to appear, then click on Yes.
  • After the restart once you are back at your desktop, open MBAM once more.



To get the log from Malwarebytes do the following:

  • Click on the History tab > Application Logs.
  • Double click on the scan log which shows the Date and time of the scan just performed.
  • Click Export > From export you have three options:

      Copy to Clipboard - if seleted right click to your reply and select "Paste" log will be pasted to your reply
      Text file (*.txt)        - if selected you will have to name the file and save to a place of choice, recommend "Desktop" then attach to reply
      XML file (*.xml)      - if selected you will have to name the file and save to a place of choice, recommend "Desktop" then attach to reply
  • Please use "Copy to Clipboard, then Right click to your reply > select "Paste" that will copy the log to your reply…




Next,

Download AdwCleaner by Xplode onto your Desktop.

  • Double click on Adwcleaner.exe to run the tool.
  • Click on the Scan in the Actions box
  • Please wait fot the scan to finish..
  • When "Waiting for action.Please uncheck elements you want to keep" shows in top line..
  • Click on the Cleaning box.
  • Next click OK on the "Closing Programs" pop up box.
  • Click OK on the Information box & again OK to allow the necessary reboot
  • After restart the AdwCleaner(C*)-Notepad log will appear, please copy/paste it in your next reply. Where * is the number relative to list of scans completed...


Next,

Download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system (32 bit or 64 bit). If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.


  • Double-click to run it. When the tool opens click Yes to disclaimer.
    (Windows 8/10 users will be prompted about Windows SmartScreen protection - click More information and Run.)
  • Make sure Addition.txt is checkmarked under "Optional scans"
  • Press Scan button to run the tool....
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The tool will also make a log named (Addition.txt) Please attach those logs to your reply.



Let me see those logs in your next reply...

Thank you,

Kevin...

Link to post
Share on other sites

Malwarebytes Anti-Malware
www.malwarebytes.org
 
Tarkistuksen päivämäärä: 31.1.2016
Tarkistuksen kellonaika: 21.34
Lokitiedosto: 
Järjestelmänvalvoja: Kyllä
 
Versio: 2.2.0.1024
Haittaohjelmien tietokanta: v2016.01.31.04
Rootkittien tietokanta: v2016.01.20.01
Lisenssi: Premium
Haittaohjelmasuoja: Käytössä
Haitallisten verkkosivujen esto: Käytössä
Itsepuolustus: Pois käytöstä
 
Käyttöjärjestelmä: Windows 10
Prosessori: x64
Tiedostojärjestelmä: NTFS
Käyttäjä: jaakk
 
Tarkistuksen tyyppi: Kattava tarkistus
Tulos: Valmis
Kohteita tarkistettu: 338111
Aikaa kulunut: 8 minuutti(a), 43 sekuntti(a)
 
Muisti: Käytössä
Käynnistys: Käytössä
Tiedostojärjestelmä: Käytössä
Pakkaukset: Käytössä
Rootkitit: Käytössä
Heuristiikka: Käytössä
Mahdollisesti haitalliset ohjelmat: Käytössä
Mahdollisesti haitalliset muutokset: Käytössä
 
Prosessit: 0
(Haitallisia kohteita ei löydetty)
 
Moduulit: 0
(Haitallisia kohteita ei löydetty)
 
Rekisteriavain: 0
(Haitallisia kohteita ei löydetty)
 
Rekisteriarvot: 0
(Haitallisia kohteita ei löydetty)
 
Reksiteritiedot: 0
(Haitallisia kohteita ei löydetty)
 
Kansiot: 0
(Haitallisia kohteita ei löydetty)
 
Tiedostot: 0
(Haitallisia kohteita ei löydetty)
 
Fyysiset sektorit: 0
(Haitallisia kohteita ei löydetty)
 
 
(end)
 
---
 
# AdwCleaner v5.032 - Logfile created 31/01/2016 at 21:48:55
# Updated 31/01/2016 by Xplode
# Database : 2016-01-31.1 [server]
# Operating system : Windows 10 Home  (x64)
# Username : jaakk - JAAKKO
# Running from : C:\Users\jaakk\Desktop\AdwCleaner.exe
# Option : Cleaning
 
***** [ Services ] *****
 
 
***** [ Folders ] *****
 
 
***** [ Files ] *****
 
 
***** [ DLLs ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Scheduled tasks ] *****
 
 
***** [ Registry ] *****
 
 
***** [ Web browsers ] *****
 
 
*************************
 
:: "Tracing" keys removed
:: Winsock settings cleared
 
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [651 bytes] ##########

 

Link to post
Share on other sites

 



Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-01-2016

Ran by jaakk (administrator) on JAAKKO (31-01-2016 21:56:25)

Running from C:\Users\jaakk\Desktop

Loaded Profiles: jaakk (Available Profiles: jaakk)

Platform: Windows 10 Home Version 1511 (X64) Language: suomi (Suomi)

Internet Explorer Version 11 (Default browser: Chrome)

Boot Mode: Normal


 

==================== Processes (Whitelisted) =================

 

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

 

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe

() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe

(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe

() C:\Windows\SysWOW64\PnkBstrA.exe

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe

(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe

() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe

(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe

(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe

(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe

(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe

(Spotify Ltd) C:\Users\jaakk\AppData\Roaming\Spotify\~TMP_10112_137~

(Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe

(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe

(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe

(Corsair Components, Inc.) C:\Program Files (x86)\Corsair\Corsair Utility Engine\CorsairHID.exe

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe

(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe

(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe

(GOG.com) C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe

(GOG.com) C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe

(GOG.com) C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe

(GOG.com) C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe

(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe

(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Spotify Ltd) C:\Users\jaakk\AppData\Roaming\Spotify\Spotify.exe

(Spotify Ltd) C:\Users\jaakk\AppData\Roaming\Spotify\SpotifyCrashService.exe

(Spotify Ltd) C:\Users\jaakk\AppData\Roaming\Spotify\Spotify.exe

(Spotify Ltd) C:\Users\jaakk\AppData\Roaming\Spotify\Spotify.exe

(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

 

 

==================== Registry (Whitelisted) ===========================

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

 

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2787264 2016-01-12] (NVIDIA Corporation)

HKLM\...\Run: [shadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart

HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [15053944 2016-01-06] (Logitech Inc.)

HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [803200 2015-12-03] (Avira Operations GmbH & Co. KG)

HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66320 2015-12-08] (Avira Operations GmbH & Co. KG)

HKLM-x32\...\Run: [Corsair Utility Engine] => C:\Program Files (x86)\Corsair\Corsair Utility Engine\CorsairHID.exe [13740864 2015-12-25] (Corsair Components, Inc.)

HKU\S-1-5-21-2270606022-1161141034-668459170-1001\...\Run: [spotify] => C:\Users\jaakk\AppData\Roaming\Spotify\Spotify.exe [8449136 2016-01-31] (Spotify Ltd)

HKU\S-1-5-21-2270606022-1161141034-668459170-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3639280 2016-01-29] (Electronic Arts)

HKU\S-1-5-21-2270606022-1161141034-668459170-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [7744568 2015-10-14] (GOG.com)

HKU\S-1-5-21-2270606022-1161141034-668459170-1001\...\Run: [steelSeries Engine] => C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [87040 2014-10-09] (SteelSeries ApS)

HKU\S-1-5-21-2270606022-1161141034-668459170-1001\...\Run: [spotify Web Helper] => C:\Users\jaakk\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2355312 2016-01-31] (Spotify Ltd)

HKU\S-1-5-21-2270606022-1161141034-668459170-1001\...\Run: [steam] => C:\Program Files (x86)\Steam\steam.exe [3014224 2016-01-28] (Valve Corporation)

HKU\S-1-5-21-2270606022-1161141034-668459170-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50749056 2015-12-08] (Skype Technologies S.A.)

ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-23] (Microsoft Corporation)

ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-23] (Microsoft Corporation)

ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-23] (Microsoft Corporation)

 

==================== Internet (Whitelisted) ====================

 

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

 

Tcpip\Parameters: [DhcpNameServer] 62.241.198.246 62.241.198.245

Tcpip\..\Interfaces\{0c4ec650-bb9c-4d1e-b59f-0fb3d2c358df}: [DhcpNameServer] 62.241.198.246 62.241.198.245

 

Internet Explorer:

==================

HKU\S-1-5-21-2270606022-1161141034-668459170-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://fi.hbonordic.com/

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-01-23] (Microsoft Corporation)

BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-23] (Microsoft Corporation)

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2016-01-23] (Microsoft Corporation)

BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-23] (Microsoft Corporation)

Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-01-23] (Microsoft Corporation)

Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL [2016-01-23] (Microsoft Corporation)

 

FireFox:

========

FF ProfilePath: C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default

FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_286.dll [2016-01-23] ()

FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2016-01-23] (Microsoft Corporation)

FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN)

FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_286.dll [2016-01-23] ()

FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB)

FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)

FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-01-23] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL [2016-01-23] (Microsoft Corporation)

FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-12-16] (NVIDIA Corporation)

FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-12-16] (NVIDIA Corporation)

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2016-01-22] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2016-01-22] (Google Inc.)

FF Extension: uBlock Origin - C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\Extensions\uBlock0@raymondhill.net.xpi [2016-01-23]

FF Extension: Adblock Plus - C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-01-24]

 

Chrome: 

=======

CHR Plugin: (Widevine Content Decryption Module) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\widevinecdmadapter.dll (Google Inc.)

CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.97\PepperFlash\pepflashplayer.dll ()

CHR Profile: C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default

CHR Extension: (Google-presentaatiot) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-01-22]

CHR Extension: (Theme Creator) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2016-01-22]

CHR Extension: (Google-dokumentit) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-01-22]

CHR Extension: (Google Drive) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-22]

CHR Extension: (Dark Skin for Youtube™) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfeknfgchonpnofdjokchhdhdnddhglm [2016-01-22]

CHR Extension: (YouTube) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-22]

CHR Extension: (Adblock Plus) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-01-22]

CHR Extension: (Google-haku) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-22]

CHR Extension: (Google-taulukot) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-01-22]

CHR Extension: (Google Docsin offline-tila) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-01-22]

CHR Extension: (Bookmark Manager) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2016-01-31]

CHR Extension: (Nimetön) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikoigcigbkghofmbeikkbafjbcnbiimk [2016-01-22]

CHR Extension: (Moderator toolbox for reddit) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhjpjhhkcbkmgdkahnckfboefnkgghpo [2016-01-22]

CHR Extension: (Reddit Enhancement Suite) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2016-01-22]

CHR Extension: (Automattinen HD YouTubelle™) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\koiaokdomkpjdgniimnkhgbilbjgpeak [2016-01-22]

CHR Extension: (Chrome Web Storen maksut) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-01-22]

CHR Extension: (My Chrome Theme) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic [2016-01-22]

CHR Extension: (Enhanced Steam) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\okadibdjfemgnhjiembecghcbfknbfhg [2016-01-22]

CHR Extension: (Click&Clean App) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2016-01-31]

CHR Extension: (Gmail) - C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-01-22]

 

==================== Services (Whitelisted) ========================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [948392 2015-12-03] (Avira Operations GmbH & Co. KG)

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [466408 2015-12-03] (Avira Operations GmbH & Co. KG)

R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [466408 2015-12-03] (Avira Operations GmbH & Co. KG)

S4 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1418560 2015-12-03] (Avira Operations GmbH & Co. KG)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-07-04] ()

R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [251160 2015-12-08] (Avira Operations GmbH & Co. KG)

R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2787512 2015-12-22] (Microsoft Corporation)

S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [1616440 2015-10-14] (GOG.com)

S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7220792 2016-01-29] (GOG.com)

R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163200 2016-01-12] (NVIDIA Corporation)

R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193144 2016-01-06] (Logitech Inc.)

R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)

R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)

R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-01-12] (NVIDIA Corporation)

R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6308288 2016-01-12] (NVIDIA Corporation)

R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [4812736 2016-01-12] (NVIDIA Corporation)

S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2105352 2016-01-29] (Electronic Arts)

R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2016-01-22] ()

S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)

S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

 

===================== Drivers (Whitelisted) ==========================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2013-07-04] ()

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [135880 2015-12-03] (Avira Operations GmbH & Co. KG)

R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146696 2015-12-03] (Avira Operations GmbH & Co. KG)

R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-03] (Avira Operations GmbH & Co. KG)

R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [73032 2015-12-03] (Avira Operations GmbH & Co. KG)

R3 CorsairVBusDriver; C:\Windows\System32\drivers\CorsairVBusDriver.sys [47840 2015-11-23] (Corsair)

R3 CorsairVHidDriver; C:\Windows\System32\drivers\CorsairVHidDriver.sys [21728 2015-11-23] (Corsair)

R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech)

R3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.)

R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)

R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-01-31] (Malwarebytes)

R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)

R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [202032 2016-01-19] (Intel Corporation)

R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-01-12] (NVIDIA Corporation)

R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation)

R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek                                            )

S3 SAlphamHid; C:\Windows\System32\drivers\SAlpham64.sys [39168 2014-10-08] (SteelSeries Corporation)

S3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [40568 2015-10-03] (SteelSeries ApS)

S3 sshid; C:\Windows\System32\drivers\sshid.sys [51392 2016-01-15] (SteelSeries ApS)

S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)

S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)

S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

R3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [216064 2015-10-30] (Microsoft Corporation)

 

==================== NetSvcs (Whitelisted) ===================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

 



Link to post
Share on other sites


==================== One Month Created files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2016-01-31 21:56 - 2016-01-31 21:56 - 00020948 _____ C:\Users\jaakk\Desktop\FRST.txt

2016-01-31 21:55 - 2016-01-31 21:56 - 00000000 ____D C:\FRST

2016-01-31 21:54 - 2016-01-31 21:55 - 02370560 _____ (Farbar) C:\Users\jaakk\Desktop\FRST64.exe

2016-01-31 21:47 - 2016-01-31 21:48 - 00000000 ____D C:\AdwCleaner

2016-01-31 21:36 - 2016-01-31 21:47 - 01508352 _____ C:\Users\jaakk\Desktop\AdwCleaner.exe

2016-01-31 20:37 - 2016-01-31 20:37 - 00001322 _____ C:\Users\jaakk\Desktop\scanlog 31.1.2016.txt

2016-01-31 20:36 - 2016-01-31 20:36 - 00006370 _____ C:\Users\jaakk\Desktop\Protectionlog 31.1.2016.txt

2016-01-31 20:35 - 2016-01-31 20:35 - 00006370 _____ C:\Users\jaakk\Desktop\Protectionlog 30.1.2016.txt

2016-01-31 15:39 - 2016-01-31 15:39 - 00000000 __RHD C:\MSOCache

2016-01-28 09:26 - 2016-01-16 08:37 - 00202472 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll

2016-01-28 09:26 - 2016-01-16 08:36 - 01173344 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll

2016-01-28 09:26 - 2016-01-16 08:36 - 00713568 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll

2016-01-28 09:26 - 2016-01-16 08:34 - 00513888 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll

2016-01-28 09:26 - 2016-01-16 08:24 - 00538632 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll

2016-01-28 09:26 - 2016-01-16 08:23 - 08728920 _____ (Microsoft Corp.) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll

2016-01-28 09:26 - 2016-01-16 08:23 - 00848160 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll

2016-01-28 09:26 - 2016-01-16 08:23 - 00785088 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll

2016-01-28 09:26 - 2016-01-16 08:23 - 00536256 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll

2016-01-28 09:26 - 2016-01-16 08:23 - 00408120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll

2016-01-28 09:26 - 2016-01-16 08:23 - 00369912 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe

2016-01-28 09:26 - 2016-01-16 08:21 - 22572624 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll

2016-01-28 09:26 - 2016-01-16 08:21 - 01750440 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe

2016-01-28 09:26 - 2016-01-16 08:20 - 06971752 _____ (Microsoft Corp.) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll

2016-01-28 09:26 - 2016-01-16 08:20 - 06600904 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll

2016-01-28 09:26 - 2016-01-16 08:20 - 00652312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll

2016-01-28 09:26 - 2016-01-16 08:20 - 00431240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll

2016-01-28 09:26 - 2016-01-16 08:20 - 00366224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll

2016-01-28 09:26 - 2016-01-16 08:19 - 00709688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll

2016-01-28 09:26 - 2016-01-16 08:19 - 00405568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll

2016-01-28 09:26 - 2016-01-16 08:17 - 21125400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll

2016-01-28 09:26 - 2016-01-16 08:16 - 05238360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll

2016-01-28 09:26 - 2016-01-16 08:13 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys

2016-01-28 09:26 - 2016-01-16 08:13 - 00576864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys

2016-01-28 09:26 - 2016-01-16 08:12 - 01415200 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll

2016-01-28 09:26 - 2016-01-16 08:09 - 01089880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys

2016-01-28 09:26 - 2016-01-16 08:08 - 01174008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll

2016-01-28 09:26 - 2016-01-16 08:08 - 00440152 _____ (Microsoft Corporation) C:\Windows\system32\services.exe

2016-01-28 09:26 - 2016-01-16 07:46 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys

2016-01-28 09:26 - 2016-01-16 07:45 - 16986112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll

2016-01-28 09:26 - 2016-01-16 07:44 - 22394368 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll

2016-01-28 09:26 - 2016-01-16 07:44 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe

2016-01-28 09:26 - 2016-01-16 07:44 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\rasadhlp.dll

2016-01-28 09:26 - 2016-01-16 07:44 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll

2016-01-28 09:26 - 2016-01-16 07:43 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\winhttpcom.dll

2016-01-28 09:26 - 2016-01-16 07:42 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll

2016-01-28 09:26 - 2016-01-16 07:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\sscoreext.dll

2016-01-28 09:26 - 2016-01-16 07:41 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe

2016-01-28 09:26 - 2016-01-16 07:40 - 11545088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll

2016-01-28 09:26 - 2016-01-16 07:40 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll

2016-01-28 09:26 - 2016-01-16 07:40 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe

2016-01-28 09:26 - 2016-01-16 07:40 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\rasautou.exe

2016-01-28 09:26 - 2016-01-16 07:39 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\FilterDS.dll

2016-01-28 09:26 - 2016-01-16 07:38 - 07979008 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll

2016-01-28 09:26 - 2016-01-16 07:38 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll

2016-01-28 09:26 - 2016-01-16 07:38 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\SimCfg.dll

2016-01-28 09:26 - 2016-01-16 07:38 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\winbio.dll

2016-01-28 09:26 - 2016-01-16 07:37 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll

2016-01-28 09:26 - 2016-01-16 07:37 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll

2016-01-28 09:26 - 2016-01-16 07:37 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll

2016-01-28 09:26 - 2016-01-16 07:37 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\SMSRouter.dll

2016-01-28 09:26 - 2016-01-16 07:36 - 00638464 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll

2016-01-28 09:26 - 2016-01-16 07:36 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\DDDS.dll

2016-01-28 09:26 - 2016-01-16 07:36 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe

2016-01-28 09:26 - 2016-01-16 07:36 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\SimAuth.dll

2016-01-28 09:26 - 2016-01-16 07:36 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll

2016-01-28 09:26 - 2016-01-16 07:35 - 13018624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll

2016-01-28 09:26 - 2016-01-16 07:35 - 00383488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll

2016-01-28 09:26 - 2016-01-16 07:35 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasadhlp.dll

2016-01-28 09:26 - 2016-01-16 07:34 - 00610816 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll

2016-01-28 09:26 - 2016-01-16 07:34 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SmsRouterSvc.dll

2016-01-28 09:26 - 2016-01-16 07:34 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll

2016-01-28 09:26 - 2016-01-16 07:34 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll

2016-01-28 09:26 - 2016-01-16 07:34 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttpcom.dll

2016-01-28 09:26 - 2016-01-16 07:33 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll

2016-01-28 09:26 - 2016-01-16 07:33 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.UX.EapRequestHandler.dll

2016-01-28 09:26 - 2016-01-16 07:33 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll

2016-01-28 09:26 - 2016-01-16 07:32 - 24602624 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll

2016-01-28 09:26 - 2016-01-16 07:32 - 00621568 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll

2016-01-28 09:26 - 2016-01-16 07:32 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe

2016-01-28 09:26 - 2016-01-16 07:31 - 00851456 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll

2016-01-28 09:26 - 2016-01-16 07:31 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll

2016-01-28 09:26 - 2016-01-16 07:31 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll

2016-01-28 09:26 - 2016-01-16 07:31 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll

2016-01-28 09:26 - 2016-01-16 07:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasautou.exe

2016-01-28 09:26 - 2016-01-16 07:30 - 13382656 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll

2016-01-28 09:26 - 2016-01-16 07:30 - 02127360 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl

2016-01-28 09:26 - 2016-01-16 07:30 - 01053696 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll

2016-01-28 09:26 - 2016-01-16 07:30 - 00784384 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll

2016-01-28 09:26 - 2016-01-16 07:30 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimCfg.dll

2016-01-28 09:26 - 2016-01-16 07:30 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbio.dll

2016-01-28 09:26 - 2016-01-16 07:29 - 01500672 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe

2016-01-28 09:26 - 2016-01-16 07:29 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll

2016-01-28 09:26 - 2016-01-16 07:28 - 09918976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll

2016-01-28 09:26 - 2016-01-16 07:28 - 02624512 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll

2016-01-28 09:26 - 2016-01-16 07:28 - 01318912 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll

2016-01-28 09:26 - 2016-01-16 07:28 - 00884736 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll

2016-01-28 09:26 - 2016-01-16 07:28 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimAuth.dll

2016-01-28 09:26 - 2016-01-16 07:27 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll

2016-01-28 09:26 - 2016-01-16 07:26 - 19338752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2016-01-28 09:26 - 2016-01-16 07:26 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll

2016-01-28 09:26 - 2016-01-16 07:26 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll

2016-01-28 09:26 - 2016-01-16 07:26 - 00260608 _____ C:\Windows\system32\MTFServer.dll

2016-01-28 09:26 - 2016-01-16 07:26 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll

2016-01-28 09:26 - 2016-01-16 07:25 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll

2016-01-28 09:26 - 2016-01-16 07:25 - 00457728 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll

2016-01-28 09:26 - 2016-01-16 07:25 - 00235008 _____ C:\Windows\system32\MTF.dll

2016-01-28 09:26 - 2016-01-16 07:24 - 18678272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll

2016-01-28 09:26 - 2016-01-16 07:24 - 02057216 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll

2016-01-28 09:26 - 2016-01-16 07:24 - 00613888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll

2016-01-28 09:26 - 2016-01-16 07:24 - 00350720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll

2016-01-28 09:26 - 2016-01-16 07:24 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll

2016-01-28 09:26 - 2016-01-16 07:23 - 02050048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl

2016-01-28 09:26 - 2016-01-16 07:23 - 00687616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll

2016-01-28 09:26 - 2016-01-16 07:21 - 06297088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll

2016-01-28 09:26 - 2016-01-16 07:20 - 07199232 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll

2016-01-28 09:26 - 2016-01-16 07:20 - 02597888 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll

2016-01-28 09:26 - 2016-01-16 07:20 - 01944576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll

2016-01-28 09:26 - 2016-01-16 07:20 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdlg.dll

2016-01-28 09:26 - 2016-01-16 07:19 - 12126208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll

2016-01-28 09:26 - 2016-01-16 07:19 - 00733184 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll

2016-01-28 09:26 - 2016-01-16 07:19 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll

2016-01-28 09:26 - 2016-01-16 07:19 - 00162816 _____ C:\Windows\SysWOW64\MTF.dll

2016-01-28 09:26 - 2016-01-16 07:19 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll

2016-01-28 09:26 - 2016-01-16 07:18 - 03593216 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys

2016-01-28 09:26 - 2016-01-16 07:18 - 01674240 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll

2016-01-28 09:26 - 2016-01-16 07:17 - 05503488 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll

2016-01-28 09:26 - 2016-01-16 07:16 - 05202944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll

2016-01-28 09:26 - 2016-01-16 07:16 - 01542656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll

2016-01-28 09:26 - 2016-01-16 07:15 - 04759040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll

2016-01-28 09:26 - 2016-01-16 07:14 - 01946624 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll

2016-01-28 09:26 - 2016-01-16 07:14 - 01626624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll

2016-01-28 09:26 - 2016-01-16 07:11 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll

2016-01-28 09:26 - 2016-01-16 07:09 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll

2016-01-27 16:48 - 2016-01-28 15:59 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\vlc

2016-01-27 16:45 - 2016-01-27 16:45 - 00000714 _____ C:\Users\jaakk\AppData\Local\recently-used.xbel

2016-01-27 14:02 - 2016-01-27 14:02 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\NVIDIA

2016-01-26 14:29 - 2016-01-26 14:29 - 00000540 _____ C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ladatut tiedostot.lnk

2016-01-26 14:29 - 2016-01-26 14:29 - 00000279 _____ C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roskakori.lnk

2016-01-26 11:02 - 2016-01-26 11:02 - 00000000 ____D C:\Users\jaakk\AppData\Local\Fallout4

2016-01-25 23:44 - 2016-01-25 23:44 - 00000000 ____D C:\Users\jaakk\Documents\Mukautetut Office-mallit

2016-01-25 15:31 - 2016-01-25 15:31 - 00000000 ___RD C:\Program Files (x86)\Skype

2016-01-25 15:31 - 2016-01-25 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype

2016-01-24 19:18 - 2016-01-31 21:50 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Skype

2016-01-24 18:01 - 2016-01-24 18:01 - 00000000 ____D C:\Users\jaakk\Documents\jaakko1995

2016-01-24 18:01 - 2016-01-24 17:58 - 19599360 _____ C:\Users\jaakk\Documents\main.db

2016-01-24 11:44 - 2016-01-24 11:44 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf

2016-01-24 11:44 - 2016-01-24 11:44 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_wpdcomp_01_11_00.Wdf

2016-01-24 10:07 - 2016-01-24 10:07 - 00000000 ____D C:\Users\jaakk\AppData\LocalLow\Thunder Lotus Games

2016-01-23 08:58 - 2016-01-23 08:58 - 00000000 ____D C:\Windows\system32\SleepStudy

2016-01-23 06:22 - 2016-01-23 06:22 - 00000000 ____D C:\Users\jaakk\AppData\Local\Macromedia

2016-01-23 06:21 - 2016-01-23 06:21 - 00000000 ____D C:\Users\jaakk\AppData\Local\Adobe

2016-01-23 04:19 - 2016-01-23 04:22 - 00000000 ____D C:\Program Files (x86)\VS Revo Group

2016-01-23 03:41 - 2016-01-23 03:41 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\SteelSeries

2016-01-23 03:41 - 2016-01-23 03:41 - 00000000 ____D C:\Users\jaakk\AppData\Local\SteelSeries_ApS

2016-01-23 03:40 - 2016-01-23 03:40 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer

2016-01-23 03:40 - 2016-01-23 03:40 - 00000000 ____D C:\Program Files\Reference Assemblies

2016-01-23 03:40 - 2016-01-23 03:40 - 00000000 ____D C:\Program Files\MSBuild

2016-01-23 03:40 - 2016-01-23 03:40 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies

2016-01-23 03:40 - 2016-01-23 03:40 - 00000000 ____D C:\Program Files (x86)\MSBuild

2016-01-23 03:40 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll

2016-01-23 03:40 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll

2016-01-23 03:40 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe

2016-01-23 03:40 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll

2016-01-23 03:40 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe

2016-01-23 03:40 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll

2016-01-23 03:39 - 2016-01-23 03:39 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SteelSeries

2016-01-23 02:10 - 2016-01-24 07:00 - 00000000 ____D C:\Users\jaakk\AppData\Local\CrashDumps

2016-01-23 02:07 - 2016-01-23 02:07 - 00000000 ____D C:\Users\jaakk\Documents\MyTile

2016-01-23 01:58 - 2016-01-23 01:58 - 00000000 ____D C:\Program Files\Common Files\DESIGNER

2016-01-23 01:46 - 2016-01-23 01:46 - 00000000 ____D C:\Program Files\Microsoft Office

2016-01-23 01:44 - 2016-01-23 01:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013

2016-01-23 01:41 - 2016-01-23 01:41 - 00000000 ____D C:\Program Files\Microsoft Office 15

2016-01-23 01:21 - 2016-01-23 01:28 - 00000450 _____ C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HBO Nordic.website

2016-01-22 22:09 - 2016-01-31 19:15 - 00004168 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{D6B483A8-2B85-4D9D-90C4-AFF2DA13E7FD}

2016-01-22 21:28 - 2016-01-29 05:46 - 00000000 ____D C:\Users\jaakk\Documents\The Witcher 3

2016-01-22 09:40 - 2016-01-22 09:40 - 00000000 ____D C:\Users\jaakk\AppData\Local\ElevatedDiagnostics

2016-01-22 07:50 - 2016-01-22 07:50 - 00000000 ____D C:\Users\jaakk\AppData\Local\GalaxyCommunicationService

2016-01-22 07:50 - 2016-01-22 07:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4

2016-01-22 07:50 - 2016-01-22 07:50 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins

2016-01-22 07:49 - 2016-01-22 07:49 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.exe

2016-01-22 07:49 - 2016-01-22 07:49 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.ex0

2016-01-22 07:49 - 2016-01-22 07:49 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe

2016-01-22 07:31 - 2016-01-22 07:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher® 3 - Wild Hunt [GOG.com]

2016-01-22 07:31 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll

2016-01-22 07:31 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll

2016-01-22 07:31 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll

2016-01-22 07:31 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll

2016-01-22 07:31 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll

2016-01-22 07:31 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll

2016-01-22 07:31 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll

2016-01-22 07:31 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll

2016-01-22 07:31 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll

2016-01-22 07:31 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll

2016-01-22 07:31 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll

2016-01-22 07:31 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll

2016-01-22 07:31 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll

2016-01-22 07:31 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll

2016-01-22 07:31 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll

2016-01-22 07:31 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll

2016-01-22 07:31 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll

2016-01-22 07:31 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll

2016-01-22 07:31 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll

2016-01-22 07:31 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll

2016-01-22 07:31 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll

2016-01-22 07:31 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll

2016-01-22 07:30 - 2016-01-22 07:31 - 00000000 ____D C:\Users\jaakk\AppData\Local\Ubisoft Game Launcher

2016-01-22 07:30 - 2016-01-22 07:30 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft

2016-01-22 07:30 - 2016-01-22 07:30 - 00000000 ____D C:\Program Files (x86)\Ubisoft

2016-01-22 07:28 - 2016-01-22 07:28 - 00000000 ____D C:\Users\jaakk\Documents\Transfered Gamesaves

2016-01-22 07:14 - 2016-01-26 11:11 - 00000000 ____D C:\Users\jaakk\Documents\SAMK

2016-01-22 07:14 - 2016-01-22 07:14 - 00000000 ____D C:\Users\jaakk\Documents\Telltale Games

2016-01-22 07:14 - 2016-01-22 07:14 - 00000000 ____D C:\Users\jaakk\Documents\My Games

2016-01-22 06:54 - 2016-01-31 19:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluge

2016-01-22 06:54 - 2016-01-27 16:45 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\deluge

2016-01-22 06:46 - 2016-01-22 06:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries

2016-01-22 06:45 - 2016-01-23 03:39 - 00000000 ____D C:\ProgramData\SteelSeries

2016-01-22 06:45 - 2016-01-23 03:38 - 00000000 ____D C:\Program Files\SteelSeries

2016-01-22 06:45 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll

2016-01-22 06:45 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll

2016-01-22 06:39 - 2016-01-22 06:39 - 00003336 _____ C:\Windows\System32\Tasks\SamsungMagician

2016-01-22 06:38 - 2016-01-22 06:38 - 00000000 ____D C:\ProgramData\Samsung

2016-01-22 06:38 - 2016-01-22 06:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician

2016-01-22 06:38 - 2016-01-22 06:38 - 00000000 ____D C:\Program Files (x86)\Samsung

2016-01-22 06:36 - 2016-01-24 10:22 - 00000000 ____D C:\Fraps

2016-01-22 06:36 - 2016-01-22 06:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps

2016-01-22 06:34 - 2016-01-22 06:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID

2016-01-22 06:34 - 2016-01-22 06:34 - 00000000 ____D C:\Program Files\CPUID

2016-01-22 06:25 - 2016-01-22 06:31 - 00000000 ____D C:\Program Files (x86)\GalaxyClient

2016-01-22 06:25 - 2016-01-22 06:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com

2016-01-22 06:25 - 2016-01-22 06:25 - 00000000 ____D C:\ProgramData\GOG.com

2016-01-22 06:23 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll

2016-01-22 06:23 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll

2016-01-22 06:23 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll

2016-01-22 06:23 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll

2016-01-22 06:23 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll

2016-01-22 06:23 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll

2016-01-22 06:23 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll

2016-01-22 06:23 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll

2016-01-22 06:23 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll

2016-01-22 06:23 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll

2016-01-22 06:23 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll

2016-01-22 06:23 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll

2016-01-22 06:23 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll

2016-01-22 06:23 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll

2016-01-22 06:23 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll

2016-01-22 06:23 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll

2016-01-22 06:23 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll

2016-01-22 06:23 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll

2016-01-22 06:23 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll

2016-01-22 06:23 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll

2016-01-22 06:23 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll

2016-01-22 06:23 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll

2016-01-22 06:23 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll

2016-01-22 06:23 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll

2016-01-22 06:23 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll

2016-01-22 06:23 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll

2016-01-22 06:23 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll

2016-01-22 06:23 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll

2016-01-22 06:23 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll

2016-01-22 06:23 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll

2016-01-22 06:23 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll

2016-01-22 06:23 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll

2016-01-22 06:23 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll

2016-01-22 06:23 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll

2016-01-22 06:23 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll

2016-01-22 06:23 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll

2016-01-22 06:23 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll

2016-01-22 06:23 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll

2016-01-22 06:23 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll

2016-01-22 06:23 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll

2016-01-22 06:23 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll

2016-01-22 06:23 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll

2016-01-22 06:23 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll

2016-01-22 06:23 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll

2016-01-22 06:23 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll

2016-01-22 06:23 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll

2016-01-22 06:23 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll

2016-01-22 06:23 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll

2016-01-22 06:23 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll

2016-01-22 06:23 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll

2016-01-22 06:23 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll

2016-01-22 06:23 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll

2016-01-22 06:23 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll

2016-01-22 06:23 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll

2016-01-22 06:23 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll

2016-01-22 06:23 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll

2016-01-22 06:23 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll

2016-01-22 06:23 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll

2016-01-22 06:23 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll

2016-01-22 06:23 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll

2016-01-22 06:23 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll

2016-01-22 06:23 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll

2016-01-22 06:23 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll

2016-01-22 06:23 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll

2016-01-22 06:23 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll

2016-01-22 06:23 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll

2016-01-22 06:23 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll

2016-01-22 06:23 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll

2016-01-22 06:23 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll

2016-01-22 06:23 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll

2016-01-22 06:23 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll

2016-01-22 06:23 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll

2016-01-22 06:23 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll

2016-01-22 06:23 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll

2016-01-22 06:23 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll

2016-01-22 06:23 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll

2016-01-22 06:23 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll

2016-01-22 06:23 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll

2016-01-22 06:23 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll

2016-01-22 06:23 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll

2016-01-22 06:23 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll

2016-01-22 06:23 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll

2016-01-22 06:23 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll

2016-01-22 06:23 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll

2016-01-22 06:23 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll

2016-01-22 06:23 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll

2016-01-22 06:23 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll

2016-01-22 06:23 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll

2016-01-22 06:23 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll

2016-01-22 06:23 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll

2016-01-22 06:23 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll

2016-01-22 06:23 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll

2016-01-22 06:23 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll

2016-01-22 06:23 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll

2016-01-22 06:23 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll

2016-01-22 06:23 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll

2016-01-22 06:23 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll

2016-01-22 06:23 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll

2016-01-22 06:23 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll

2016-01-22 06:23 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll

2016-01-22 06:23 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll

2016-01-22 06:23 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll

2016-01-22 06:23 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll

2016-01-22 06:23 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll

2016-01-22 06:23 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll

2016-01-22 06:23 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll

2016-01-22 06:23 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll

2016-01-22 06:23 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll

2016-01-22 06:23 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll

2016-01-22 06:23 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll

2016-01-22 06:23 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll

2016-01-22 06:23 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll

2016-01-22 06:23 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll

2016-01-22 06:23 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll

2016-01-22 06:23 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll

2016-01-22 06:23 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll

2016-01-22 06:23 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll

2016-01-22 06:23 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll

2016-01-22 06:23 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll

2016-01-22 06:23 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll

2016-01-22 06:23 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll

2016-01-22 06:23 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll

2016-01-22 06:23 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll

2016-01-22 06:23 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll

2016-01-22 06:23 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll

2016-01-22 06:23 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll

2016-01-22 06:23 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll

2016-01-22 06:22 - 2016-01-22 06:23 - 00000000 ____D C:\Windows\SysWOW64\directx

2016-01-22 06:22 - 2016-01-22 06:22 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server

2016-01-22 06:22 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll

2016-01-22 06:22 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll

2016-01-22 06:22 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll

2016-01-22 06:22 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll

2016-01-22 06:22 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll

2016-01-22 06:22 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll

2016-01-22 06:22 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll

2016-01-22 06:22 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll

2016-01-22 06:22 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll

2016-01-22 06:22 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll

2016-01-22 06:22 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll

2016-01-22 06:22 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll

2016-01-22 06:22 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll

2016-01-22 06:22 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll

2016-01-22 06:22 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll

2016-01-22 06:22 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll

2016-01-22 06:21 - 2016-01-22 06:24 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner

2016-01-22 06:21 - 2016-01-22 06:22 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server

2016-01-22 06:21 - 2016-01-22 06:21 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner

2016-01-22 06:10 - 2016-01-22 06:10 - 00000000 ____D C:\Program Files (x86)\Origin Games

2016-01-22 06:08 - 2016-01-31 21:50 - 00000000 ____D C:\ProgramData\Origin

2016-01-22 06:08 - 2016-01-22 17:02 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Origin

2016-01-22 06:08 - 2016-01-22 06:10 - 00000000 ____D C:\Users\jaakk\AppData\Local\Origin

2016-01-22 06:08 - 2016-01-22 06:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin

2016-01-22 06:08 - 2016-01-22 06:08 - 00000000 ____D C:\ProgramData\Electronic Arts

2016-01-22 06:07 - 2016-01-29 05:31 - 00000000 ____D C:\Program Files (x86)\Origin

2016-01-22 05:58 - 2016-01-22 05:58 - 00000000 ____D C:\Users\jaakk\AppData\Local\Logitech

2016-01-22 05:58 - 2016-01-22 05:58 - 00000000 ____D C:\ProgramData\LogiShrd

2016-01-22 05:57 - 2016-01-22 05:57 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Logitech

2016-01-22 05:57 - 2016-01-22 05:57 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Logishrd

2016-01-22 05:57 - 2016-01-22 05:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech

2016-01-22 05:57 - 2016-01-22 05:57 - 00000000 ____D C:\Program Files\Logitech Gaming Software

2016-01-22 05:52 - 2016-01-22 05:52 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Corsair

2016-01-22 05:52 - 2016-01-22 05:52 - 00000000 ____D C:\Users\jaakk\AppData\Local\Corsair

2016-01-22 05:51 - 2016-01-22 05:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair Utility Engine

2016-01-22 05:51 - 2016-01-22 05:51 - 00000000 ____D C:\Program Files (x86)\Corsair

2016-01-22 05:40 - 2016-01-22 05:40 - 00000000 ____D C:\Users\jaakk\AppData\LocalLow\Camouflaj

2016-01-22 05:40 - 2016-01-22 05:40 - 00000000 ____D C:\Users\jaakk\AppData\Local\nuclearthrone

2016-01-22 05:12 - 2016-01-22 05:12 - 00000000 ____D C:\Users\jaakk\AppData\Local\Steam

2016-01-22 05:06 - 2016-01-22 05:08 - 00000000 ____D C:\Windows\system32\MRT

2016-01-22 05:06 - 2016-01-22 05:06 - 143671360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

2016-01-22 05:06 - 2016-01-05 04:51 - 07477600 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe

2016-01-22 05:06 - 2016-01-05 04:51 - 01317640 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi

2016-01-22 05:06 - 2016-01-05 04:51 - 01141496 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe

2016-01-22 05:06 - 2016-01-05 04:50 - 00671472 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll

2016-01-22 05:06 - 2016-01-05 04:48 - 00499432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll

2016-01-22 05:06 - 2016-01-05 04:45 - 02587696 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll

2016-01-22 05:06 - 2016-01-05 04:42 - 02026736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll

2016-01-22 05:06 - 2016-01-05 04:37 - 02544256 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll

2016-01-22 05:06 - 2016-01-05 04:37 - 01299504 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll

2016-01-22 05:06 - 2016-01-05 04:37 - 00858952 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll

2016-01-22 05:06 - 2016-01-05 04:37 - 00245840 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll

2016-01-22 05:06 - 2016-01-05 04:37 - 00234504 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll

2016-01-22 05:06 - 2016-01-05 04:36 - 00808800 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe

2016-01-22 05:06 - 2016-01-05 04:33 - 02180128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll

2016-01-22 05:06 - 2016-01-05 04:33 - 01118208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll

2016-01-22 05:06 - 2016-01-05 04:33 - 00701384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll

2016-01-22 05:06 - 2016-01-05 04:33 - 00208176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll

2016-01-22 05:06 - 2016-01-05 04:33 - 00116728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll

2016-01-22 05:06 - 2016-01-05 04:31 - 00703840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe

2016-01-22 05:06 - 2016-01-05 04:27 - 01594408 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll

2016-01-22 05:06 - 2016-01-05 04:24 - 00796352 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll

2016-01-22 05:06 - 2016-01-05 04:23 - 01804664 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll

2016-01-22 05:06 - 2016-01-05 04:23 - 01309376 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll

2016-01-22 05:06 - 2016-01-05 04:23 - 00786696 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL

2016-01-22 05:06 - 2016-01-05 04:23 - 00119320 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL

2016-01-22 05:06 - 2016-01-05 04:21 - 01371792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll

2016-01-22 05:06 - 2016-01-05 04:17 - 00695752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL

2016-01-22 05:06 - 2016-01-05 04:16 - 00100160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL

2016-01-22 05:06 - 2016-01-05 03:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\usermgrcli.dll

2016-01-22 05:06 - 2016-01-05 03:56 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe

2016-01-22 05:06 - 2016-01-05 03:54 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe

2016-01-22 05:06 - 2016-01-05 03:53 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx

2016-01-22 05:06 - 2016-01-05 03:50 - 00644096 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll

2016-01-22 05:06 - 2016-01-05 03:50 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll

2016-01-22 05:06 - 2016-01-05 03:49 - 01255936 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL

2016-01-22 05:06 - 2016-01-05 03:49 - 00749056 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll

2016-01-22 05:06 - 2016-01-05 03:49 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommon.dll

2016-01-22 05:06 - 2016-01-05 03:48 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL

2016-01-22 05:06 - 2016-01-05 03:48 - 00387072 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll

2016-01-22 05:06 - 2016-01-05 03:48 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usermgrcli.dll

2016-01-22 05:06 - 2016-01-05 03:47 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll

2016-01-22 05:06 - 2016-01-05 03:47 - 00479232 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll

2016-01-22 05:06 - 2016-01-05 03:47 - 00305664 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax

2016-01-22 05:06 - 2016-01-05 03:45 - 00678912 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll

2016-01-22 05:06 - 2016-01-05 03:45 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll

2016-01-22 05:06 - 2016-01-05 03:44 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx

2016-01-22 05:06 - 2016-01-05 03:43 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll

2016-01-22 05:06 - 2016-01-05 03:43 - 00604672 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll

2016-01-22 05:06 - 2016-01-05 03:43 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe

2016-01-22 05:06 - 2016-01-05 03:41 - 00558592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll

2016-01-22 05:06 - 2016-01-05 03:40 - 00890880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL

2016-01-22 05:06 - 2016-01-05 03:40 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommon.dll

2016-01-22 05:06 - 2016-01-05 03:39 - 03428864 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll

2016-01-22 05:06 - 2016-01-05 03:39 - 00569856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll

2016-01-22 05:06 - 2016-01-05 03:39 - 00498176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll

2016-01-22 05:06 - 2016-01-05 03:38 - 00389120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll

2016-01-22 05:06 - 2016-01-05 03:36 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll

2016-01-22 05:06 - 2016-01-05 03:36 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll

2016-01-22 05:06 - 2016-01-05 03:30 - 02796032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll

2016-01-22 05:06 - 2016-01-05 03:30 - 02280448 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll

2016-01-22 05:06 - 2016-01-05 03:29 - 03667456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll

2016-01-22 05:06 - 2016-01-05 03:28 - 07826432 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll

2016-01-22 05:06 - 2016-01-05 03:28 - 04894720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll

2016-01-22 05:06 - 2016-01-05 03:25 - 05660160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll

2016-01-22 05:06 - 2015-12-07 06:57 - 00973664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll

2016-01-22 05:06 - 2015-12-07 06:55 - 01281376 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll

2016-01-22 05:06 - 2015-12-07 06:49 - 00412512 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe

2016-01-22 05:06 - 2015-12-07 06:48 - 01155944 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 01092456 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 01065080 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 01020096 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00983464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00884256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00823264 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00794888 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00696160 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00670928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00526856 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00502112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00498448 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00462760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00450904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00337840 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00289248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00115040 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll

2016-01-22 05:06 - 2015-12-07 06:48 - 00084832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll

2016-01-22 05:06 - 2015-12-07 06:47 - 00925064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll

2016-01-22 05:06 - 2015-12-07 06:47 - 00898184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll

2016-01-22 05:06 - 2015-12-07 06:47 - 00716928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll

2016-01-22 05:06 - 2015-12-07 06:46 - 03671888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll

2016-01-22 05:06 - 2015-12-07 06:46 - 02919320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll

2016-01-22 05:06 - 2015-12-07 06:45 - 00264544 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll

2016-01-22 05:06 - 2015-12-07 06:15 - 01035776 _____ (Microsoft Corporation) C:\Windows\system32\XboxNetApiSvc.dll

2016-01-22 05:06 - 2015-12-07 06:10 - 00824320 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll

2016-01-22 05:06 - 2015-12-07 06:09 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\flvprophandler.dll

2016-01-22 05:06 - 2015-12-07 06:09 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll

2016-01-22 05:06 - 2015-12-07 06:07 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll

2016-01-22 05:06 - 2015-12-07 06:06 - 00572928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll

2016-01-22 05:06 - 2015-12-07 06:06 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll

2016-01-22 05:06 - 2015-12-07 06:06 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe

2016-01-22 05:06 - 2015-12-07 06:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll

2016-01-22 05:06 - 2015-12-07 06:04 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll

2016-01-22 05:06 - 2015-12-07 06:04 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe

2016-01-22 05:06 - 2015-12-07 06:02 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll

2016-01-22 05:06 - 2015-12-07 06:02 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe

2016-01-22 05:06 - 2015-12-07 06:01 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll

2016-01-22 05:06 - 2015-12-07 06:00 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll

2016-01-22 05:06 - 2015-12-07 06:00 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll

2016-01-22 05:06 - 2015-12-07 06:00 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll

2016-01-22 05:06 - 2015-12-07 05:59 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll

2016-01-22 05:06 - 2015-12-07 05:59 - 00292352 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll

 


 

Link to post
Share on other sites

2016-01-22 05:06 - 2015-12-07 05:59 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll

2016-01-22 05:06 - 2015-12-07 05:59 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll

2016-01-22 05:06 - 2015-12-07 05:58 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll

2016-01-22 05:06 - 2015-12-07 05:57 - 00409088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll

2016-01-22 05:06 - 2015-12-07 05:57 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll

2016-01-22 05:06 - 2015-12-07 05:56 - 00607232 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll

2016-01-22 05:06 - 2015-12-07 05:56 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll

2016-01-22 05:06 - 2015-12-07 05:55 - 00346112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll

2016-01-22 05:06 - 2015-12-07 05:53 - 00381952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll

2016-01-22 05:06 - 2015-12-07 05:51 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll

2016-01-22 05:06 - 2015-12-07 05:50 - 01131520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll

2016-01-22 05:06 - 2015-12-07 05:49 - 01105920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll

2016-01-22 05:06 - 2015-12-07 05:45 - 02582016 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll

2016-01-22 05:06 - 2015-12-07 05:45 - 00900608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll

2016-01-22 05:06 - 2015-12-07 05:45 - 00683008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll

2016-01-22 05:06 - 2015-12-07 05:43 - 00931328 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL

2016-01-22 05:06 - 2015-12-07 05:41 - 02061824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll

2016-01-22 05:06 - 2015-12-07 05:40 - 01995776 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll

2016-01-22 05:06 - 2015-12-07 05:40 - 01706496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll

2016-01-22 05:06 - 2015-12-07 05:39 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll

2016-01-22 05:06 - 2015-12-07 05:38 - 00871936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL

2016-01-22 05:06 - 2015-12-07 05:33 - 00375296 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe

2016-01-22 05:06 - 2015-12-07 05:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll

2016-01-22 05:06 - 2015-12-01 09:12 - 02152800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys

2016-01-22 05:06 - 2015-11-24 14:07 - 01817160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll

2016-01-22 05:06 - 2015-11-24 13:06 - 01540768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll

2016-01-22 05:06 - 2015-11-24 12:26 - 01399224 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll

2016-01-22 05:06 - 2015-11-24 11:37 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys

2016-01-22 05:06 - 2015-11-24 11:26 - 01337240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll

2016-01-22 05:06 - 2015-11-24 11:19 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll

2016-01-22 05:06 - 2015-11-24 11:12 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll

2016-01-22 05:06 - 2015-11-24 10:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys

2016-01-22 05:06 - 2015-11-24 10:52 - 01717248 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll

2016-01-22 05:06 - 2015-11-24 10:49 - 01648640 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll

2016-01-22 05:06 - 2015-11-24 10:14 - 00415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll

2016-01-22 05:06 - 2015-11-24 09:59 - 01467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll

2016-01-22 05:06 - 2015-11-24 09:57 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll

2016-01-22 05:06 - 2015-11-24 09:29 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll

2016-01-22 05:06 - 2015-11-24 09:04 - 02155008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll

2016-01-22 05:06 - 2015-11-22 12:47 - 02653816 _____ C:\Windows\system32\CoreUIComponents.dll

2016-01-22 05:06 - 2015-11-22 12:41 - 01859448 _____ C:\Windows\SysWOW64\CoreUIComponents.dll

2016-01-22 05:06 - 2015-11-22 12:41 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe

2016-01-22 05:06 - 2015-11-22 12:34 - 00080600 _____ (Microsoft Corporation) C:\Windows\system32\wwapi.dll

2016-01-22 05:06 - 2015-11-22 12:33 - 00095072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys

2016-01-22 05:06 - 2015-11-22 12:33 - 00058408 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.dll

2016-01-22 05:06 - 2015-11-22 12:33 - 00051680 _____ (Microsoft Corporation) C:\Windows\system32\SensorsUtilsV2.dll

2016-01-22 05:06 - 2015-11-22 12:30 - 00604928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys

2016-01-22 05:06 - 2015-11-22 12:30 - 00161632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys

2016-01-22 05:06 - 2015-11-22 12:25 - 00063528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wwapi.dll

2016-01-22 05:06 - 2015-11-22 12:24 - 02772584 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll

2016-01-22 05:06 - 2015-11-22 12:14 - 02185840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll

2016-01-22 05:06 - 2015-11-22 11:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManagerProxy.dll

2016-01-22 05:06 - 2015-11-22 11:54 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\ETWCoreUIComponentsResources.dll

2016-01-22 05:06 - 2015-11-22 11:54 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\capimg.sys

2016-01-22 05:06 - 2015-11-22 11:50 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll

2016-01-22 05:06 - 2015-11-22 11:43 - 00704000 _____ (Microsoft Corporation) C:\Windows\system32\CellularAPI.dll

2016-01-22 05:06 - 2015-11-22 11:43 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll

2016-01-22 05:06 - 2015-11-22 11:43 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthManagerProxy.dll

2016-01-22 05:06 - 2015-11-22 11:42 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll

2016-01-22 05:06 - 2015-11-22 11:42 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ETWCoreUIComponentsResources.dll

2016-01-22 05:06 - 2015-11-22 11:41 - 00948224 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll

2016-01-22 05:06 - 2015-11-22 11:39 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll

2016-01-22 05:06 - 2015-11-22 11:39 - 00938496 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll

2016-01-22 05:06 - 2015-11-22 11:39 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll

2016-01-22 05:06 - 2015-11-22 11:38 - 01223168 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll

2016-01-22 05:06 - 2015-11-22 11:38 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll

2016-01-22 05:06 - 2015-11-22 11:38 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll

2016-01-22 05:06 - 2015-11-22 11:38 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll

2016-01-22 05:06 - 2015-11-22 11:37 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll

2016-01-22 05:06 - 2015-11-22 11:37 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll

2016-01-22 05:06 - 2015-11-22 11:36 - 01042432 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll

2016-01-22 05:06 - 2015-11-22 11:34 - 02843136 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll

2016-01-22 05:06 - 2015-11-22 11:32 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll

2016-01-22 05:06 - 2015-11-22 11:31 - 00470528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll

2016-01-22 05:06 - 2015-11-22 11:31 - 00416768 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll

2016-01-22 05:06 - 2015-11-22 11:28 - 01734656 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll

2016-01-22 05:06 - 2015-11-22 11:28 - 01387008 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll

2016-01-22 05:06 - 2015-11-22 11:28 - 00948224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll

2016-01-22 05:06 - 2015-11-22 11:28 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll

2016-01-22 05:06 - 2015-11-22 11:28 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll

2016-01-22 05:06 - 2015-11-22 11:27 - 03993600 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll

2016-01-22 05:06 - 2015-11-22 11:27 - 00241664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll

2016-01-22 05:06 - 2015-11-22 11:26 - 03355136 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll

2016-01-22 05:06 - 2015-11-22 11:26 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll

2016-01-22 05:06 - 2015-11-22 11:26 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll

2016-01-22 05:06 - 2015-11-22 11:26 - 00421888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll

2016-01-22 05:06 - 2015-11-22 11:24 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll

2016-01-22 05:06 - 2015-11-22 11:20 - 01860096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll

2016-01-22 05:06 - 2015-11-22 11:18 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll

2016-01-22 05:06 - 2015-11-22 11:18 - 00697856 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll

2016-01-22 05:06 - 2015-11-22 11:18 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll

2016-01-22 05:06 - 2015-11-22 11:17 - 02680320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll

2016-01-22 05:06 - 2015-11-22 11:17 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll

2016-01-22 05:06 - 2015-11-22 11:11 - 00517632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll

2016-01-22 05:06 - 2015-11-21 07:44 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-AppModelExecEvents.dll

2016-01-22 05:06 - 2015-11-21 07:29 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll

2016-01-22 05:06 - 2015-11-21 07:07 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll

2016-01-22 05:06 - 2015-11-13 08:55 - 00035680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys

2016-01-22 05:06 - 2015-11-13 08:51 - 00698208 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll

2016-01-22 05:06 - 2015-11-13 08:51 - 00523616 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe

2016-01-22 05:06 - 2015-11-13 08:51 - 00334736 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll

2016-01-22 05:06 - 2015-11-13 08:43 - 00586208 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll

2016-01-22 05:06 - 2015-11-13 08:43 - 00110032 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll

2016-01-22 05:06 - 2015-11-13 08:43 - 00035656 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe

2016-01-22 05:06 - 2015-11-13 08:42 - 00516544 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll

2016-01-22 05:06 - 2015-11-13 08:42 - 00088392 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll

2016-01-22 05:06 - 2015-11-13 08:33 - 00911648 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll

2016-01-22 05:06 - 2015-11-13 08:33 - 00586080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll

2016-01-22 05:06 - 2015-11-13 08:33 - 00092352 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll

2016-01-22 05:06 - 2015-11-13 08:32 - 00296488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll

2016-01-22 05:06 - 2015-11-13 08:21 - 00511320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll

2016-01-22 05:06 - 2015-11-13 08:21 - 00454056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll

2016-01-22 05:06 - 2015-11-13 08:21 - 00073360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll

2016-01-22 05:06 - 2015-11-13 08:21 - 00032040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe

2016-01-22 05:06 - 2015-11-13 08:09 - 00675064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll

2016-01-22 05:06 - 2015-11-13 07:58 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll

2016-01-22 05:06 - 2015-11-13 07:57 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll

2016-01-22 05:06 - 2015-11-13 07:55 - 00450560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll

2016-01-22 05:06 - 2015-11-13 07:53 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv

2016-01-22 05:06 - 2015-11-13 07:49 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll

2016-01-22 05:06 - 2015-11-13 07:39 - 02444288 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll

2016-01-22 05:06 - 2015-11-13 07:30 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll

2016-01-22 05:06 - 2015-11-13 07:27 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv

2016-01-22 05:06 - 2015-11-13 07:19 - 02001408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll

2016-01-22 05:06 - 2015-11-05 14:05 - 00118624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys

2016-01-22 05:06 - 2015-11-05 12:40 - 00630632 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe

2016-01-22 05:06 - 2015-11-05 12:25 - 00578912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys

2016-01-22 05:06 - 2015-11-05 11:41 - 00540752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe

2016-01-22 05:06 - 2015-11-05 11:13 - 00969728 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll

2016-01-22 05:06 - 2015-11-05 11:10 - 00803840 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll

2016-01-22 05:06 - 2015-11-05 10:18 - 00791552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll

2016-01-22 05:06 - 2015-11-05 10:15 - 00647168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll

2016-01-22 05:05 - 2016-01-05 03:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\RMSRoamingSecurity.dll

2016-01-22 05:05 - 2016-01-05 03:52 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll

2016-01-22 05:05 - 2016-01-05 03:51 - 00472576 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll

2016-01-22 05:05 - 2016-01-05 03:51 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll

2016-01-22 05:05 - 2016-01-05 03:49 - 01582080 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe

2016-01-22 05:05 - 2016-01-05 03:49 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll

2016-01-22 05:05 - 2016-01-05 03:42 - 00166912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll

2016-01-22 05:05 - 2016-01-05 03:41 - 01070080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL

2016-01-22 05:05 - 2016-01-05 03:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax

2016-01-22 05:05 - 2015-12-07 06:15 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.XboxLive.ProxyStub.dll

2016-01-22 05:05 - 2015-12-07 06:09 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll

2016-01-22 05:05 - 2015-12-07 06:07 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\wificonnapi.dll

2016-01-22 05:05 - 2015-12-07 06:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundTransferHost.exe

2016-01-22 05:05 - 2015-12-07 06:01 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundTransferHost.exe

2016-01-22 05:05 - 2015-11-24 12:01 - 02756096 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb

2016-01-22 05:05 - 2015-11-24 11:54 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\readingviewresources.dll

2016-01-22 05:05 - 2015-11-24 11:53 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys

2016-01-22 05:05 - 2015-11-24 11:45 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll

2016-01-22 05:05 - 2015-11-24 10:54 - 02756096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb

2016-01-22 05:05 - 2015-11-22 12:00 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll

2016-01-22 05:05 - 2015-11-22 12:00 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll

2016-01-22 05:05 - 2015-11-22 11:57 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll

2016-01-22 05:05 - 2015-11-22 11:57 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCoreRes.dll

2016-01-22 05:05 - 2015-11-22 11:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll

2016-01-22 05:05 - 2015-11-22 11:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll

2016-01-22 05:05 - 2015-11-22 11:56 - 01268736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll

2016-01-22 05:05 - 2015-11-22 11:56 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll

2016-01-22 05:05 - 2015-11-22 11:56 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\ihvrilproxy.dll

2016-01-22 05:05 - 2015-11-22 11:56 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rilproxy.dll

2016-01-22 05:05 - 2015-11-22 11:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll

2016-01-22 05:05 - 2015-11-22 11:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll

2016-01-22 05:05 - 2015-11-22 11:54 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll

2016-01-22 05:05 - 2015-11-22 11:54 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wsplib.dll

2016-01-22 05:05 - 2015-11-22 11:54 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll

2016-01-22 05:05 - 2015-11-22 11:54 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll

2016-01-22 05:05 - 2015-11-22 11:54 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll

2016-01-22 05:05 - 2015-11-22 11:54 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll

2016-01-22 05:05 - 2015-11-22 11:52 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll

2016-01-22 05:05 - 2015-11-22 11:52 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthTokenBrokerExt.dll

2016-01-22 05:05 - 2015-11-22 11:52 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll

2016-01-22 05:05 - 2015-11-22 11:52 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll

2016-01-22 05:05 - 2015-11-22 11:51 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe

2016-01-22 05:05 - 2015-11-22 11:51 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll

2016-01-22 05:05 - 2015-11-22 11:51 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll

2016-01-22 05:05 - 2015-11-22 11:51 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll

2016-01-22 05:05 - 2015-11-22 11:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll

2016-01-22 05:05 - 2015-11-22 11:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll

2016-01-22 05:05 - 2015-11-22 11:48 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll

2016-01-22 05:05 - 2015-11-22 11:45 - 06572032 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll

2016-01-22 05:05 - 2015-11-22 11:45 - 00264192 _____ (Nokia) C:\Windows\system32\NmaDirect.dll

2016-01-22 05:05 - 2015-11-22 11:45 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll

2016-01-22 05:05 - 2015-11-22 11:45 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wwancfg.dll

2016-01-22 05:05 - 2015-11-22 11:45 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCoreRes.dll

2016-01-22 05:05 - 2015-11-22 11:45 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll

2016-01-22 05:05 - 2015-11-22 11:45 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll

2016-01-22 05:05 - 2015-11-22 11:44 - 01268736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll

2016-01-22 05:05 - 2015-11-22 11:44 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll

2016-01-22 05:05 - 2015-11-22 11:42 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll

2016-01-22 05:05 - 2015-11-22 11:42 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll

2016-01-22 05:05 - 2015-11-22 11:42 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll

2016-01-22 05:05 - 2015-11-22 11:41 - 01814528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll

2016-01-22 05:05 - 2015-11-22 11:40 - 01056256 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll

2016-01-22 05:05 - 2015-11-22 11:40 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll

2016-01-22 05:05 - 2015-11-22 11:40 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll

2016-01-22 05:05 - 2015-11-22 11:40 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthTokenBrokerExt.dll

2016-01-22 05:05 - 2015-11-22 11:39 - 01713664 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll

2016-01-22 05:05 - 2015-11-22 11:39 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll

2016-01-22 05:05 - 2015-11-22 11:39 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll

2016-01-22 05:05 - 2015-11-22 11:39 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll

2016-01-22 05:05 - 2015-11-22 11:39 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll

2016-01-22 05:05 - 2015-11-22 11:34 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll

2016-01-22 05:05 - 2015-11-22 11:34 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll

2016-01-22 05:05 - 2015-11-22 11:33 - 00205824 _____ (Nokia) C:\Windows\SysWOW64\NmaDirect.dll

2016-01-22 05:05 - 2015-11-22 11:29 - 00800768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll

2016-01-22 05:05 - 2015-11-22 11:28 - 01443328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRHInproc.dll

2016-01-22 05:05 - 2015-11-22 11:28 - 00784896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll

2016-01-22 05:05 - 2015-11-22 11:28 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinelsa.dll

2016-01-22 05:05 - 2015-11-22 11:27 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll

2016-01-22 05:05 - 2015-11-22 11:27 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll

2016-01-22 05:05 - 2015-11-22 11:24 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputLocaleManager.dll

2016-01-22 05:05 - 2015-11-22 11:24 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll

2016-01-22 05:05 - 2015-11-13 08:07 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll

2016-01-22 05:05 - 2015-11-13 08:06 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll

2016-01-22 05:05 - 2015-11-13 08:05 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll

2016-01-22 05:05 - 2015-11-13 08:05 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll

2016-01-22 05:05 - 2015-11-13 08:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.proxy.dll

2016-01-22 05:05 - 2015-11-13 08:05 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\tetheringconfigsp.dll

2016-01-22 05:05 - 2015-11-13 08:04 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll

2016-01-22 05:05 - 2015-11-13 08:04 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe

2016-01-22 05:05 - 2015-11-13 08:04 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\IcsEntitlementHost.exe

2016-01-22 05:05 - 2015-11-13 08:03 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll

2016-01-22 05:05 - 2015-11-13 08:00 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll

2016-01-22 05:05 - 2015-11-13 07:59 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll

2016-01-22 05:05 - 2015-11-13 07:56 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll

2016-01-22 05:05 - 2015-11-13 07:40 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe

2016-01-22 05:05 - 2015-11-13 07:40 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.proxy.dll

2016-01-22 05:05 - 2015-11-13 07:34 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppCapture.dll

2016-01-22 05:05 - 2015-11-13 07:33 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe

2016-01-22 05:05 - 2015-11-13 07:30 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe

2016-01-22 05:05 - 2015-11-13 07:23 - 00490496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll

2016-01-22 05:05 - 2015-11-05 12:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll

2016-01-22 05:05 - 2015-11-05 12:08 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll

2016-01-22 05:05 - 2015-11-05 12:04 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll

2016-01-22 05:05 - 2015-11-05 12:00 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll

2016-01-22 05:05 - 2015-11-05 11:44 - 00365568 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll

2016-01-22 05:05 - 2015-11-05 11:03 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll

2016-01-22 05:05 - 2015-11-05 11:02 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll

2016-01-22 05:05 - 2015-11-05 10:59 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll

2016-01-22 05:05 - 2015-11-05 10:55 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll

2016-01-22 05:05 - 2015-11-05 10:42 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll

2016-01-22 04:55 - 2016-01-31 21:50 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys

2016-01-22 04:54 - 2016-01-22 04:54 - 00000000 ____D C:\Users\jaakk\Tracing

2016-01-22 04:45 - 2016-01-23 06:21 - 00000000 ____D C:\Users\jaakk\AppData\Local\Mozilla

2016-01-22 04:45 - 2016-01-22 04:45 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Mozilla

2016-01-22 04:44 - 2016-01-22 04:44 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Avira

2016-01-22 04:43 - 2016-01-22 05:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira

2016-01-22 04:43 - 2016-01-22 05:19 - 00000000 ____D C:\ProgramData\Avira

2016-01-22 04:43 - 2016-01-22 05:19 - 00000000 ____D C:\Program Files (x86)\Avira

2016-01-22 04:43 - 2016-01-22 04:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware

2016-01-22 04:43 - 2016-01-22 04:43 - 00000000 ____D C:\ProgramData\Malwarebytes

2016-01-22 04:43 - 2016-01-22 04:43 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware

2016-01-22 04:43 - 2015-12-03 15:24 - 00146696 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys

2016-01-22 04:43 - 2015-12-03 15:24 - 00135880 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys

2016-01-22 04:43 - 2015-12-03 15:24 - 00073032 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys

2016-01-22 04:43 - 2015-12-03 15:24 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys

2016-01-22 04:43 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys

2016-01-22 04:43 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys

2016-01-22 04:43 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys

2016-01-22 04:42 - 2016-01-31 21:56 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Spotify

2016-01-22 04:42 - 2016-01-31 21:53 - 00000000 ____D C:\Users\jaakk\AppData\Local\Spotify

2016-01-22 04:42 - 2016-01-25 15:31 - 00000000 ____D C:\ProgramData\Skype

2016-01-22 04:42 - 2016-01-22 04:59 - 00000000 ____D C:\Users\jaakk\AppData\Local\paint.net

2016-01-22 04:42 - 2016-01-22 04:42 - 00001839 _____ C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk

2016-01-22 04:42 - 2016-01-22 04:42 - 00001119 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk

2016-01-22 04:42 - 2016-01-22 04:42 - 00000000 ____D C:\Users\jaakk\AppData\Local\CEF

2016-01-22 04:42 - 2016-01-22 04:42 - 00000000 ____D C:\Program Files\paint.net

2016-01-22 04:41 - 2016-01-31 21:50 - 00000000 ____D C:\Program Files (x86)\Steam

2016-01-22 04:41 - 2016-01-22 06:59 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Notepad++

2016-01-22 04:41 - 2016-01-22 04:41 - 00001231 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\Program Files\VideoLAN

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\Program Files\7-Zip

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\Program Files (x86)\Notepad++

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service

2016-01-22 04:41 - 2016-01-22 04:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox

2016-01-22 04:23 - 2016-01-23 02:10 - 00000000 ____D C:\Users\jaakk\AppData\Local\NVIDIA Corporation

2016-01-22 04:22 - 2016-01-31 21:50 - 00001034 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2016-01-22 04:22 - 2016-01-31 21:27 - 00001038 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2016-01-22 04:22 - 2016-01-29 04:27 - 00002269 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

2016-01-22 04:22 - 2016-01-22 06:13 - 00000000 ____D C:\Users\jaakk\AppData\Local\Google

2016-01-22 04:22 - 2016-01-22 04:22 - 00004096 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA

2016-01-22 04:22 - 2016-01-22 04:22 - 00003864 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

2016-01-22 04:22 - 2016-01-22 04:22 - 00000000 ____D C:\Program Files (x86)\Google

2016-01-22 04:22 - 2015-12-16 16:19 - 00103216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe

2016-01-22 04:21 - 2015-12-18 10:48 - 12426896 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys

2016-01-22 04:21 - 2015-12-16 18:59 - 42976888 _____ C:\Windows\system32\nvcompiler.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 37608568 _____ C:\Windows\SysWOW64\nvcompiler.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 31098488 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 24923768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 21131424 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 20672376 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 19727624 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 17568432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 17164160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 17123736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 17104016 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 14103608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 03603368 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 03184152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 02560816 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 02214192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 01915512 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436143.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 01564976 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436143.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00938104 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00872056 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00786688 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00784640 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFThevc.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00735024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00681592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00632336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00630592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00601936 _____ C:\Windows\system32\nvmcumd.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00541000 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00445728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00416560 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00378784 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00376440 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00370992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00339760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00316960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00175368 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00153208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00151184 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll

2016-01-22 04:21 - 2015-12-16 18:59 - 00039240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll

2016-01-22 04:21 - 2015-12-16 16:54 - 00523384 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll

2016-01-22 04:21 - 2015-12-16 16:54 - 00075056 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll

2016-01-22 04:19 - 2016-01-31 21:55 - 01383594 _____ C:\Windows\system32\PerfStringBackup.INI

2016-01-22 04:19 - 2016-01-22 04:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation

2016-01-22 04:19 - 2016-01-12 06:41 - 01542600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll

2016-01-22 04:19 - 2016-01-12 06:41 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll

2016-01-22 04:19 - 2016-01-12 06:40 - 01860120 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll

2016-01-22 04:19 - 2016-01-12 06:40 - 01756608 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll

2016-01-22 04:19 - 2016-01-12 06:40 - 00112032 _____ C:\Windows\system32\NvRtmpStreamer64.dll

2016-01-22 04:19 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll

2016-01-22 04:19 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll

2016-01-22 04:19 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll

2016-01-22 04:19 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll

2016-01-22 04:19 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll

2016-01-22 04:19 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll

2016-01-22 04:18 - 2016-01-26 11:03 - 00000000 ____D C:\ProgramData\Package Cache

2016-01-22 04:18 - 2016-01-22 04:18 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Macromedia

2016-01-22 04:18 - 2015-12-18 08:11 - 00047760 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys

2016-01-22 04:18 - 2015-12-18 08:10 - 00099472 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll

2016-01-22 04:18 - 2015-12-18 08:10 - 00090768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll

2016-01-22 04:17 - 2016-01-22 21:52 - 00000000 ____D C:\Users\jaakk\AppData\Local\NVIDIA

2016-01-22 04:17 - 2016-01-22 08:27 - 00000000 ___RD C:\Users\jaakk\OneDrive

2016-01-22 04:17 - 2016-01-22 04:17 - 00002387 _____ C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk

2016-01-22 04:17 - 2016-01-22 04:17 - 00000000 ____D C:\Users\jaakk\AppData\Local\MicrosoftEdge

2016-01-22 04:17 - 2016-01-22 04:17 - 00000000 ____D C:\Users\jaakk\AppData\Local\Comms

2016-01-22 04:17 - 2016-01-22 04:17 - 00000000 ____D C:\Users\jaakk\AppData\Local\ActiveSync

2016-01-22 04:17 - 2016-01-22 04:17 - 00000000 ____D C:\ProgramData\Microsoft OneDrive

2016-01-22 04:16 - 2016-01-31 21:49 - 00000000 ____D C:\ProgramData\NVIDIA

2016-01-22 04:15 - 2016-01-31 15:34 - 00000000 ____D C:\Users\jaakk\AppData\Local\Packages

2016-01-22 04:15 - 2016-01-29 05:31 - 00000000 __RHD C:\Users\Public\AccountPictures

2016-01-22 04:15 - 2016-01-22 04:22 - 00000000 ____D C:\ProgramData\NVIDIA Corporation

2016-01-22 04:15 - 2016-01-22 04:22 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation

2016-01-22 04:15 - 2016-01-22 04:19 - 00000000 ____D C:\Program Files\NVIDIA Corporation

2016-01-22 04:15 - 2016-01-22 04:15 - 00000000 ____D C:\Users\jaakk\AppData\Roaming\Adobe

2016-01-22 04:15 - 2016-01-22 04:15 - 00000000 ____D C:\Users\jaakk\AppData\Local\VirtualStore

2016-01-22 04:15 - 2016-01-22 04:15 - 00000000 ____D C:\Users\jaakk\AppData\Local\TileDataLayer

2016-01-22 04:15 - 2016-01-22 04:15 - 00000000 ____D C:\Users\jaakk\AppData\Local\Publishers

2016-01-22 04:15 - 2015-12-16 16:54 - 06359672 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll

2016-01-22 04:15 - 2015-12-16 16:54 - 02985264 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll

2016-01-22 04:15 - 2015-12-16 16:54 - 02554488 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll

2016-01-22 04:15 - 2015-12-16 16:54 - 01256240 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe

2016-01-22 04:15 - 2015-12-16 16:54 - 00385328 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll

2016-01-22 04:15 - 2015-12-16 16:54 - 00062768 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll

2016-01-22 04:15 - 2015-12-16 16:49 - 06090019 _____ C:\Windows\system32\nvcoproc.bin

2016-01-22 04:15 - 2015-07-13 20:45 - 00112784 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll

2016-01-22 04:15 - 2015-07-13 20:45 - 00105104 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll

2016-01-22 04:13 - 2016-01-31 21:50 - 00000000 ____D C:\Users\jaakk

2016-01-22 04:13 - 2016-01-22 04:13 - 00000020 ___SH C:\Users\jaakk\ntuser.ini

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\Verkkoympäristö

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\Tulostinympäristö

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\Omat tiedostot

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\Mallit

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\Käynnistä-valikko

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\Documents\Omat videotiedostot

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\Documents\Omat musiikkitiedostot

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\Documents\Omat kuvatiedostot

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 _SHDL C:\Users\jaakk\AppData\Roaming\Microsoft\Windows\Start Menu\Ohjelmat

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 ____D C:\Program Files\ASUS

2016-01-22 04:13 - 2016-01-22 04:13 - 00000000 ____D C:\Program Files (x86)\ASUS

2016-01-22 04:13 - 2013-07-04 03:32 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll

2016-01-22 04:13 - 2013-07-04 03:32 - 00015232 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys

2016-01-22 04:11 - 2016-01-22 04:11 - 00000000 ____D C:\ProgramData\USOShared

2016-01-22 04:10 - 2016-01-31 21:49 - 00000006 ____H C:\Windows\Tasks\SA.DAT

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Public\Documents\Omat videotiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Public\Documents\Omat musiikkitiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Public\Documents\Omat kuvatiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\Verkkoympäristö

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\Tulostinympäristö

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\Omat tiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\Mallit

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\Käynnistä-valikko

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\Documents\Omat videotiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\Documents\Omat musiikkitiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\Documents\Omat kuvatiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Ohjelmat

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default User\Documents\Omat videotiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default User\Documents\Omat musiikkitiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default User\Documents\Omat kuvatiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Ohjelmat

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\ProgramData\Työpöytä

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\ProgramData\Tiedostot

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Ohjelmat

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\ProgramData\Mallit

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\ProgramData\Käynnistä-valikko

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Program Files\Common Files\Järjestelmä

2016-01-22 04:10 - 2016-01-22 04:10 - 00000000 _SHDL C:\Documents and Settings

2016-01-22 04:10 - 2015-10-30 09:17 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll

2016-01-22 04:09 - 2016-01-31 21:49 - 00351896 _____ C:\Windows\system32\FNTCACHE.DAT

2016-01-22 04:09 - 2016-01-22 04:10 - 00000000 ____D C:\Windows\Panther

2016-01-22 04:09 - 2016-01-22 04:09 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf

2016-01-19 22:50 - 2016-01-19 22:50 - 00202032 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverW8x64.sys

2016-01-15 23:03 - 2016-01-15 23:03 - 01804680 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll

2016-01-15 23:03 - 2016-01-15 23:03 - 00051392 _____ (SteelSeries ApS) C:\Windows\system32\Drivers\sshid.sys

 

==================== One Month Modified files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2016-01-31 21:55 - 2015-10-30 20:02 - 00435198 _____ C:\Windows\system32\perfh00B.dat

2016-01-31 21:55 - 2015-10-30 20:02 - 00081386 _____ C:\Windows\system32\perfc00B.dat

2016-01-31 21:55 - 2015-10-30 09:21 - 00000000 ____D C:\Windows\INF

2016-01-31 21:49 - 2015-10-30 08:28 - 00262144 ___SH C:\Windows\system32\config\BBI

2016-01-31 00:18 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\AppReadiness

2016-01-29 08:22 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\rescache

2016-01-29 07:53 - 2015-10-30 09:11 - 00000000 ____D C:\Windows\CbsTemp

2016-01-29 05:37 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps

2016-01-28 23:02 - 2015-10-30 09:24 - 00000000 ___SD C:\Windows\system32\F12

2016-01-28 23:02 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\PurchaseDialog

2016-01-28 23:02 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\ImmersiveControlPanel

2016-01-28 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\WinBioPlugIns

2016-01-28 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\oobe

2016-01-28 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\appraiser

2016-01-28 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\bcastdvr

2016-01-24 07:00 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\NDF

2016-01-23 04:44 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\appcompat

2016-01-23 03:40 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\SysWOW64\MUI

2016-01-23 03:40 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\MUI

2016-01-23 01:58 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft

2016-01-23 01:58 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared

2016-01-22 05:17 - 2015-10-30 08:28 - 00000000 ____D C:\Windows\SysWOW64\Dism

2016-01-22 05:16 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\SystemResetPlatform

2016-01-22 05:16 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\Provisioning

2016-01-22 05:16 - 2015-10-30 08:28 - 00000000 ____D C:\Windows\system32\Dism

2016-01-22 04:24 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\DevicesFlow

2016-01-22 04:15 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\PrintDialog

2016-01-22 04:15 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\MiracastView

2016-01-22 04:15 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\Help

2016-01-22 04:13 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\WinBioDatabase

2016-01-22 04:11 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\USOPrivate

2016-01-22 04:10 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\spool

2016-01-22 04:10 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\FxsTmp

2016-01-22 04:10 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows NT

2016-01-22 04:10 - 2015-10-30 08:28 - 00032768 ___SH C:\Windows\system32\config\ELAM

2016-01-22 04:10 - 2015-10-30 08:28 - 00000000 ____D C:\Windows\system32\Sysprep

2016-01-22 04:09 - 2015-10-30 20:08 - 00000000 ____D C:\Windows\ServiceProfiles

2016-01-22 04:09 - 2015-10-30 09:24 - 00028672 _____ C:\Windows\system32\config\BCD-Template

2016-01-22 04:09 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\LiveKernelReports

2016-01-03 03:40 - 2015-10-30 09:26 - 00826872 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe

2016-01-03 03:40 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

 

==================== Files in the root of some directories =======

 

2016-01-27 16:45 - 2016-01-27 16:45 - 0000714 _____ () C:\Users\jaakk\AppData\Local\recently-used.xbel

 

Some files in TEMP:

====================

C:\Users\jaakk\AppData\Local\Temp\avgnt.exe

C:\Users\jaakk\AppData\Local\Temp\nvStInst.exe

C:\Users\jaakk\AppData\Local\Temp\sonarinst.exe

C:\Users\jaakk\AppData\Local\Temp\sqlite3.dll

C:\Users\jaakk\AppData\Local\Temp\x2blapi.dll

C:\Users\jaakk\AppData\Local\Temp\xmlUpdater.exe

 

 

==================== Bamital & volsnap =================

 

(There is no automatic fix for files that do not pass verification.)

 

C:\Windows\system32\winlogon.exe => File is digitally signed

C:\Windows\system32\wininit.exe => File is digitally signed

C:\Windows\explorer.exe => File is digitally signed

C:\Windows\SysWOW64\explorer.exe => File is digitally signed

C:\Windows\system32\svchost.exe => File is digitally signed

C:\Windows\SysWOW64\svchost.exe => File is digitally signed

C:\Windows\system32\services.exe => File is digitally signed

C:\Windows\system32\User32.dll => File is digitally signed

C:\Windows\SysWOW64\User32.dll => File is digitally signed

C:\Windows\system32\userinit.exe => File is digitally signed

C:\Windows\SysWOW64\userinit.exe => File is digitally signed

C:\Windows\system32\rpcss.dll => File is digitally signed

C:\Windows\system32\dnsapi.dll => File is digitally signed

C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed

C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

 

 

LastRegBack: 2016-01-22 04:09

 

==================== End of FRST.txt ============================

Addition.txt

Link to post
Share on other sites

Woah, all of that took 4 posts to fit huh.

 

Malwarebytes scan and AdwCleaner report are on the first reply. The Farbar Recovery Scan Tool is in 3 parts. I made sure that everything got included. The requested Additions.txt file is on the last Farbar Recovery Scan Tool reply.

 

Something to note, my Malwarebytes is in Finnish. I assume that you can figure it out, but if not I can act  as an translator if the need be!

 

I ran all of these tools as the administrator.

 

Thanks Kevin!

Link to post
Share on other sites

Those logs are clean, no obvious malware or infection.. Run one more scan:

 

grayhitmanpro_16px.png Scan with HitmanPro

In any case don't remove on your own anything that Hitman Pro detects!
This scanner, as it is a really good for checking, has been known for deleting files instead of curing them, which in some cases may render the machine unbootable.
Any removals will be done manually after careful analysis of the scan results!

Please download HitmanPro by SurfRight and save it to your desktop.
Temporary disable your AntiVirus and AntiSpyware protection - instructions here. <<<--- 32 bit version

Please download HitmanPro by SurfRight and save it to your desktop.
Temporary disable your AntiVirus and AntiSpyware protection - instructions here.<<<--- 64 bit version


  • Right-click on grayhitmanpro_16px.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
  • If the program won't run please run it while holding down the left CTRL key until it's loaded!
  • Click on the Next button. You must agree with the terms of EULA (if asked).
  • Check the box beside No, I only want to perform a one-time scan to check this computer.
  • Click on the Next button.
  • The program will start to scan the computer. It would only take several minutes.
  • When the scan is done click on drop-down menu of the found entries (if any) and choose - Apply to all => Ignore.
  • If there isn't a dropdown menu when the scan is done then please don't delete anything and close HitmanPro!
    Navigate to C:\ProgramData\HitmanPro\Logs, open the report and include it it your next reply.
  • Click on the Next button.
  • Click on the Save Log button.
  • Save that file to your desktop.



Please include that logfile in your next reply.

Don't forget to re-enable your security!
 

Thank you,

 

Kevin....

Link to post
Share on other sites

The Hitman tool wont work  without internet connection. If will try to connect to the internet for 5 minutes, then It will give aborting scan message since it failed to connect. I still did the scan as instructed, disabling my defenses for about 1 minute. I did malwarebytes scan after re enabling just to be sure.

 

Looks like bunch of cookies, some from "less reputable" sites  :blush:. I actually kinda screwed up here. After doing the first Hitman scan, I did another one just to see if it was the same. However, I forgot to press "Ignore all" this time, so It deleted everything from the list, except for the first object which is the FRST tool. Since it was only cookies, and my system isn't bricked, I guess no hard done (?)

 

Anyway, the log bellow is just as instructed:

 

---

 

HitmanPro 3.7.12.253www.hitmanpro.com    Computer name . . . . : JAAKKO   Windows . . . . . . . : 10.0.0.10586.X64/4   User name . . . . . . : JAAKKO\jaakk   UAC . . . . . . . . . : Enabled   License . . . . . . . : Free    Scan date . . . . . . : 2016-01-31 23:03:50   Scan mode . . . . . . : Normal   Scan duration . . . . : 1m 1s   Disk access mode  . . : Direct disk access (SRB)   Cloud . . . . . . . . : Internet   Reboot  . . . . . . . : No    Threats . . . . . . . : 0   Traces  . . . . . . . : 267    Objects scanned . . . : 1 533 215   Files scanned . . . . : 46 021   Remnants scanned  . . : 349 329 files / 1 137 865 keys Suspicious files ____________________________________________________________    C:\Users\jaakk\Desktop\FRST64.exe      Size . . . . . . . : 2 370 560 bytes      Age  . . . . . . . : 0.0 days (2016-01-31 21:54:22)      Entropy  . . . . . : 7.6      SHA-256  . . . . . : 329DE119D3FD38387AA31C04A3C649587B579C89467D26DA5BA601346994BB87      Needs elevation  . : Yes      Fuzzy  . . . . . . : 24.0         Program has no publisher information but prompts the user for permission elevation.         Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.         Authors name is missing in version info. This is not common to most programs.         Version control is missing. This file is probably created by an individual. This is not typical for most programs.         Time indicates that the file appeared recently on this computer.  Cookies _____________________________________________________________________    C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:1034291028.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:1369090036.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:146312396.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:222980912.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:2426010203.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:2505110097.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:2523150420.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:254a.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:262855726.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:279547401.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:2973200665.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:3135740712.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:3249650184.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:335305610.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:526710254.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:554924358.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:594670329.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:597960210.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:631700291.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:653710485.log.optimizely.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:abmr.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.360yield.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adadvisor.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adaptv.advertising.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adbrn.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:addthis.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adform.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adformdsp.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adingo.jp   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:admized.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adnxs.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.linkedin.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.servebom.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adsby.bidtheatre.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adsrvr.org   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adsymptotic.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtech.de   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtechjp.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtechus.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:advertising.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:adzerk.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:agkn.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:atdmt.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:atlanticmedia.122.2o7.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:audienceiq.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:bidr.io   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:bidswitch.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:bizrate.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:bluekai.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:canwestglobal.sc.omtrdc.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:casalemedia.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:cdn.taboola.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:chango.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:collective-media.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:contextweb.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:crwdcntrl.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:ctnsnet.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:cxense.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:de17a.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:demandmedia.trc.taboola.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:demdex.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:dixonsretail.d3.sc.omtrdc.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:dmtracker.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:dmtry.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:domdex.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:dotomi.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:dpclk.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:dpm.demdex.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:dynamicyield.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:emjcd.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:erne.co   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:esportsexpress.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:everesttech.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:fi.sitestat.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:foxnews.demdex.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:genieessp.jp   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:go.flx1.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:googleadservices.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:gssprt.jp   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:gwallet.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:hearstmagazines.112.2o7.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:ibillboard.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:imrworldwide.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:in.getclicky.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:krxd.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:legolas-media.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:lenovo.demdex.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:lijit.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:m.webtrends.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:m6r.eu   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:match.rundsp.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:mathtag.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:metrigo.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:microsoftsto.112.2o7.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:microsoftwindows.112.2o7.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:ml314.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:mswmwpapolloprod.122.2o7.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:mxptint.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:nexac.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:openx.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:outbrain.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:owneriq.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:ox-d.tmn.servedbyopenx.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:pagefair.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:paypal.d1.sc.omtrdc.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:pcworldcommunication.d2.sc.omtrdc.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:pixel.rubiconproject.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:po.st   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:postmedia.demdex.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:pswec.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:pubmatic.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:revsci.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:rfihub.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:rlcdn.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:ru4.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:rubiconproject.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:scorecardresearch.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:server.adformdsp.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:simpli.fi   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:sitescout.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:skimresources.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:stat.iltalehti.fi   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:statcounter.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:stats.paypal.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:statse.webtrendslive.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:taboola.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:tapad.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:tidaltv.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.adform.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.rtb-media.me   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:tradedoubler.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:trc.taboola.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:tubemogul.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:turn.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:univide.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:virool.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:visualdna.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:w55c.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:warnerbros.112.2o7.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:wileypublishing.112.2o7.net   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:wtp101.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.googleadservices.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.pornhub.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.wtp101.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:xiti.com   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:yadro.ru   C:\Users\jaakk\AppData\Local\Google\Chrome\User Data\Default\Cookies:yle01.sitestat.com   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\0NYK5OKM.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\15H0TF8Z.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\1K0TSWQN.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\1LI15XBB.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\1Z0QD6WT.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\2OTWWR1C.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\2YV59WMJ.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\372GA12E.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\4MA5FADR.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\5E889L90.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\5PZWXV7D.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\69KNIR18.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\69OXE2D3.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\6EI91Q3S.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\7GLBXMZF.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\7K2Z43LY.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\7MUMKST0.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\94GRR7KW.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\A4E79BF2.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\CR270Y1E.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\CR9RC1U1.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\E0G1UPE0.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\H6VD2F9G.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\H87J0MHF.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\HKOF1DT5.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\ICOBJYP9.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\IWYTMO1A.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\JCCFWLW0.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\JKDN2B2N.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\JYIHM0P3.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\KXAPI6CH.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\LF317M93.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\LWK10OYR.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\N883WAO7.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\NASF0OIO.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\NIC2MTNM.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\NKWUAG6M.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\ORUWRPUH.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\OTB03RP9.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\P7B36SFC.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\PJFMKFJ2.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\PYUWBIUD.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\R1SJT20F.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\R274RCTO.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\RTVQNRPR.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\SCHXJBF8.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\SJMVNX2J.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\SKAXEJK0.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\SKK9EOI6.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\SY3KF374.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\T7P7268Y.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\T80QAQJ4.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\T8XVD64D.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\TB4XBKJ1.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\TCGY8MSG.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\TT49ITE4.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\U3VO0RQT.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\UJCDUG2U.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\V05U4G66.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\WSLO0TBO.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\X17GOTKN.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\XC15OVFH.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\XHVKTCZU.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\YPUPUQX0.txt   C:\Users\jaakk\AppData\Local\Microsoft\Windows\INetCookies\Low\ZUYAP6WF.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\12A2V5Z0.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\1WE9NBZ4.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\25VR8KSA.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\3GYT5GWE.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\3YXMJ6ZN.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\490CCSKY.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\6RWDYSLP.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\71Q52JAE.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\BKSABTE7.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\DGWYLHB5.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\GKS6EQUU.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\HHW332K8.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\J8H5X84M.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\JFQLB0J2.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\KZWUPEOU.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\LP3JWGM4.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\OFYH7Z20.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\OVHMDIWA.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\PS2RVA38.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\QFV6CQ09.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\SFS7AT5H.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\XFFF6WMI.txt   C:\Users\jaakk\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!002\MicrosoftEdge\Cookies\DU6XO7XB.txt   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:4tube.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:dildoxxxtube.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:doubleclick.net   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:flirt.sunporno.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:gotporn.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:hidefporn.ws   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:indexxx.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:justporno.tv   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:porn-star.pics   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:pornbus.org   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:pornhub.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:pornicom.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:pornoid.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:porntube.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:realitykings.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:sunporno.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:teenpornb.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:track.boltads.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:upornia.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:upornia.org   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.4tube.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.eporner.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.gotporn.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.pornhub.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.pornoid.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.porntube.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.realitykings.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.sunporno.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:www.youporn.com   C:\Users\jaakk\AppData\Roaming\Mozilla\Firefox\Profiles\2olqdun8.default\cookies.sqlite:youporn.com  

 

Link to post
Share on other sites

I did not believe you had anything wrong with your system, the logs from Malwarebytes and FRST were clean. An associate here at Malwarebytes has given me a link that will show a very strong possibility for the issue at hand, have a read and give me your thoughts....

 

https://blog.malwarebytes.org/online-security/2013/05/oh-the-sites-you-will-never-see/

 

Thank you,

 

Kevin.....

Link to post
Share on other sites

It would seem that what you ask is exactly what is happening, svchost is a system process that hosts multiple Windows services in the Windows NT  family of operating systems.

If you look in TaskManager you will see multiple entries of Svchost.exe, each entry can host either one or multiple services. Services running in Svchost are active as Dynamically-Linked Libraries or you will see then listed as .dll`s

If you look in your Firewall entries there will be several services that are classed as "listening" I guess that is the Svchost connections that are being "sniffed" by certain ad networks, the listening services can be connected with the sniffer.... Malwarebytes does an excellent job of blocking such connections.....

 

I guess we can clean up tools used...

 

Download "Delfix by Xplode" and save it to your desktop.

Or use the following if first link is down:

"Delfix link mirror"

If your security program alerts to Delfix either, accept the alert or turn your security off.

Double Click to start the program. If you are using Vista or higher, please right-click and choose run as administrator

Make Sure the following items are checked:



  •    
  • Remove disinfection tools



Now click on "Run" and wait patiently until the tool has completed.

The tool will create a log when it has completed. We don't need you to post this.

Any remnant files/logs from tools we have used can be deleted…

 

Next,

 

Read the following links to fully understand PC Security and Best Practices, you may find them useful....

Answers to Common Security Questions and best Practices

Do I need a Registry Cleaner?

Take care and surf safe

Kevin...  busy.gif


 

Link to post
Share on other sites

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.