Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

invis.vbs


  • This topic is locked This topic is locked
2 replies to this topic

#1 Umutk

Umutk

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:10:11 PM

Posted 28 December 2012 - 01:57 AM

using windows 8 64bit



DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16453 BrowserJavaVersion: 10.9.2
Run by userxxx at 10:40:55 on 2012-12-28
#Option Extended Search is enabled.
#Option Whitelisting is disabled.
Microsoft Windows 8 Pro 6.2.9200.0.1252.1.1033.18.3982.2000 [GMT 3:00]
.
AV: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\dwm.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\WUDFHost.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
C:\Windows\system32\WLANExt.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\DptfParticipantProcessorService.exe
C:\Windows\system32\dashost.exe
C:\Windows\system32\DptfPolicyConfigTDPService.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Windows\SysWOW64\irstrtsv.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
C:\Windows\SysWOW64\srvany.exe
C:\Windows\KMService.exe
C:\LN\SUService.exe
C:\LN\nsd.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Windows\system32\taskhostex.exe
C:\Program Files\ASUS\P4G\BatteryLife.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe\LiveComm.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\System32\rundll32.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Windows\system32\igfxpers.exe
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Users\userxxx\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe
C:\Program Files (x86)\ViStart\ViStart.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\ViStart\Plugins\MetroServices.exe
C:\Program Files (x86)\ViStart\Plugins\SearchProvider.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\Program Files\Microsoft Office\Office14\EXCEL.EXE
C:\LN\NLNOTES.EXE
C:\LN\ntaskldr.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://asus13.msn.com
uLocal Page = C:\Windows\System32\blank.htm
uSearch Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
uDefault_Page_URL = hxxp://asus13.msn.com
mStart Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
mLocal Page = C:\Windows\SysWOW64\blank.htm
mSearch Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
mDefault_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
mDefault_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896
uProxyOverride = *.local
uURLSearchHooks: Microsoft Url Search Hook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll
mWinlogon: Shell = explorer.exe
mWinlogon: Userinit = userinit.exe
BHO: IDM integration (IDMIEHlprObj Class): {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
uRun: [AdobeUpdate] wscript "C:\Users\userxxx\AppData\Roaming\Adobe32x64\invis.vbs" "C:\Users\userxxx\AppData\Roaming\Adobe32x64\bat.bat"
uRun: [Facebook Update] "C:\Users\userxxx\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
uRun: [Octoshape Streaming Services] "C:\Users\userxxx\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" -inv:bootrun
uRun: [ViStart] C:\Program Files (x86)\ViStart\ViStart.exe
uRun: [ViUpdater] C:\Program Files (x86)\ViUpdater\ViUpdater.exe
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
uRun: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
uRun: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
uRun: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
uRun: [com.apple.dav.bookmarks.daemon] C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe
mRun: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe /S
mRun: [IBM Lotus Notes Preloader] "C:\LN\nntspreld.exe"
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\StartUp\ASUSVI~1.LNK - C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: ForceActiveDesktopOn = dword:0
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-System: EnableVirtualization = dword:1
mPolicies-System: EnableInstallerDetection = dword:1
mPolicies-System: PromptOnSecureDesktop = dword:0
mPolicies-System: EnableLUA = dword:1
mPolicies-System: EnableSecureUIAPaths = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ValidateAdminCodeSignatures = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: EnableCursorSuppression = dword:1
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: dontdisplaylastusername = dword:0
mPolicies-System: scforceoption = dword:0
mPolicies-System: shutdownwithoutlogon = dword:1
mPolicies-System: undockwithoutlogon = dword:1
mPolicies-System: FilterAdministratorToken = dword:0
IE: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
IE: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
IE: Send to Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
LSP: %SystemRoot%\system32\mswsock.dll
TCP: NameServer = 192.168.0.5 192.168.0.83
TCP: Interfaces\{C16D1873-5782-4942-B64E-ECBDCB5BD9D8} : DHCPNameServer = 192.168.0.5 192.168.0.83
TCP: Interfaces\{C16D1873-5782-4942-B64E-ECBDCB5BD9D8}\3353A27363 : DHCPNameServer = 192.168.0.1
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll
Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll
Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll
Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll
Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll
Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll
Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll
Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll
Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll
Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll
Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - <orphaned>
Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll
Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll
Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
Name-Space Handler: mk\* - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
SecurityProviders: SecurityProviders = credssp.dll
LSA: Authentication Packages = msv1_0
LSA: Notification Packages = scecli
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg pku2u livessp
SubSystems: Windows = basesrv,1 winsrv:UserServerDllInitialization,3 sxssrv,4
mASetup: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\System32\unregmp2.exe /ShowWMP
mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "C:\Program Files (x86)\Windows Mail\WinMail.exe" OCInstallUserConfigOE
mASetup: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\Windows\System32\unregmp2.exe /FirstLogon
mASetup: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\Windows\System32\shell32.dll
x64-mStart Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
x64-mLocal Page = C:\Windows\System32\blank.htm
x64-mSearch Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
x64-mDefault_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
x64-mDefault_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896
x64-mWinlogon: Shell = explorer.exe
x64-mWinlogon: Userinit = C:\Windows\System32\userinit.exe,
x64-BHO: IDM integration (IDMIEHlprObj Class): {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll
x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [DptfPolicyLpmServiceHelper] C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [BTMTrayAgent] rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
x64-Run: [ACMON] C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
x64-Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
x64-mPolicies-Explorer: ForceActiveDesktopOn = dword:0
x64-mPolicies-Explorer: NoActiveDesktopChanges = dword:1
x64-mPolicies-Explorer: NoActiveDesktop = dword:1
x64-mPolicies-System: EnableVirtualization = dword:1
x64-mPolicies-System: EnableInstallerDetection = dword:1
x64-mPolicies-System: PromptOnSecureDesktop = dword:0
x64-mPolicies-System: EnableLUA = dword:1
x64-mPolicies-System: EnableSecureUIAPaths = dword:1
x64-mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
x64-mPolicies-System: ValidateAdminCodeSignatures = dword:0
x64-mPolicies-System: EnableUIADesktopToggle = dword:0
x64-mPolicies-System: EnableCursorSuppression = dword:1
x64-mPolicies-System: ConsentPromptBehaviorUser = dword:3
x64-mPolicies-System: dontdisplaylastusername = dword:0
x64-mPolicies-System: scforceoption = dword:0
x64-mPolicies-System: shutdownwithoutlogon = dword:1
x64-mPolicies-System: undockwithoutlogon = dword:1
x64-mPolicies-System: FilterAdministratorToken = dword:0
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
x64-Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll
x64-Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll
x64-Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll
x64-Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll
x64-Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll
x64-Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll
x64-Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll
x64-Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll
x64-Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll
x64-Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll
x64-Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll
x64-Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll
x64-Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll
x64-Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll
x64-Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll
x64-Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
x64-Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll
x64-Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll
x64-Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll
x64-Name-Space Handler: mk\* - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
x64-mASetup: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\System32\unregmp2.exe /ShowWMP
x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\Windows\System32\regsvr32.exe /s /n /i:/UserInstall C:\Windows\System32\themeui.dll
x64-mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "C:\Program Files (x86)\Windows Mail\WinMail.exe" OCInstallUserConfigOE
x64-mASetup: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\Windows\System32\unregmp2.exe /FirstLogon
x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U C:\Windows\System32\shell32.dll
x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -UserConfig
x64-mASetup: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
x64-CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - C:\Windows\System32\shell32.dll
Hosts: 127.0.0.1 ads.mcafee.com
Hosts: 127.0.0.1 analytics.microsoft.com
Hosts: 127.0.0.1 metrics.bitdefender.com
Hosts: 127.0.0.1 metrics.mcafee.com
Hosts: 127.0.0.1 om.symantec.com
.
Note: multiple HOSTS entries found. Please refer to Attach.txt
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\userxxx\AppData\Roaming\Mozilla\Firefox\Profiles\zeqitulk.default\
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\QuickTime\Plugins\npqtplugin.dll
FF - plugin: C:\Program Files (x86)\QuickTime\Plugins\npqtplugin2.dll
FF - plugin: C:\Program Files (x86)\QuickTime\Plugins\npqtplugin3.dll
FF - plugin: C:\Program Files (x86)\QuickTime\Plugins\npqtplugin4.dll
FF - plugin: C:\Program Files (x86)\QuickTime\Plugins\npqtplugin5.dll
FF - plugin: C:\Program Files (x86)\QuickTime\Plugins\npqtplugin6.dll
FF - plugin: C:\Program Files (x86)\QuickTime\Plugins\npqtplugin7.dll
FF - plugin: C:\Users\userxxx\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
FF - plugin: C:\Users\userxxx\AppData\Roaming\Mozilla\plugins\npoctoshape.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
FF - ExtSQL: 2012-12-03 10:03; {972ce4c6-7e08-4474-a285-3208198ce6fd}; C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - ExtSQL: 2012-12-22 15:06; {b9db16a4-6edc-47ec-a1f4-b86292ed211d}; C:\Users\userxxx\AppData\Roaming\Mozilla\Firefox\Profiles\zeqitulk.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF - ExtSQL: 2012-12-26 11:22; mozilla_cc@internetdownloadmanager.com; C:\Users\userxxx\AppData\Roaming\IDM\idmmzcc5
.
============= SERVICES / DRIVERS ===============
.
R0 ACPI;Microsoft ACPI Driver;C:\Windows\System32\Drivers\acpi.sys [2012-7-26 424688]
R0 CLFS;Common Log (CLFS);C:\Windows\System32\Drivers\clfs.sys [2012-7-26 361200]
R0 CNG;CNG;C:\Windows\System32\Drivers\cng.sys [2012-12-5 562392]
R0 disk;Disk Driver;C:\Windows\System32\Drivers\disk.sys [2012-7-26 102640]
R0 FileInfo;File Information FS MiniFilter;C:\Windows\System32\Drivers\fileinfo.sys [2012-7-26 71920]
R0 FltMgr;FltMgr;C:\Windows\System32\Drivers\fltMgr.sys [2012-7-26 374512]
R0 fvevol;BitLocker Drive Encryption Filter Driver;C:\Windows\System32\Drivers\fvevol.sys [2012-7-26 465136]
R0 iaStorA;iaStorA;C:\Windows\System32\Drivers\iaStorA.sys [2012-7-5 645952]
R0 KSecDD;KSecDD;C:\Windows\System32\Drivers\ksecdd.sys [2012-7-26 100080]
R0 KSecPkg;KSecPkg;C:\Windows\System32\Drivers\ksecpkg.sys [2012-12-5 172264]
R0 mountmgr;Mount Point Manager;C:\Windows\System32\Drivers\mountmgr.sys [2012-7-26 93936]
R0 msisadrv;msisadrv;C:\Windows\System32\Drivers\msisadrv.sys [2012-7-26 17136]
R0 Mup;Mup;C:\Windows\System32\Drivers\mup.sys [2012-7-26 83696]
R0 NDIS;NDIS System Driver;C:\Windows\System32\Drivers\ndis.sys [2012-12-5 1001192]
R0 partmgr;Partition Manager;C:\Windows\System32\Drivers\partmgr.sys [2012-7-26 91888]
R0 pci;PCI Bus Driver;C:\Windows\System32\Drivers\pci.sys [2012-7-26 234224]
R0 pcw;Performance Counters for Windows Driver;C:\Windows\System32\Drivers\pcw.sys [2012-7-26 52464]
R0 rdyboost;ReadyBoost;C:\Windows\System32\Drivers\rdyboost.sys [2012-7-26 217328]
R0 Tcpip;TCP/IP Protocol Driver;C:\Windows\System32\Drivers\tcpip.sys [2012-7-26 2224880]
R0 vdrvroot;Microsoft Virtual Drive Enumerator;C:\Windows\System32\Drivers\vdrvroot.sys [2012-7-26 36080]
R0 volmgr;Volume Manager Driver;C:\Windows\System32\Drivers\volmgr.sys [2012-7-26 83184]
R0 volmgrx;Dynamic Volume Manager;C:\Windows\System32\Drivers\volmgrx.sys [2012-7-26 378608]
R0 volsnap;Storage volumes;C:\Windows\System32\Drivers\volsnap.sys [2012-7-26 332016]
R0 Wdf01000;Kernel Mode Driver Frameworks service;C:\Windows\System32\Drivers\Wdf01000.sys [2012-7-26 785512]
R1 AFD;Ancillary Function Driver for Winsock;C:\Windows\System32\Drivers\afd.sys [2012-12-18 560640]
R1 ATKWMIACPIIO;ATKWMIACPI Driver;C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-9-7 17536]
R1 Beep;Beep;C:\Windows\System32\Drivers\beep.sys [2012-7-26 7680]
R1 CSC;Offline Files Driver;C:\Windows\System32\Drivers\csc.sys [2012-7-26 571392]
R1 Dfsc;DFS Namespace Client Driver;C:\Windows\System32\Drivers\dfsc.sys [2012-7-26 118784]
R1 discache;System Attribute Cache;C:\Windows\System32\Drivers\discache.sys [2012-7-26 50688]
R1 Msfs;Msfs;C:\Windows\System32\Drivers\msfs.sys [2012-7-26 26112]
R1 mssmbios;Microsoft System Management BIOS Driver;C:\Windows\System32\Drivers\mssmbios.sys [2012-7-26 37616]
R1 NetBIOS;NetBIOS Interface;C:\Windows\System32\Drivers\netbios.sys [2012-7-26 46080]
R1 NetBT;NetBT;C:\Windows\System32\Drivers\netbt.sys [2012-7-26 331776]
R1 Npfs;Npfs;C:\Windows\System32\Drivers\npfs.sys [2012-7-26 49152]
R1 nsiproxy;NSI Proxy Service Driver;C:\Windows\System32\Drivers\nsiproxy.sys [2012-7-26 34304]
R1 Null;Null;C:\Windows\System32\Drivers\null.sys [2012-7-26 5632]
R1 Psched;QoS Packet Scheduler;C:\Windows\System32\Drivers\pacer.sys [2012-7-26 145408]
R1 rdbss;Redirected Buffering Sub System;C:\Windows\System32\Drivers\rdbss.sys [2012-7-26 423936]
R1 tdx;NetIO Legacy TDI Support Driver;C:\Windows\System32\Drivers\tdx.sys [2012-7-26 117248]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\Drivers\vwififlt.sys [2012-7-26 64000]
R1 Wanarpv6;Remote Access IPv6 ARP Driver;C:\Windows\System32\Drivers\wanarp.sys [2012-7-26 83456]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-9-23 65192]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service;C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-7-17 731688]
R2 Apple Mobile Device;Apple Mobile Device;C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-8-11 55184]
R2 ASLDRService;ASLDR Service;C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [2012-7-24 105120]
R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-3 15416]
R2 ASUS InstantOn;ASUS InstantOn Service;C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-4-13 277120]
R2 ATKGFNEXSrv;ATKGFNEX Service;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-22 96896]
R2 AudioEndpointBuilder;Windows Audio Endpoint Builder;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R2 Audiosrv;Windows Audio;C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-7-26 30208]
R2 BFE;Base Filtering Engine;C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-7-26 30208]
R2 BITS;Background Intelligent Transfer Service;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor;C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-9-25 1091520]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service;C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-9-25 1112000]
R2 Bonjour Service;Bonjour Service;C:\Program Files\Bonjour\mDNSResponder.exe [2011-8-30 462184]
R2 BTHSSecurityMgr;Intel® Centrino® Wireless Bluetooth® + High Speed Security Service;C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-5-2 135952]
R2 CertPropSvc;Certificate Propagation;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 CryptSvc;Cryptographic Services;C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
R2 DcomLaunch;DCOM Server Process Launcher;C:\Windows\System32\svchost.exe -k DcomLaunch [2012-7-26 30208]
R2 Dhcp;DHCP Client;C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-7-26 30208]
R2 Dnscache;DNS Client;C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
R2 DPS;Diagnostic Policy Service;C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-7-26 30208]
R2 DptfParticipantProcessorService;Intel® Dynamic Platform & Thermal Framework Processor Participant Service Application;C:\Windows\System32\DptfParticipantProcessorService.exe [2012-8-30 29056]
R2 DptfPolicyConfigTDPService;Intel® Dynamic Platform & Thermal Framework Config TDP Service Application;C:\Windows\System32\DptfPolicyConfigTDPService.exe [2012-8-30 30592]
R2 EventLog;Windows Event Log;C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-7-26 30208]
R2 EventSystem;COM+ Event System;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
R2 EvtEng;Intel® PROSet/Wireless Event Log;C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2012-7-18 627504]
R2 FontCache;Windows Font Cache Service;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
R2 gpsvc;Group Policy Client;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 IDMWFP;IDMWFP;C:\Windows\System32\Drivers\idmwfp.sys [2012-12-24 165112]
R2 IKEEXT;IKE and AuthIP IPsec Keying Modules;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-4-21 635104]
R2 Intel® ME Service;Intel® ME Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [2012-9-25 129856]
R2 iphlpsvc;IP Helper;C:\Windows\System32\svchost.exe -k NetSvcs [2012-7-26 30208]
R2 irstrtsv;Intel® Rapid Start Technology Service;C:\Windows\SysWOW64\irstrtsv.exe [2012-9-25 193576]
R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe [2012-9-25 166720]
R2 KMService;KMService;C:\Windows\System32\srvany.exe --> C:\Windows\System32\srvany.exe [?]
R2 LanmanServer;Server;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 LanmanWorkstation;Workstation;C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver;C:\Windows\System32\Drivers\lltdio.sys [2012-7-26 60416]
R2 lmhosts;TCP/IP NetBIOS Helper;C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-7-26 30208]
R2 LMS;Intel® Management and Security Application Local Management Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [2012-9-25 277824]
R2 LNSUSvc;Lotus Notes Smart Upgrade Service;C:\LN\SUService.exe [2011-9-16 189832]
R2 Lotus Notes Diagnostics;Lotus Notes Diagnostics;C:\LN\nsd.exe -svcinvoke -ini "C:\LN\notes.ini" --> C:\LN\nsd.exe -svcinvoke -ini C:\LN\notes.ini [?]
R2 luafv;UAC File Virtualization;C:\Windows\System32\Drivers\luafv.sys [2012-7-26 134144]
R2 MMCSS;Multimedia Class Scheduler;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 MpsSvc;Windows Firewall;C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-7-26 30208]
R2 NativeWifiP;NativeWiFi Filter;C:\Windows\System32\Drivers\nwifi.sys [2012-7-26 427520]
R2 Netlogon;Netlogon;C:\Windows\System32\lsass.exe [2012-7-26 35840]
R2 NlaSvc;Network Location Awareness;C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
R2 nsi;Network Store Interface Service;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
R2 PcaSvc;Program Compatibility Assistant Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R2 PEAUTH;PEAUTH;C:\Windows\System32\Drivers\PEAuth.sys [2012-7-26 804864]
R2 Power;Power;C:\Windows\System32\svchost.exe -k DcomLaunch [2012-7-26 30208]
R2 ProfSvc;User Profile Service;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 RegSrvc;Intel® PROSet/Wireless Registry Service;C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2012-7-18 149296]
R2 RpcEptMapper;RPC Endpoint Mapper;C:\Windows\System32\svchost.exe -k RPCSS [2012-7-26 30208]
R2 RpcSs;Remote Procedure Call (RPC);C:\Windows\System32\svchost.exe -k rpcss [2012-7-26 30208]
R2 rspndr;Link-Layer Topology Discovery Responder;C:\Windows\System32\Drivers\rspndr.sys [2012-7-26 78848]
R2 SamSs;Security Accounts Manager;C:\Windows\System32\lsass.exe [2012-7-26 35840]
R2 Schedule;Task Scheduler;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 secdrv;Security Driver;C:\Windows\System32\Drivers\secdrv.sys [2012-7-26 23040]
R2 SENS;System Event Notification Service;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 ShellHWDetection;Shell Hardware Detection;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 Spooler;Print Spooler;C:\Windows\System32\spoolsv.exe [2012-7-26 769024]
R2 stisvc;Windows Image Acquisition (WIA);C:\Windows\System32\svchost.exe -k imgsvc [2012-7-26 30208]
R2 SysMain;Superfetch;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R2 tcpipreg;TCP/IP Registry Compatibility;C:\Windows\System32\Drivers\tcpipreg.sys [2012-7-26 45056]
R2 TeamViewer8;TeamViewer 8;C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2012-12-5 3463080]
R2 Themes;Themes;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 TrkWks;Distributed Link Tracking Client;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2012-9-25 365376]
R2 WinDefend;Windows Defender Service;C:\Program Files\Windows Defender\MsMpEng.exe [2012-7-26 15440]
R2 Winmgmt;Windows Management Instrumentation;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R2 WlanSvc;WLAN AutoConfig;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R2 wscsvc;Security Center;C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-7-26 30208]
R2 WSearch;Windows Search;C:\Windows\System32\SearchIndexer.exe [2012-12-5 816128]
R2 ZeroConfigService;Intel® PROSet/Wireless Zero Configuration Service;C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2012-7-18 2699568]
R3 acpials;ALS Sensor Filter;C:\Windows\System32\Drivers\acpials.sys [2012-7-26 9728]
R3 AeLookupSvc;Application Experience;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R3 AiCharger;ASUS Charger Driver;C:\Windows\System32\Drivers\AiCharger.sys [2012-7-25 17152]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter;C:\Windows\System32\Drivers\AmpPal.sys [2012-7-17 162344]
R3 Appinfo;Application Information;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R3 AsyncMac;RAS Asynchronous Media Driver;C:\Windows\System32\Drivers\asyncmac.sys [2012-7-26 26624]
R3 ATP;ASUS PS/2 Port Input Device;C:\Windows\System32\Drivers\AsusTP.sys [2012-10-31 61824]
R3 bowser;Browser Support Driver;C:\Windows\System32\Drivers\bowser.sys [2012-7-26 101888]
R3 Browser;Computer Browser;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
R3 BthEnum;Bluetooth Enumerator Service;C:\Windows\System32\Drivers\bthenum.sys [2012-12-18 51712]
R3 BthLEEnum;Bluetooth Low Energy Driver;C:\Windows\System32\Drivers\BthLEEnum.sys [2012-7-26 202752]
R3 BthPan;Bluetooth Device (Personal Area Network);C:\Windows\System32\Drivers\bthpan.sys [2012-7-26 119808]
R3 bthserv;Bluetooth Support Service;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
R3 BTHUSB;Bluetooth Radio USB Driver;C:\Windows\System32\Drivers\BTHUSB.SYS [2012-12-18 74752]
R3 btmaux;Intel Bluetooth Auxiliary Service;C:\Windows\System32\Drivers\btmaux.sys [2012-9-25 110592]
R3 btmhsf;btmhsf;C:\Windows\System32\Drivers\btmhsf.sys [2012-9-25 825344]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver;C:\Windows\System32\Drivers\CmBatt.sys [2012-7-26 25600]
R3 CompositeBus;Composite Bus Enumerator Driver;C:\Windows\System32\Drivers\CompositeBus.sys [2012-7-26 36352]
R3 DptfDevDram;DptfDevDram;C:\Windows\System32\Drivers\DptfDevDram.sys [2012-8-30 107328]
R3 DptfDevFan;DptfDevFan;C:\Windows\System32\Drivers\DptfDevFan.sys [2012-8-30 42816]
R3 DptfDevGen;DptfDevGen;C:\Windows\System32\Drivers\DptfDevGen.sys [2012-8-30 64832]
R3 DptfDevPch;DptfDevPch;C:\Windows\System32\Drivers\DptfDevPch.sys [2012-8-30 96064]
R3 DptfDevProc;DptfDevProc;C:\Windows\System32\Drivers\DptfDevProc.sys [2012-8-30 228672]
R3 DptfManager;DptfManager;C:\Windows\System32\Drivers\DptfManager.sys [2012-8-30 361792]
R3 DXGKrnl;LDDM Graphics Subsystem;C:\Windows\System32\Drivers\dxgkrnl.sys [2012-7-26 1448688]
R3 exfat;exFAT File System Driver;C:\Windows\System32\Drivers\exfat.sys [2012-7-26 194560]
R3 fastfat;FAT12/16/32 File System Driver;C:\Windows\System32\Drivers\fastfat.sys [2012-7-26 210672]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio;C:\Windows\System32\Drivers\hdaudbus.sys [2012-7-26 71168]
R3 hidserv;Human Interface Device Access;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R3 HIDSwitch;ASUS Wireless Radio Control;C:\Windows\System32\Drivers\AsHIDSwitch64.sys [2012-8-30 21152]
R3 HTTP;HTTP Service;C:\Windows\System32\Drivers\http.sys [2012-12-18 859136]
R3 i8042prt;PS/2 Keyboard and Mouse Port Driver;C:\Windows\System32\Drivers\i8042prt.sys [2012-7-26 112640]
R3 iBtFltCoex;iBtFltCoex;C:\Windows\System32\Drivers\iBtFltCoex.sys [2012-9-25 55848]
R3 igfx;igfx;C:\Windows\System32\Drivers\igdkmd64.sys [2012-8-30 8987456]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM);C:\Windows\System32\Drivers\RTKVHD64.sys [2012-9-25 4106256]
R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\Drivers\IntcDAud.sys [2012-8-30 342528]
R3 intelppm;Intel Processor Driver;C:\Windows\System32\Drivers\intelppm.sys [2012-12-18 89088]
R3 iPod Service;iPod Service;C:\Program Files\iPod\bin\iPodService.exe [2012-11-29 640912]
R3 irstrtdv;Intel® Rapid Start Technology Driver;C:\Windows\System32\Drivers\irstrtdv.sys [2012-9-25 43800]
R3 iwdbus;IWD Bus Enumerator;C:\Windows\System32\Drivers\iwdbus.sys [2012-8-10 25568]
R3 kbdclass;Keyboard Class Driver;C:\Windows\System32\Drivers\kbdclass.sys [2012-7-26 48368]
R3 kbfiltr;Keyboard Filter;C:\Windows\System32\Drivers\kbfiltr.sys [2012-8-30 14992]
R3 ksthunk;Kernel Streaming Thunks;C:\Windows\System32\Drivers\ksthunk.sys [2012-7-26 21376]
R3 MEIx64;Intel® Management Engine Interface ;C:\Windows\System32\Drivers\HECIx64.sys [2012-9-25 62784]
R3 monitor;Microsoft Monitor Class Function Driver Service;C:\Windows\System32\Drivers\monitor.sys [2012-7-26 30720]
R3 mouclass;Mouse Class Driver;C:\Windows\System32\Drivers\mouclass.sys [2012-7-26 45808]
R3 mpsdrv;Windows Firewall Authorization Driver;C:\Windows\System32\Drivers\mpsdrv.sys [2012-12-5 74752]
R3 mrxsmb;SMB MiniRedirector Wrapper and Engine;C:\Windows\System32\Drivers\mrxsmb.sys [2012-12-18 366080]
R3 mrxsmb10;SMB 1.x MiniRedirector;C:\Windows\System32\Drivers\mrxsmb10.sys [2012-7-26 279552]
R3 mrxsmb20;SMB 2.0 MiniRedirector;C:\Windows\System32\Drivers\mrxsmb20.sys [2012-12-18 212992]
R3 NdisTapi;Remote Access NDIS TAPI Driver;C:\Windows\System32\Drivers\ndistapi.sys [2012-7-26 25088]
R3 Ndisuio;NDIS Usermode I/O Protocol;C:\Windows\System32\Drivers\ndisuio.sys [2012-7-26 58880]
R3 NdisWan;Remote Access NDIS WAN Driver;C:\Windows\System32\Drivers\ndiswan.sys [2012-7-26 174080]
R3 NDProxy;NDIS Proxy;C:\Windows\System32\Drivers\ndproxy.sys [2012-7-26 60416]
R3 netprofm;Network List Service;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
R3 NETwNe64;@oem10.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit;C:\Windows\System32\Drivers\NETwew00.sys [2012-8-20 4273192]
R3 Ntfs;Ntfs;C:\Windows\System32\Drivers\ntfs.sys [2012-7-26 1934064]
R3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-10 4925184]
R3 PlugPlay;Plug and Play;C:\Windows\System32\svchost.exe -k DcomLaunch [2012-7-26 30208]
R3 PolicyAgent;IPsec Policy Agent;C:\Windows\System32\svchost.exe -k NetworkServiceNetworkRestricted [2012-7-26 30208]
R3 PptpMiniport;WAN Miniport (PPTP);C:\Windows\System32\Drivers\raspptp.sys [2012-7-26 114176]
R3 RasAgileVpn;WAN Miniport (IKEv2);C:\Windows\System32\Drivers\agilevpn.sys [2012-7-26 68608]
R3 Rasl2tp;WAN Miniport (L2TP);C:\Windows\System32\Drivers\rasl2tp.sys [2012-7-26 124928]
R3 RasPppoe;Remote Access PPPOE Driver;C:\Windows\System32\Drivers\raspppoe.sys [2012-7-26 81920]
R3 RasSstp;WAN Miniport (SSTP);C:\Windows\System32\Drivers\rassstp.sys [2012-7-26 92672]
R3 rdpbus;Remote Desktop Device Redirector Bus Driver;C:\Windows\System32\Drivers\rdpbus.sys [2012-7-26 22528]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI);C:\Windows\System32\Drivers\rfcomm.sys [2012-7-26 156672]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;C:\Windows\System32\Drivers\RtsUVStor.sys [2012-9-25 315536]
R3 SensorsAlsDriver;UMDF Reflector service for SensorsAlsDriver;C:\Windows\System32\Drivers\WUDFRd.sys [2012-7-26 198656]
R3 SensrSvc;Sensor Monitoring Service;C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-7-26 30208]
R3 srv;Server SMB 1.xxx Driver;C:\Windows\System32\Drivers\srv.sys [2012-7-26 416768]
R3 srv2;Server SMB 2.xxx Driver;C:\Windows\System32\Drivers\srv2.sys [2012-12-5 618496]
R3 srvnet;srvnet;C:\Windows\System32\Drivers\srvnet.sys [2012-7-26 248832]
R3 SSDPSRV;SSDP Discovery;C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-7-26 30208]
R3 swenum;Software Bus Driver;C:\Windows\System32\Drivers\swenum.sys [2012-7-26 13680]
R3 tunnel;Microsoft Tunnel Miniport Adapter Driver;C:\Windows\System32\Drivers\tunnel.sys [2012-7-26 149504]
R3 umbus;UMBus Enumerator Driver;C:\Windows\System32\Drivers\umbus.sys [2012-7-26 48128]
R3 usb3Hub;USB-IF USB 3.0 Hub;C:\Windows\System32\Drivers\usb3Hub.sys [2012-8-10 48096]
R3 usbccgp;Microsoft USB Generic Parent Driver;C:\Windows\System32\Drivers\usbccgp.sys [2012-7-26 120832]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver;C:\Windows\System32\Drivers\usbehci.sys [2012-12-18 79080]
R3 usbhub;Microsoft USB Standard Hub Driver;C:\Windows\System32\Drivers\usbhub.sys [2012-12-18 496872]
R3 USBSTOR;USB Mass Storage Driver;C:\Windows\System32\Drivers\USBSTOR.SYS [2012-7-26 119024]
R3 usbvideo;USB Video Device (WDM);C:\Windows\System32\Drivers\usbvideo.sys [2012-7-26 210304]
R3 vwifibus;Virtual WiFi Bus Driver;C:\Windows\System32\Drivers\vwifibus.sys [2012-7-26 24064]
R3 vwifimp;Virtual WiFi Miniport Service;C:\Windows\System32\Drivers\vwifimp.sys [2012-7-26 17920]
R3 W32Time;Windows Time;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
R3 WdiServiceHost;Diagnostic Service Host;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
R3 WdiSystemHost;Diagnostic System Host;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R3 WinHttpAutoProxySvc;WinHTTP Web Proxy Auto-Discovery Service;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI;C:\Windows\System32\Drivers\wmiacpi.sys [2012-7-26 17408]
R3 WPDBusEnum;Portable Device Enumerator Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R3 WudfPf;User Mode Driver Frameworks Platform Driver;C:\Windows\System32\Drivers\WUDFPf.sys [2012-7-26 87040]
R3 WUDFRd;Windows Driver Foundation - User-mode Driver Framework Reflector;C:\Windows\System32\Drivers\WUDFRd.sys [2012-7-26 198656]
R3 wudfsvc;Windows Driver Foundation - User-mode Driver Framework;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
R3 WUDFWpdFs;WUDFWpdFs;C:\Windows\System32\Drivers\WUDFRd.sys [2012-7-26 198656]
R3 WUDFWpdMtp;WUDFWpdMtp;C:\Windows\System32\Drivers\WUDFRd.sys [2012-7-26 198656]
R3 XHCIPort;USB-IF xHCI USB Host Controller;C:\Windows\System32\Drivers\xHCIPort.sys [2012-8-10 188384]
S0 hwpolicy;Hardware Policy Driver;C:\Windows\System32\Drivers\hwpolicy.sys [2012-7-26 24816]
S1 cdrom;CD-ROM Driver;C:\Windows\System32\Drivers\cdrom.sys [2012-7-26 174080]
S2 SCardSvr;Smart Card;C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-7-26 30208]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-11-9 160944]
S2 sppsvc;Software Protection;C:\Windows\System32\sppsvc.exe [2012-7-26 4881408]
S3 1394ohci;1394 OHCI Compliant Host Controller;C:\Windows\System32\Drivers\1394ohci.sys [2012-7-26 226304]
S3 AcpiPmi;ACPI Power Meter Driver;C:\Windows\System32\Drivers\acpipmi.sys [2012-7-26 12288]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-12-3 250808]
S3 adp94xx;adp94xx;C:\Windows\System32\Drivers\adp94xx.sys [2012-6-2 492272]
S3 adpahci;adpahci;C:\Windows\System32\Drivers\adpahci.sys [2012-7-25 340720]
S3 adpu320;adpu320;C:\Windows\System32\Drivers\adpu320.sys [2012-7-25 184048]
S3 AgereSoftModem;Agere Systems Soft Modem;C:\Windows\System32\Drivers\agrsm64.sys [2012-6-2 1146880]
S3 agp440;Intel AGP Bus Filter;C:\Windows\System32\Drivers\AGP440.sys [2012-7-26 63216]
S3 ALG;Application Layer Gateway Service;C:\Windows\System32\alg.exe [2012-7-26 94208]
S3 AmdK8;AMD K8 Processor Driver;C:\Windows\System32\Drivers\amdk8.sys [2012-12-18 90624]
S3 AmdPPM;AMD Processor Driver;C:\Windows\System32\Drivers\amdppm.sys [2012-12-18 88064]
S3 amdsata;amdsata;C:\Windows\System32\Drivers\amdsata.sys [2012-6-24 76016]
S3 amdsbs;amdsbs;C:\Windows\System32\Drivers\amdsbs.sys [2012-6-2 258288]
S3 amdxata;amdxata;C:\Windows\System32\Drivers\amdxata.sys [2012-7-25 26352]
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol;C:\Windows\System32\Drivers\AmpPal.sys [2012-7-17 162344]
S3 AppID;AppID Driver;C:\Windows\System32\Drivers\appid.sys [2012-7-26 79360]
S3 AppIDSvc;Application Identity;C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-7-26 30208]
S3 AppMgmt;Application Management;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 arc;arc;C:\Windows\System32\Drivers\arc.sys [2012-7-25 104688]
S3 arcsas;Adaptec SAS/SATA-II RAID Windows Inbox Miniport Driver;C:\Windows\System32\Drivers\arcsas.sys [2012-7-25 108272]
S3 atapi;IDE Channel;C:\Windows\System32\Drivers\atapi.sys [2012-7-26 25840]
S3 athr;Qualcomm Atheros Extensible Wireless LAN device driver;C:\Windows\System32\Drivers\athrx.sys [2012-6-2 2935808]
S3 AxInstSV;ActiveX Installer (AxInstSV);C:\Windows\System32\svchost.exe -k AxInstSVGroup [2012-7-26 30208]
S3 b06bdrv;Broadcom NetXtreme II VBD;C:\Windows\System32\Drivers\bxvbda.sys [2012-6-24 539376]
S3 BDESVC;BitLocker Drive Encryption Service;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 BTHMODEM;Bluetooth Serial Communications Driver;C:\Windows\System32\Drivers\bthmodem.sys [2012-7-26 65536]
S3 BTHPORT;Bluetooth Port Driver;C:\Windows\System32\Drivers\bthport.sys [2012-12-18 1171968]
S3 circlass;Consumer IR Devices;C:\Windows\System32\Drivers\circlass.sys [2012-7-26 45056]
S3 COMSysApp;COM+ System Application;C:\Windows\System32\dllhost.exe [2012-7-26 10752]
S3 cphs;Intel® Content Protection HECI Service;C:\Windows\SysWOW64\IntelCpHeciSvc.exe [2012-8-30 276288]
S3 CscService;Offline Files;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
S3 defragsvc;Optimize drives;C:\Windows\System32\svchost.exe -k defragsvc [2012-7-26 30208]
S3 dot3svc;Wired AutoConfig;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
S3 drmkaud;Microsoft Trusted Audio Drivers;C:\Windows\System32\Drivers\drmkaud.sys [2012-12-5 5632]
S3 e1iexpress;Intel® PRO/1000 PCI Express Network Connection Driver I;C:\Windows\System32\Drivers\e1i63x64.sys [2012-6-2 333824]
S3 Eaphost;Extensible Authentication Protocol;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD;C:\Windows\System32\Drivers\evbda.sys [2012-6-24 3295984]
S3 EFS;Encrypting File System (EFS);C:\Windows\System32\lsass.exe [2012-7-26 35840]
S3 ErrDev;Microsoft Hardware Error Device Driver;C:\Windows\System32\Drivers\errdev.sys [2012-7-26 10240]
S3 Fax;Fax;C:\Windows\System32\FXSSVC.exe [2012-7-26 669696]
S3 fdc;Floppy Disk Controller Driver;C:\Windows\System32\Drivers\fdc.sys [2012-7-26 30720]
S3 fdPHost;Function Discovery Provider Host;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
S3 FDResPub;Function Discovery Resource Publication;C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-7-26 30208]
S3 Filetrace;Filetrace;C:\Windows\System32\Drivers\filetrace.sys [2012-7-26 34816]
S3 flpydisk;Floppy Disk Driver;C:\Windows\System32\Drivers\flpydisk.sys [2012-7-26 24576]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0;C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-8-2 43616]
S3 FsDepends;File System Dependency Minifilter;C:\Windows\System32\Drivers\fsdepends.sys [2012-7-26 57584]
S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms;C:\Windows\System32\Drivers\GAGP30KX.SYS [2012-7-26 66800]
S3 GEARAspiWDM;GEAR ASPI Filter Driver;C:\Windows\System32\Drivers\GEARAspiWDM.sys [2012-12-5 33240]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service;C:\Windows\System32\Drivers\HdAudio.sys [2012-7-26 339968]
S3 HidBatt;HID UPS Battery Driver;C:\Windows\System32\Drivers\hidbatt.sys [2012-7-26 27136]
S3 HidBth;Microsoft Bluetooth HID Miniport;C:\Windows\System32\Drivers\hidbth.sys [2012-7-26 95744]
S3 HidIr;Microsoft Infrared HID Driver;C:\Windows\System32\Drivers\hidir.sys [2012-7-26 46080]
S3 HidUsb;Microsoft HID Class Driver;C:\Windows\System32\Drivers\hidusb.sys [2012-7-26 27648]
S3 hkmsvc;Health Key and Certificate Management;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 HomeGroupListener;HomeGroup Listener;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
S3 HomeGroupProvider;HomeGroup Provider;C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-7-26 30208]
S3 HpSAMD;HpSAMD;C:\Windows\System32\Drivers\HpSAMD.sys [2012-7-25 64752]
S3 iaStorV;Intel RAID Controller Windows 7;C:\Windows\System32\Drivers\iaStorV.sys [2012-6-2 411888]
S3 iirsp;iirsp;C:\Windows\System32\Drivers\iirsp.sys [2012-7-25 45296]
S3 intaud_WaveExtensible;Intel WiDi Audio Device;C:\Windows\System32\Drivers\intelaud.sys [2012-8-10 35296]
S3 intelide;intelide;C:\Windows\System32\Drivers\intelide.sys [2012-7-26 18672]
S3 IpFilterDriver;IP Traffic Filter Driver;C:\Windows\System32\Drivers\ipfltdrv.sys [2012-7-26 89088]
S3 IPMIDRV;IPMIDRV;C:\Windows\System32\Drivers\IPMIDrv.sys [2012-7-26 78336]
S3 IPNAT;IP Network Address Translator;C:\Windows\System32\Drivers\ipnat.sys [2012-7-26 145920]
S3 IRENUM;IR Bus Enumerator;C:\Windows\System32\Drivers\irenum.sys [2012-7-26 17920]
S3 isapnp;isapnp;C:\Windows\System32\Drivers\isapnp.sys [2012-7-26 22256]
S3 iScsiPrt;iScsiPort Driver;C:\Windows\System32\Drivers\msiscsi.sys [2012-12-18 277736]
S3 kbdhid;Keyboard HID Driver;C:\Windows\System32\Drivers\kbdhid.sys [2012-7-26 29184]
S3 KeyIso;CNG Key Isolation;C:\Windows\System32\lsass.exe [2012-7-26 35840]
S3 KtmRm;KtmRm for Distributed Transaction Coordinator;C:\Windows\System32\svchost.exe -k NetworkServiceAndNoImpersonation [2012-7-26 30208]
S3 lltdsvc;Link-Layer Topology Discovery Mapper;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
S3 LSI_SAS;LSI_SAS;C:\Windows\System32\Drivers\lsi_sas.sys [2012-7-25 108784]
S3 LSI_SAS2;LSI_SAS2;C:\Windows\System32\Drivers\lsi_sas2.sys [2012-7-25 92400]
S3 LSI_SCSI;LSI_SCSI;C:\Windows\System32\Drivers\lsi_scsi.sys [2012-7-25 116976]
S3 megasas;megasas;C:\Windows\System32\Drivers\megasas.sys [2012-6-2 51952]
S3 MegaSR;MegaSR;C:\Windows\System32\Drivers\MegaSR.sys [2012-7-25 353008]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2012-9-20 50899608]
S3 Modem;Modem;C:\Windows\System32\Drivers\modem.sys [2012-7-26 40448]
S3 mouhid;Mouse HID Driver;C:\Windows\System32\Drivers\mouhid.sys [2012-7-26 26112]
S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-12-3 115168]
S3 MRxDAV;WebDav Client Redirector Driver;C:\Windows\System32\Drivers\mrxdav.sys [2012-7-26 141312]
S3 MSDTC;Distributed Transaction Coordinator;C:\Windows\System32\msdtc.exe [2012-7-26 144384]
S3 mshidkmdf;Pass-through HID to KMDF Filter Driver;C:\Windows\System32\Drivers\mshidkmdf.sys [2012-7-26 8704]
S3 MSiSCSI;Microsoft iSCSI Initiator Service;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 msiserver;Windows Installer;C:\Windows\System32\msiexec.exe [2012-7-26 124416]
S3 MSKSSRV;Microsoft Streaming Service Proxy;C:\Windows\System32\Drivers\mskssrv.sys [2012-7-26 11008]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy;C:\Windows\System32\Drivers\mspclock.sys [2012-7-26 7168]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy;C:\Windows\System32\Drivers\mspqm.sys [2012-7-26 6912]
S3 MsRPC;MsRPC;C:\Windows\System32\Drivers\msrpc.sys [2012-7-26 390896]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter;C:\Windows\System32\Drivers\mstee.sys [2012-7-26 8192]
S3 MTConfig;Microsoft Input Configuration Driver;C:\Windows\System32\Drivers\MTConfig.sys [2012-7-26 14848]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2012-7-18 272176]
S3 napagent;Network Access Protection Agent;C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
S3 NdisCap;Microsoft NDIS Capture;C:\Windows\System32\Drivers\ndiscap.sys [2012-7-26 46592]
S3 Netman;Network Connections;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
S3 NETwNs64;@netwns64.inf,___ %NIC_Service_DispName_WIN7_64%;___ Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;C:\Windows\System32\Drivers\NETwNs64.sys [2012-6-2 8604672]
S3 nfrd960;nfrd960;C:\Windows\System32\Drivers\nfrd960.sys [2012-7-25 52464]
S3 nv_agp;NVIDIA nForce AGP Bus Filter;C:\Windows\System32\Drivers\NV_AGP.SYS [2012-7-26 125168]
S3 nvraid;nvraid;C:\Windows\System32\Drivers\nvraid.sys [2012-7-25 150256]
S3 nvstor;nvstor;C:\Windows\System32\Drivers\nvstor.sys [2012-6-2 168176]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\microsoft shared\Source Engine\OSE.EXE [2010-1-10 174440]
S3 p2pimsvc;Peer Networking Identity Manager;C:\Windows\System32\svchost.exe -k LocalServicePeerNet [2012-7-26 30208]
S3 p2psvc;Peer Networking Grouping;C:\Windows\System32\svchost.exe -k LocalServicePeerNet [2012-7-26 30208]
S3 Parport;Parallel port driver;C:\Windows\System32\Drivers\parport.sys [2012-7-26 105984]
S3 pciide;pciide;C:\Windows\System32\Drivers\pciide.sys [2012-7-26 14064]
S3 pcmcia;pcmcia;C:\Windows\System32\Drivers\pcmcia.sys [2012-7-26 237808]
S3 PeerDistSvc;BranchCache;C:\Windows\System32\svchost.exe -k PeerDist [2012-7-26 30208]
S3 PerfHost;Performance Counter DLL Host;C:\Windows\SysWOW64\perfhost.exe [2012-7-26 20992]
S3 pla;Performance Logs & Alerts;C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-7-26 30208]
S3 PNRPAutoReg;PNRP Machine Name Publication Service;C:\Windows\System32\svchost.exe -k LocalServicePeerNet [2012-7-26 30208]
S3 PNRPsvc;Peer Name Resolution Protocol;C:\Windows\System32\svchost.exe -k LocalServicePeerNet [2012-7-26 30208]
S3 Processor;Processor Driver;C:\Windows\System32\Drivers\processr.sys [2012-12-18 87552]
S3 QWAVE;Quality Windows Audio Video Experience;C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-7-26 30208]
S3 QWAVEdrv;QWAVE driver;C:\Windows\System32\Drivers\qwavedrv.sys [2012-7-26 46592]
S3 RasAcd;Remote Access Auto Connection Driver;C:\Windows\System32\Drivers\rasacd.sys [2012-7-26 16384]
S3 RasAuto;Remote Access Auto Connection Manager;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 RasMan;Remote Access Connection Manager;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 RDPDR;Remote Desktop Device Redirector Driver;C:\Windows\System32\Drivers\rdpdr.sys [2012-7-26 179712]
S3 RDPWD;RDP Winstation Driver;C:\Windows\System32\Drivers\rdpwd.sys [2012-7-26 208384]
S3 RpcLocator;Remote Procedure Call (RPC) Locator;C:\Windows\System32\Locator.exe [2012-7-26 9728]
S3 RTL8168;Realtek 8168 NT Driver;C:\Windows\System32\Drivers\Rt630x64.sys [2012-6-2 589824]
S3 s3cap;s3cap;C:\Windows\System32\Drivers\vms3cap.sys [2012-7-26 7168]
S3 sbp2port;SBP-2 Transport/Protocol Bus Driver;C:\Windows\System32\Drivers\sbp2port.sys [2012-7-26 107760]
S3 scfilter;Smart card PnP Class Filter Driver;C:\Windows\System32\Drivers\scfilter.sys [2012-7-26 36864]
S3 SCPolicySvc;Smart Card Removal Policy;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 sdbus;sdbus;C:\Windows\System32\Drivers\sdbus.sys [2012-12-18 194280]
S3 SDRSVC;Windows Backup;C:\Windows\System32\svchost.exe -k SDRSVC [2012-7-26 30208]
S3 seclogon;Secondary Logon;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 Serenum;Serenum Filter Driver;C:\Windows\System32\Drivers\serenum.sys [2012-7-26 23040]
S3 Serial;Serial port driver;C:\Windows\System32\Drivers\serial.sys [2012-7-26 76800]
S3 sermouse;Serial Mouse Driver;C:\Windows\System32\Drivers\sermouse.sys [2012-7-26 27136]
S3 SessionEnv;Remote Desktop Configuration;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 sfloppy;High-Capacity Floppy Disk Drive;C:\Windows\System32\Drivers\sfloppy.sys [2012-7-26 16896]
S3 SiSRaid2;SiSRaid2;C:\Windows\System32\Drivers\sisraid2.sys [2012-6-2 44784]
S3 SiSRaid4;SiSRaid4;C:\Windows\System32\Drivers\sisraid4.sys [2012-7-25 81648]
S3 SNMPTRAP;SNMP Trap;C:\Windows\System32\snmptrap.exe [2012-7-26 14848]
S3 SstpSvc;Secure Socket Tunneling Protocol Service;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
S3 stexstor;stexstor;C:\Windows\System32\Drivers\stexstor.sys [2012-7-25 30960]
S3 storflt;Hyper-V Storage Accelerator;C:\Windows\System32\Drivers\vmstorfl.sys [2012-7-26 45160]
S3 storvsc;storvsc;C:\Windows\System32\Drivers\storvsc.sys [2012-7-26 37992]
S3 swprv;Microsoft Software Shadow Copy Provider;C:\Windows\System32\svchost.exe -k swprv [2012-7-26 30208]
S3 TabletInputService;Touch Keyboard and Handwriting Panel Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
S3 TapiSrv;Telephony;C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
S3 TCPIP6;Microsoft IPv6 Protocol Driver;C:\Windows\System32\Drivers\tcpip.sys [2012-7-26 2224880]
S3 TermService;Remote Desktop Services;C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
S3 THREADORDER;Thread Ordering Server;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
S3 TPM;TPM;C:\Windows\System32\Drivers\tpm.sys [2012-7-26 148720]
S3 TrustedInstaller;Windows Modules Installer;C:\Windows\servicing\TrustedInstaller.exe [2012-7-26 94208]
S3 uagp35;Microsoft AGPv3.5 Filter;C:\Windows\System32\Drivers\UAGP35.SYS [2012-7-26 65776]
S3 UI0Detect;Interactive Services Detection;C:\Windows\System32\UI0Detect.exe [2012-7-26 40960]
S3 uliagpkx;Uli AGP Bus Filter;C:\Windows\System32\Drivers\ULIAGPKX.SYS [2012-7-26 66800]
S3 UmPass;Microsoft UMPass Driver;C:\Windows\System32\Drivers\umpass.sys [2012-7-26 11776]
S3 UmRdpService;Remote Desktop Services UserMode Port Redirector;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2012-7-26 30208]
S3 upnphost;UPnP Device Host;C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-7-26 30208]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\Drivers\usbaapl64.sys [2012-9-28 53760]
S3 usbcir;eHome Infrared Receiver (USBCIR);C:\Windows\System32\Drivers\usbcir.sys [2012-7-26 99328]
S3 usbohci;Microsoft USB Open Host Controller Miniport Driver;C:\Windows\System32\Drivers\usbohci.sys [2012-12-18 27136]
S3 usbprint;Microsoft USB PRINTER Class;C:\Windows\System32\Drivers\usbprint.sys [2012-7-26 25600]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver;C:\Windows\System32\Drivers\usbuhci.sys [2012-12-18 32256]
S3 VaultSvc;Credential Manager;C:\Windows\System32\lsass.exe [2012-7-26 35840]
S3 vds;Virtual Disk;C:\Windows\System32\vds.exe [2012-7-26 680960]
S3 vhdmp;vhdmp;C:\Windows\System32\Drivers\vhdmp.sys [2012-7-26 496368]
S3 viaide;viaide;C:\Windows\System32\Drivers\viaide.sys [2012-7-26 19184]
S3 vmbus;Virtual Machine Bus;C:\Windows\System32\Drivers\vmbus.sys [2012-7-26 137832]
S3 VMBusHID;VMBusHID;C:\Windows\System32\Drivers\VMBusHID.sys [2012-7-26 22144]
S3 vmbusr;Virtual Machine Bus Provider;C:\Windows\System32\Drivers\vmbusr.sys [2012-7-26 117248]
S3 vsmraid;vsmraid;C:\Windows\System32\Drivers\vsmraid.sys [2012-6-2 164080]
S3 VSS;Volume Shadow Copy;C:\Windows\System32\VSSVC.exe [2012-7-26 1482752]
S3 WacomPen;Wacom Serial Pen HID Driver;C:\Windows\System32\Drivers\wacompen.sys [2012-7-26 27008]
S3 Wanarp;Remote Access IP ARP Driver;C:\Windows\System32\Drivers\wanarp.sys [2012-7-26 83456]
S3 wbengine;Block Level Backup Engine Service;C:\Windows\System32\wbengine.exe [2012-7-26 1616896]
S3 WbioSrvc;Windows Biometric Service;C:\Windows\System32\svchost.exe -k WbioSvcGroup [2012-7-26 30208]
S3 wcncsvc;Windows Connect Now - Config Registrar;C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2012-7-26 30208]
S3 WcsPlugInService;Windows Color System;C:\Windows\System32\svchost.exe -k wcssvc [2012-7-26 30208]
S3 Wd;Microsoft Watchdog Timer Driver;C:\Windows\System32\Drivers\wd.sys [2012-7-26 23792]
S3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\System32\Drivers\wdcsam64.sys [2008-5-6 14464]
S3 WebClient;WebClient;C:\Windows\System32\svchost.exe -k LocalService [2012-7-26 30208]
S3 Wecsvc;Windows Event Collector;C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
S3 wercplsupport;Problem Reports and Solutions Control Panel Support;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 WerSvc;Windows Error Reporting Service;C:\Windows\System32\svchost.exe -k WerSvcGroup [2012-7-26 30208]
S3 WIMMount;WIMMount;C:\Windows\System32\Drivers\wimmount.sys [2012-7-26 33520]
S3 WinRM;Windows Remote Management (WS-Management);C:\Windows\System32\svchost.exe -k NetworkService [2012-7-26 30208]
S3 WinUsb;WinUSB Driver;C:\Windows\System32\Drivers\winusb.sys [2012-7-26 57344]
S3 wlidsvc;Microsoft Account Sign-in Assistant;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 wmiApSrv;WMI Performance Adapter;C:\Windows\System32\wbem\WmiApSrv.exe [2012-7-26 198144]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service;C:\Program Files\Windows Media Player\wmpnetwk.exe [2012-7-26 1314304]
S3 WPCSvc;Family Safety;C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [2012-7-26 30208]
S3 WSDPrintDevice;WSD Print Support;C:\Windows\System32\Drivers\WSDPrint.sys [2012-7-26 21504]
S3 wuauserv;Windows Update;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S3 WwanSvc;WWAN AutoConfig;C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork [2012-7-26 30208]
S4 cdfs;CD/DVD File System Reader;C:\Windows\System32\Drivers\cdfs.sys [2012-7-26 108544]
S4 Lotus Notes Single Logon;Lotus Notes Single Logon;C:\LN\nslsvice.exe [2011-9-16 62856]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-7-25 139696]
S4 RemoteAccess;Routing and Remote Access;C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S4 RemoteRegistry;Remote Registry;C:\Windows\System32\svchost.exe -k localService [2012-7-26 30208]
S4 SharedAccess;Internet Connection Sharing (ICS);C:\Windows\System32\svchost.exe -k netsvcs [2012-7-26 30208]
S4 udfs;udfs;C:\Windows\System32\Drivers\udfs.sys [2012-7-26 321024]
S4 ws2ifsl;Winsock IFS Driver;C:\Windows\System32\Drivers\ws2ifsl.sys [2012-7-26 22528]
.
=============== File Associations ===============
.
FileExt: .bat: batfile="%1" %*
FileExt: .cmd: cmdfile="%1" %*
FileExt: .com: comfile="%1" %*
FileExt: .exe: exefile="%1" %*
FileExt: .pif: piffile="%1" %*
FileExt: .scr: scrfile="%1" /S
FileExt: .reg: regfile=regedit.exe "%1"
FileExt: .txt: txtfile=C:\Windows\System32\NOTEPAD.EXE %1
FileExt: .chm: chm.file="C:\Windows\hh.exe" %1
FileExt: .ini: inifile=C:\Windows\System32\NOTEPAD.EXE %1
FileExt: .inf: inffile=C:\Windows\System32\NOTEPAD.EXE %1
ShellExec: AcroRD32.exe: Read="C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe" "%1"
ShellExec: iexplore.exe: open="C:\Program Files\Internet Explorer\iexplore.exe" %1
ShellExec: iTunes.exe: open="C:\Program Files (x86)\iTunes\iTunes.exe" /open "%L"
ShellExec: iTunes.exe: play="C:\Program Files (x86)\iTunes\iTunes.exe" /play "%L"
ShellExec: mpc-hc.exe: Open="C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe" "%1"
ShellExec: mspaint.exe: edit="C:\Windows\System32\mspaint.exe" "%1"
ShellExec: notepad.exe: edit=C:\Windows\System32\NOTEPAD.EXE %1
ShellExec: notepad.exe: open=C:\Windows\System32\NOTEPAD.EXE %1
ShellExec: ois.exe: Edit=C:\PROGRA~1\MICROS~1\Office14\OIS.EXE /shellEdit "%1"
ShellExec: ois.exe: Open=C:\PROGRA~1\MICROS~1\Office14\OIS.EXE /shellOpen "%1"
ShellExec: ois.exe: Preview=C:\PROGRA~1\MICROS~1\Office14\OIS.EXE /shellPreview "%1"
ShellExec: photoviewer.dll: open=C:\Windows\System32\rundll32.exe "C:\Program Files (x86)\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1
ShellExec: photoviewer.dll: print=C:\Windows\System32\rundll32.exe "C:\Program Files (x86)\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1
ShellExec: Winword.exe: edit="C:\Program Files\Microsoft Office\Office14\WINWORD.EXE" /n "%1"
ShellExec: wmplayer.exe: open="C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Open "%L"
ShellExec: wmplayer.exe: play="C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play "%L"
ShellExec: wordpad.exe: open="C:\Program Files (x86)\Windows NT\Accessories\WORDPAD.EXE" "%1"
.
=============== Created Last 60 ================
.
2012-12-28 07:31:54 -------- d-----w- C:\Users\userxxx\AppData\Roaming\smkits
2012-12-28 06:57:17 9125352 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{65ABEDE3-D5EB-4FAF-869B-6526FAEC7BFE}\mpengine.dll
2012-12-27 08:23:41 -------- d-----w- C:\Users\userxxx\AppData\Local\1EE48423-FC34-4066-A6FF-D9AE6C98163F.aplzod
2012-12-27 08:11:31 -------- d-----w- C:\Program Files (x86)\Common Files\Adobe
2012-12-27 03:37:29 9125352 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2012-12-25 07:55:00 -------- d-----w- C:\ProgramData\ASUS
2012-12-24 07:37:18 165112 ----a-w- C:\Windows\System32\drivers\idmwfp.sys
2012-12-21 03:03:16 46080 ----a-w- C:\Windows\System32\atmlib.dll
2012-12-21 03:03:16 362496 ----a-w- C:\Windows\System32\atmfd.dll
2012-12-21 03:03:16 35328 ----a-w- C:\Windows\SysWow64\atmlib.dll
2012-12-21 03:03:16 300032 ----a-w- C:\Windows\SysWow64\atmfd.dll
2012-12-18 07:48:30 3342848 ----a-w- C:\Windows\System32\wuaueng.dll
2012-12-18 07:48:30 11459584 ----a-w- C:\Windows\System32\glcndFilter.dll
2012-12-18 07:48:29 10096640 ----a-w- C:\Windows\System32\twinui.dll
2012-12-18 07:48:28 8856576 ----a-w- C:\Windows\SysWow64\twinui.dll
2012-12-18 07:48:26 8552448 ----a-w- C:\Windows\SysWow64\glcndFilter.dll
2012-12-18 07:48:25 976384 ----a-w- C:\Windows\System32\KernelBase.dll
2012-12-18 07:48:25 710656 ----a-w- C:\Windows\System32\winhttp.dll
2012-12-18 07:48:25 1526784 ----a-w- C:\Windows\System32\mfcore.dll
2012-12-18 07:48:25 1451520 ----a-w- C:\Windows\SysWow64\mfcore.dll
2012-12-18 07:48:24 785920 ----a-w- C:\Windows\System32\audiosrv.dll
2012-12-18 07:48:24 5973504 ----a-w- C:\Windows\System32\mstscax.dll
2012-12-18 07:48:24 516608 ----a-w- C:\Windows\SysWow64\winhttp.dll
2012-12-18 07:48:24 1566432 ----a-w- C:\Windows\System32\ole32.dll
2012-12-18 07:48:24 1037312 ----a-w- C:\Windows\System32\localspl.dll
2012-12-18 07:48:23 5087744 ----a-w- C:\Windows\SysWow64\mstscax.dll
2012-12-18 07:48:23 490064 ----a-w- C:\Windows\System32\AudioEng.dll
2012-12-18 07:48:23 447792 ----a-w- C:\Windows\System32\AudioSes.dll
2012-12-18 07:48:23 366080 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2012-12-18 07:48:23 2302464 ----a-w- C:\Windows\System32\authui.dll
2012-12-18 07:48:23 1150160 ----a-w- C:\Windows\SysWow64\ole32.dll
2012-12-18 07:48:22 883712 ----a-w- C:\Windows\HelpPane.exe
2012-12-18 07:48:22 767488 ----a-w- C:\Windows\System32\wuapi.dll
2012-12-18 07:48:22 324344 ----a-w- C:\Windows\SysWow64\AudioSes.dll
2012-12-18 07:48:22 318464 ----a-w- C:\Windows\System32\ubpm.dll
2012-12-18 07:48:22 253512 ----a-w- C:\Windows\System32\audiodg.exe
2012-12-18 07:48:22 1619968 ----a-w- C:\Windows\System32\wucltux.dll
2012-12-18 07:48:21 703488 ----a-w- C:\Windows\System32\drvstore.dll
2012-12-18 07:48:21 427568 ----a-w- C:\Windows\SysWow64\AudioEng.dll
2012-12-18 07:48:21 251904 ----a-w- C:\Windows\System32\WUSettingsProvider.dll
2012-12-18 07:48:21 246784 ----a-w- C:\Windows\SysWow64\ubpm.dll
2012-12-18 07:48:21 212992 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2012-12-18 07:48:21 2033664 ----a-w- C:\Windows\SysWow64\authui.dll
2012-12-18 07:48:20 69864 ----a-w- C:\Windows\System32\drivers\pdc.sys
2012-12-18 07:48:20 665600 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2012-12-18 07:48:20 621056 ----a-w- C:\Windows\SysWow64\wuapi.dll
2012-12-18 07:48:20 549376 ----a-w- C:\Windows\SysWow64\drvstore.dll
2012-12-18 07:48:20 445160 ----a-w- C:\Windows\System32\drivers\USBHUB3.SYS
2012-12-18 07:48:20 291328 ----a-w- C:\Windows\System32\Windows.Networking.Connectivity.dll
2012-12-18 07:48:20 194280 ----a-w- C:\Windows\System32\drivers\sdbus.sys
2012-12-18 07:48:20 1386496 ----a-w- C:\Windows\System32\wlansvc.dll
2012-12-18 07:48:20 1171968 ----a-w- C:\Windows\System32\drivers\bthport.sys
2012-12-18 07:48:19 859136 ----a-w- C:\Windows\System32\drivers\http.sys
2012-12-18 07:48:19 17560576 ----a-w- C:\Windows\SysWow64\shell32.dll
2012-12-18 07:48:18 19789824 ----a-w- C:\Windows\System32\shell32.dll
2012-12-18 07:48:17 58288 ----a-w- C:\Windows\System32\wuauclt.exe
2012-12-18 07:48:17 522640 ----a-w- C:\Windows\System32\AUDIOKSE.dll
2012-12-18 07:48:17 501760 ----a-w- C:\Windows\System32\DevicePairing.dll
2012-12-18 07:48:17 463768 ----a-w- C:\Windows\SysWow64\AUDIOKSE.dll
2012-12-18 07:48:17 273408 ----a-w- C:\Windows\System32\wlanapi.dll
2012-12-18 07:48:17 124648 ----a-w- C:\Windows\System32\drivers\dumpsd.sys
2012-12-18 07:48:17 110080 ----a-w- C:\Windows\System32\dafWCN.dll
2012-12-18 07:48:16 718848 ----a-w- C:\Windows\System32\BFE.DLL
2012-12-18 07:48:16 560640 ----a-w- C:\Windows\System32\drivers\afd.sys
2012-12-18 07:48:16 470016 ----a-w- C:\Windows\System32\wlanmsm.dll
2012-12-18 07:48:16 277736 ----a-w- C:\Windows\System32\drivers\msiscsi.sys
2012-12-18 07:48:15 753664 ----a-w- C:\Windows\SysWow64\actxprxy.dll
2012-12-18 07:48:14 77824 ----a-w- C:\Windows\System32\taskhost.exe
2012-12-18 07:48:14 72192 ----a-w- C:\Windows\System32\taskhostex.exe
2012-12-18 07:48:14 48640 ----a-w- C:\Windows\System32\wups2.dll
2012-12-18 07:48:14 449536 ----a-w- C:\Windows\SysWow64\DevicePairing.dll
2012-12-18 07:48:14 446464 ----a-w- C:\Windows\System32\wlansec.dll
2012-12-18 07:48:14 43008 ----a-w- C:\Windows\System32\wups.dll
2012-12-18 07:48:14 386560 ----a-w- C:\Windows\SysWow64\wlanmsm.dll
2012-12-18 07:48:14 212992 ----a-w- C:\Windows\System32\bthprops.cpl
2012-12-18 07:48:14 195072 ----a-w- C:\Windows\SysWow64\Windows.Networking.Connectivity.dll
2012-12-18 07:48:14 17408 ----a-w- C:\Windows\System32\wuaext.dll
2012-12-18 07:48:14 172032 ----a-w- C:\Windows\System32\MFCaptureEngine.dll
2012-12-18 07:48:13 98304 ----a-w- C:\Windows\System32\wudriver.dll
2012-12-18 07:48:13 96488 ----a-w- C:\Windows\System32\drivers\wfplwfs.sys
2012-12-18 07:48:13 888832 ----a-w- C:\Windows\System32\nshwfp.dll
2012-12-18 07:48:13 83968 ----a-w- C:\Windows\SysWow64\wudriver.dll
2012-12-18 07:48:13 702464 ----a-w- C:\Windows\SysWow64\nshwfp.dll
2012-12-18 07:48:13 375296 ----a-w- C:\Windows\SysWow64\wlansec.dll
2012-12-18 07:48:13 314880 ----a-w- C:\Windows\System32\rdpclip.exe
2012-12-18 07:48:13 281088 ----a-w- C:\Windows\System32\mfreadwrite.dll
2012-12-18 07:48:13 2146816 ----a-w- C:\Windows\System32\actxprxy.dll
2012-12-18 07:48:13 189440 ----a-w- C:\Windows\SysWow64\bthprops.cpl
2012-12-18 07:48:13 173568 ----a-w- C:\Windows\System32\storewuauth.dll
2012-12-18 07:48:13 141824 ----a-w- C:\Windows\System32\wuwebv.dll
2012-12-18 07:48:13 125952 ----a-w- C:\Windows\SysWow64\wuwebv.dll
2012-12-18 07:48:12 466944 ----a-w- C:\Windows\System32\wcncsvc.dll
2012-12-18 07:48:12 39424 ----a-w- C:\Windows\System32\wuapp.exe
2012-12-18 07:48:12 34304 ----a-w- C:\Windows\SysWow64\wuapp.exe
2012-12-18 07:48:12 240640 ----a-w- C:\Windows\System32\fsquirt.exe
2012-12-18 07:48:12 214528 ----a-w- C:\Windows\SysWow64\mfreadwrite.dll
2012-12-18 07:48:12 202240 ----a-w- C:\Windows\SysWow64\wlanapi.dll
2012-12-18 07:48:12 126464 ----a-w- C:\Windows\SysWow64\MFCaptureEngine.dll
2012-12-18 07:48:12 1071104 ----a-w- C:\Windows\System32\IKEEXT.DLL
2012-12-18 07:48:11 93696 ----a-w- C:\Windows\SysWow64\WcnApi.dll
2012-12-18 07:48:11 44544 ----a-w- C:\Windows\System32\tsgqec.dll
2012-12-18 07:48:11 39936 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\winprint.dll
2012-12-18 07:48:11 378880 ----a-w- C:\Windows\System32\FWPUCLNT.DLL
2012-12-18 07:48:11 37376 ----a-w- C:\Windows\SysWow64\tsgqec.dll
2012-12-18 07:48:11 322560 ----a-w- C:\Windows\System32\aaclient.dll
2012-12-18 07:48:11 269312 ----a-w- C:\Windows\SysWow64\aaclient.dll
2012-12-18 07:48:11 245248 ----a-w- C:\Windows\SysWow64\FWPUCLNT.DLL
2012-12-18 07:48:11 169472 ----a-w- C:\Windows\System32\AudioEndpointBuilder.dll
2012-12-18 07:48:11 126976 ----a-w- C:\Windows\System32\WcnApi.dll
2012-12-18 07:48:11 102400 ----a-w- C:\Windows\System32\fdWCN.dll
2012-12-18 07:48:10 84992 ----a-w- C:\Windows\SysWow64\fdWCN.dll
2012-12-18 07:48:10 30720 ----a-w- C:\Windows\System32\wfdprov.dll
2012-12-18 07:48:10 27136 ----a-w- C:\Windows\System32\WcnEapPeerProxy.dll
2012-12-18 07:48:10 267264 ----a-w- C:\Windows\System32\EncDump.dll
2012-12-18 07:48:10 26624 ----a-w- C:\Windows\System32\WcnEapAuthProxy.dll
2012-12-18 07:48:10 25600 ----a-w- C:\Windows\SysWow64\wfdprov.dll
2012-12-18 07:48:10 18432 ----a-w- C:\Windows\SysWow64\wups.dll
2012-12-18 07:48:09 90624 ----a-w- C:\Windows\System32\drivers\amdk8.sys
2012-12-18 07:48:09 89088 ----a-w- C:\Windows\System32\drivers\intelppm.sys
2012-12-18 07:48:09 88064 ----a-w- C:\Windows\System32\drivers\amdppm.sys
2012-12-18 07:48:09 87552 ----a-w- C:\Windows\System32\drivers\processr.sys
2012-12-18 07:48:08 99328 ----a-w- C:\Windows\System32\wushareduxresources.dll
2012-12-18 07:48:08 9728 ----a-w- C:\Windows\SysWow64\wlanhlp.dll
2012-12-18 07:48:08 9728 ----a-w- C:\Windows\System32\wlanhlp.dll
2012-12-18 07:48:08 74752 ----a-w- C:\Windows\System32\drivers\BTHUSB.SYS
2012-12-18 07:48:08 51712 ----a-w- C:\Windows\System32\drivers\bthenum.sys
2012-12-18 07:48:08 22528 ----a-w- C:\Windows\System32\drivers\fxppm.sys
2012-12-18 07:48:08 16384 ----a-w- C:\Windows\System32\iscsilog.dll
2012-12-18 07:47:13 890880 ----a-w- C:\Windows\SysWow64\msctf.dll
2012-12-18 07:47:13 707584 ----a-w- C:\Windows\System32\AppXDeploymentExtensions.dll
2012-12-18 07:47:13 1131520 ----a-w- C:\Windows\System32\AppXDeploymentServer.dll
2012-12-18 07:47:13 1120768 ----a-w- C:\Windows\System32\msctf.dll
2012-12-18 07:47:12 6971624 ----a-w- C:\Windows\System32\ntoskrnl.exe
2012-12-18 07:47:11 83456 ----a-w- C:\Windows\System32\drivers\hidclass.sys
2012-12-18 07:47:11 79080 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2012-12-18 07:47:11 7168 ----a-w- C:\Windows\System32\KBDKURD.DLL
2012-12-18 07:47:11 6656 ----a-w- C:\Windows\SysWow64\KBDKURD.DLL
2012-12-18 07:47:11 496872 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2012-12-18 07:47:11 49152 ----a-w- C:\Windows\System32\DevDispItemProvider.dll
2012-12-18 07:47:11 488168 ----a-w- C:\Windows\System32\drivers\usbport.sys
2012-12-18 07:47:11 39936 ----a-w- C:\Windows\System32\drivers\hidi2c.sys
2012-12-18 07:47:11 36352 ----a-w- C:\Windows\SysWow64\DevDispItemProvider.dll
2012-12-18 07:47:11 32256 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2012-12-18 07:47:11 27136 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2012-12-18 07:47:11 21736 ----a-w- C:\Windows\System32\drivers\usbd.sys
2012-12-18 07:47:11 1184256 ----a-w- C:\Windows\System32\Display.dll
2012-12-18 07:47:11 1164800 ----a-w- C:\Windows\SysWow64\Display.dll
2012-12-18 07:47:10 641536 ----a-w- C:\Windows\System32\WSShared.dll
2012-12-18 07:47:10 523776 ----a-w- C:\Windows\SysWow64\WSShared.dll
2012-12-18 07:47:09 198656 ----a-w- C:\Windows\System32\Windows.ApplicationModel.Store.dll
2012-12-18 07:47:09 163840 ----a-w- C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll
2012-12-18 07:47:09 143872 ----a-w- C:\Windows\SysWow64\Windows.ApplicationModel.Store.dll
2012-12-18 07:47:09 124928 ----a-w- C:\Windows\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
2012-12-17 11:18:18 -------- d-----w- C:\Program Files (x86)\Adobe
2012-12-17 11:17:42 -------- d-----w- C:\Windows\System32\appmgmt
2012-12-17 11:02:41 -------- d-----w- C:\Users\userxxx\AppData\Roaming\ViUpdater
2012-12-17 11:02:41 -------- d-----w- C:\Users\userxxx\AppData\Roaming\ViStart
2012-12-17 11:02:34 -------- d-----w- C:\Program Files (x86)\Mail.Ru
2012-12-17 10:44:11 -------- d-----w- C:\Windows\explorer7
2012-12-17 10:30:01 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Skype
2012-12-17 10:29:59 -------- d-----w- C:\Program Files (x86)\Common Files\Skype
2012-12-17 10:29:55 -------- d-----r- C:\Program Files (x86)\Skype
2012-12-17 10:29:54 -------- d-----w- C:\ProgramData\Skype
2012-12-17 10:24:20 -------- d-----w- C:\Program Files (x86)\ViUpdater
2012-12-17 10:24:13 -------- d-----w- C:\Users\userxxx\AppData\Roaming\HamsterSoft
2012-12-17 10:19:15 -------- d-----w- C:\Program Files (x86)\ViStart
2012-12-15 13:03:19 -------- d-----w- C:\Program Files\Microsoft Silverlight
2012-12-15 13:03:18 -------- d-----w- C:\Program Files (x86)\Microsoft Silverlight
2012-12-15 12:17:15 -------- d-----w- C:\Users\userxxx\AppData\Local\Octoshape
2012-12-15 12:17:14 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Octoshape
2012-12-14 16:14:47 -------- d-----w- C:\ProgramData\Sun
2012-12-14 16:14:46 -------- d-----w- C:\Program Files (x86)\Common Files\Java
2012-12-14 16:14:43 821736 ----a-w- C:\Windows\SysWow64\npDeployJava1.dll
2012-12-14 16:14:43 746984 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2012-12-14 16:14:43 246760 ----a-w- C:\Windows\SysWow64\javaws.exe
2012-12-14 16:14:40 95208 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
2012-12-14 16:14:40 174056 ----a-w- C:\Windows\SysWow64\javaw.exe
2012-12-14 16:14:40 174056 ----a-w- C:\Windows\SysWow64\java.exe
2012-12-14 16:14:31 -------- d-----w- C:\Program Files (x86)\Java
2012-12-14 06:09:02 144384 ----a-w- C:\Windows\System32\tssdisai.dll
2012-12-14 06:09:01 135680 ----a-w- C:\Windows\System32\appserverai.dll
2012-12-14 06:09:01 126976 ----a-w- C:\Windows\System32\RDWebAI.dll
2012-12-14 06:09:01 122880 ----a-w- C:\Windows\System32\VmHostAI.dll
2012-12-14 06:08:58 148480 ----a-w- C:\Windows\System32\poqexec.exe
2012-12-14 06:08:58 132608 ----a-w- C:\Windows\SysWow64\poqexec.exe
2012-12-13 16:42:46 213696 ----a-w- C:\ProgramData\Microsoft\Windows\Sqm\Manifest\Sqm10187.bin
2012-12-13 07:21:24 16114176 ----a-w- C:\Program Files\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll
2012-12-13 07:21:22 15541248 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll
2012-12-13 07:18:23 67413224 ----a-w- C:\Windows\System32\MRT.exe
2012-12-12 07:34:01 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2012-12-12 07:34:01 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-12-12 07:33:59 945152 ----a-w- C:\Windows\System32\resetengmig.dll
2012-12-12 07:33:59 443392 ----a-w- C:\Windows\System32\ReAgent.dll
2012-12-12 07:33:59 375808 ----a-w- C:\Windows\SysWow64\ReAgent.dll
2012-12-12 07:33:59 132096 ----a-w- C:\Windows\System32\sysreset.exe
2012-12-12 07:33:59 1009664 ----a-w- C:\Windows\System32\reseteng.dll
2012-12-12 06:42:25 67584 ----a-w- C:\Windows\System32\dpnathlp.dll
2012-12-12 06:42:25 58880 ----a-w- C:\Windows\SysWow64\dpnathlp.dll
2012-12-12 06:42:25 463872 ----a-w- C:\Windows\System32\dpnet.dll
2012-12-12 06:42:25 375808 ----a-w- C:\Windows\SysWow64\dpnet.dll
2012-12-12 06:42:25 34816 ----a-w- C:\Windows\System32\dpnsvr.exe
2012-12-12 06:42:25 32256 ----a-w- C:\Windows\SysWow64\dpnsvr.exe
2012-12-12 06:42:24 9216 ----a-w- C:\Windows\System32\dpnhupnp.dll
2012-12-12 06:42:24 9216 ----a-w- C:\Windows\System32\dpnhpast.dll
2012-12-12 06:42:24 8192 ----a-w- C:\Windows\SysWow64\dpnhupnp.dll
2012-12-12 06:42:24 8192 ----a-w- C:\Windows\SysWow64\dpnhpast.dll
2012-12-12 06:42:24 4096 ----a-w- C:\Windows\System32\dpnlobby.dll
2012-12-12 06:42:24 3584 ----a-w- C:\Windows\System32\dpnaddr.dll
2012-12-12 06:42:24 3072 ----a-w- C:\Windows\SysWow64\dpnlobby.dll
2012-12-12 06:42:24 2560 ----a-w- C:\Windows\SysWow64\dpnaddr.dll
2012-12-12 06:42:22 96256 ----a-w- C:\Windows\System32\fontsub.dll
2012-12-12 06:42:22 75776 ----a-w- C:\Windows\SysWow64\fontsub.dll
2012-12-12 06:42:22 3072 ----a-w- C:\Windows\SysWow64\lpk.dll
2012-12-12 06:42:22 3072 ----a-w- C:\Windows\System32\lpk.dll
2012-12-12 06:42:22 14336 ----a-w- C:\Windows\System32\dciman32.dll
2012-12-12 06:42:22 10752 ----a-w- C:\Windows\SysWow64\dciman32.dll
2012-12-12 06:42:21 4056576 ----a-w- C:\Windows\System32\win32k.sys
2012-12-12 06:42:17 19439616 ----a-w- C:\Windows\System32\mshtml.dll
2012-12-12 06:42:11 14324224 ----a-w- C:\Windows\SysWow64\mshtml.dll
2012-12-12 06:42:08 15416832 ----a-w- C:\Windows\System32\ieframe.dll
2012-12-12 06:42:02 13740032 ----a-w- C:\Windows\SysWow64\ieframe.dll
2012-12-12 06:42:01 2246656 ----a-w- C:\Windows\System32\wininet.dll
2012-12-12 06:42:00 2162176 ----a-w- C:\Windows\System32\iertutil.dll
2012-12-12 06:41:59 1775104 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-12-12 06:41:59 1684992 ----a-w- C:\Windows\SysWow64\iertutil.dll
2012-12-12 06:41:58 1352704 ----a-w- C:\Windows\System32\urlmon.dll
2012-12-12 06:41:58 1138688 ----a-w- C:\Windows\SysWow64\urlmon.dll
2012-12-12 06:41:57 775152 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe
2012-12-12 06:41:57 770520 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe
2012-12-12 06:41:57 603136 ----a-w- C:\Windows\System32\msfeeds.dll
2012-12-12 06:41:56 907776 ----a-w- C:\Windows\System32\uxtheme.dll
2012-12-12 06:41:56 493056 ----a-w- C:\Windows\SysWow64\msfeeds.dll
2012-12-12 06:41:56 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll
2012-12-12 06:41:55 2881536 ----a-w- C:\Windows\SysWow64\jscript9.dll
2012-12-12 06:41:55 136704 ----a-w- C:\Windows\System32\iesysprep.dll
2012-12-12 06:41:54 3966464 ----a-w- C:\Windows\System32\jscript9.dll
2012-12-12 06:41:53 854528 ----a-w- C:\Windows\System32\jscript.dll
2012-12-12 06:41:53 690688 ----a-w- C:\Windows\SysWow64\jscript.dll
2012-12-12 06:41:53 50688 ----a-w- C:\Windows\System32\ie4uinit.exe
2012-12-12 06:41:52 53760 ----a-w- C:\Windows\System32\UXInit.dll
2012-12-12 06:41:52 44032 ----a-w- C:\Windows\SysWow64\UXInit.dll
2012-12-12 06:41:52 39936 ----a-w- C:\Windows\System32\iernonce.dll
2012-12-12 06:41:52 356352 ----a-w- C:\Program Files\Internet Explorer\IEShims.dll
2012-12-12 06:41:52 33280 ----a-w- C:\Windows\SysWow64\iernonce.dll
2012-12-12 06:41:52 235520 ----a-w- C:\Program Files (x86)\Internet Explorer\IEShims.dll
2012-12-12 06:41:51 700928 ----a-w- C:\Program Files\Internet Explorer\ieproxy.dll
2012-12-12 06:41:51 67072 ----a-w- C:\Windows\System32\iesetup.dll
2012-12-12 06:41:51 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll
2012-12-12 06:41:51 53248 ----a-w- C:\Windows\System32\jsproxy.dll
2012-12-12 06:41:51 38400 ----a-w- C:\Windows\SysWow64\jsproxy.dll
2012-12-12 06:41:51 257024 ----a-w- C:\Program Files (x86)\Internet Explorer\ieproxy.dll
2012-12-12 06:41:50 534528 ----a-w- C:\Windows\SysWow64\uxtheme.dll
2012-12-12 06:41:50 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-12-12 06:41:50 2706432 ----a-w- C:\Windows\System32\mshtml.tlb
2012-12-06 11:01:56 -------- d-----w- C:\Users\userxxx\AppData\Local\Facebook
2012-12-06 08:06:24 279656 ------w- C:\Windows\System32\MpSigStub.exe
2012-12-06 07:45:48 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin7.dll
2012-12-06 07:45:48 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin6.dll
2012-12-06 07:45:48 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin5.dll
2012-12-06 07:45:48 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin4.dll
2012-12-06 07:45:48 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin3.dll
2012-12-06 07:45:48 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin2.dll
2012-12-06 07:45:48 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin.dll
2012-12-06 07:45:06 -------- d-----w- C:\Program Files (x86)\QuickTime
2012-12-05 13:45:41 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Apple Computer
2012-12-05 13:45:41 -------- d-----w- C:\Users\userxxx\AppData\Local\Apple Computer
2012-12-05 13:45:40 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
2012-12-05 13:45:40 -------- dc----w- C:\Windows\System32\DRVSTORE
2012-12-05 13:45:19 -------- d-----w- C:\ProgramData\Apple Computer
2012-12-05 13:45:19 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2012-12-05 13:45:19 -------- d-----w- C:\Program Files\iTunes
2012-12-05 13:45:19 -------- d-----w- C:\Program Files\iPod
2012-12-05 13:45:19 -------- d-----w- C:\Program Files (x86)\iTunes
2012-12-05 13:45:14 -------- d-----w- C:\Users\userxxx\AppData\Local\Apple
2012-12-05 13:45:13 -------- d-----w- C:\Program Files (x86)\Apple Software Update
2012-12-05 13:44:47 -------- d-----w- C:\Program Files\Common Files\Apple
2012-12-05 13:44:40 -------- d-----w- C:\Program Files\Bonjour
2012-12-05 13:44:40 -------- d-----w- C:\Program Files (x86)\Bonjour
2012-12-05 13:44:09 -------- d-----w- C:\ProgramData\Apple
2012-12-05 13:44:09 -------- d-----w- C:\Program Files (x86)\Common Files\Apple
2012-12-05 13:34:33 15088 ----a-w- C:\Users\userxxx\AppData\Roaming\Microsoft\IdentityCRL\Production\ppcrlconfig.dll
2012-12-05 13:32:35 -------- d-----w- C:\Program Files (x86)\MSECache
2012-12-05 12:43:43 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Media Player Classic
2012-12-05 07:25:03 -------- d-----w- C:\Program Files (x86)\TeamViewer
2012-12-05 06:43:31 17888 ----a-w- C:\Windows\System32\msvcr100_clr0400.dll
2012-12-05 06:43:22 17888 ----a-w- C:\Windows\SysWow64\msvcr100_clr0400.dll
2012-12-05 06:42:33 929792 ----a-w- C:\Windows\SysWow64\mfnetsrc.dll
2012-12-05 06:42:33 677888 ----a-w- C:\Windows\System32\mfnetcore.dll
2012-12-05 06:42:33 673280 ----a-w- C:\Windows\System32\mfmpeg2srcsnk.dll
2012-12-05 06:42:33 568832 ----a-w- C:\Windows\SysWow64\mfnetcore.dll
2012-12-05 06:42:33 1172992 ----a-w- C:\Windows\System32\mfnetsrc.dll
2012-12-05 06:42:32 850944 ----a-w- C:\Windows\SysWow64\mfasfsrcsnk.dll
2012-12-05 06:42:32 513024 ----a-w- C:\Windows\SysWow64\mfmpeg2srcsnk.dll
2012-12-05 06:42:32 1048064 ----a-w- C:\Windows\System32\mfasfsrcsnk.dll
2012-12-05 06:42:22 618496 ----a-w- C:\Windows\System32\drivers\srv2.sys
2012-12-05 06:42:22 3244032 ----a-w- C:\Windows\System32\rdpcorets.dll
2012-12-05 06:42:22 27880 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys
2012-12-05 06:42:22 274432 ----a-w- C:\Windows\System32\srmstormod.dll
2012-12-05 06:42:22 202240 ----a-w- C:\Windows\SysWow64\srmstormod.dll
2012-12-05 06:42:22 115712 ----a-w- C:\Windows\System32\wbem\PolicMan.dll
2012-12-05 06:42:22 109568 ----a-w- C:\Windows\System32\dskquota.dll
2012-12-05 06:42:21 987648 ----a-w- C:\Windows\SysWow64\srmclient.dll
2012-12-05 06:42:21 87040 ----a-w- C:\Windows\System32\srmtrace.dll
2012-12-05 06:42:21 84992 ----a-w- C:\Windows\SysWow64\wbem\PolicMan.dll
2012-12-05 06:42:21 82944 ----a-w- C:\Windows\SysWow64\dskquota.dll
2012-12-05 06:42:21 68096 ----a-w- C:\Windows\SysWow64\srmtrace.dll
2012-12-05 06:42:21 652800 ----a-w- C:\Windows\System32\srmscan.dll
2012-12-05 06:42:21 487936 ----a-w- C:\Windows\SysWow64\srmscan.dll
2012-12-05 06:42:21 36352 ----a-w- C:\Windows\System32\rfxvmt.dll
2012-12-05 06:42:21 30720 ----a-w- C:\Windows\System32\srm_ps.dll
2012-12-05 06:42:21 279040 ----a-w- C:\Windows\System32\srm.dll
2012-12-05 06:42:21 278528 ----a-w- C:\Windows\SysWow64\srm.dll
2012-12-05 06:42:21 235520 ----a-w- C:\Windows\System32\rdpudd.dll
2012-12-05 06:42:21 172032 ----a-w- C:\Windows\System32\srmshell.dll
2012-12-05 06:42:21 15872 ----a-w- C:\Windows\SysWow64\srm_ps.dll
2012-12-05 06:42:21 1347072 ----a-w- C:\Windows\System32\srmclient.dll
2012-12-05 06:42:21 134144 ----a-w- C:\Windows\System32\adrclient.dll
2012-12-05 06:42:21 128000 ----a-w- C:\Windows\SysWow64\srmshell.dll
2012-12-05 06:42:21 104448 ----a-w- C:\Windows\SysWow64\adrclient.dll
2012-12-05 06:42:15 396008 ----a-w- C:\Windows\System32\hal.dll
2012-12-05 06:42:02 3554304 ----a-w- C:\Windows\System32\tquery.dll
2012-12-05 06:42:00 3236864 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\tipskins.dll
2012-12-05 06:42:00 2206208 ----a-w- C:\Windows\System32\dwmcore.dll
2012-12-05 06:42:00 2116096 ----a-w- C:\Windows\System32\mssrch.dll
2012-12-05 06:41:59 2764288 ----a-w- C:\Windows\SysWow64\tquery.dll
2012-12-05 06:41:59 2380944 ----a-w- C:\Windows\explorer.exe
2012-12-05 06:41:58 2115952 ----a-w- C:\Windows\SysWow64\explorer.exe
2012-12-05 06:41:58 1841152 ----a-w- C:\Windows\SysWow64\dwmcore.dll
2012-12-05 06:41:58 1610240 ----a-w- C:\Windows\SysWow64\mssrch.dll
2012-12-05 06:41:58 1395712 ----a-w- C:\Windows\System32\Windows.UI.Immersive.dll
2012-12-05 06:41:57 793200 ----a-w- C:\Windows\System32\mfplat.dll
2012-12-05 06:41:57 590848 ----a-w- C:\Windows\System32\SHCore.dll
2012-12-05 06:41:57 579584 ----a-w- C:\Windows\System32\StructuredQuery.dll
2012-12-05 06:41:57 1265152 ----a-w- C:\Windows\System32\lsasrv.dll
2012-12-05 06:41:57 1226752 ----a-w- C:\Windows\SysWow64\Windows.UI.Immersive.dll
2012-12-05 06:41:56 904192 ----a-w- C:\Windows\System32\MPSSVC.dll
2012-12-05 06:41:56 816128 ----a-w- C:\Windows\System32\SearchIndexer.exe
2012-12-05 06:41:56 594944 ----a-w- C:\Windows\System32\Windows.Networking.dll
2012-12-05 06:41:56 1403784 ----a-w- C:\Windows\System32\winload.efi
2012-12-05 06:41:55 816640 ----a-w- C:\Windows\System32\kerberos.dll
2012-12-05 06:41:55 612416 ----a-w- C:\Windows\SysWow64\mfplat.dll
2012-12-05 06:41:55 561152 ----a-w- C:\Windows\System32\mfmp4srcsnk.dll
2012-12-05 06:41:55 460800 ----a-w- C:\Windows\SysWow64\SHCore.dll
2012-12-05 06:41:55 435712 ----a-w- C:\Windows\System32\mssph.dll
2012-12-05 06:41:55 414720 ----a-w- C:\Windows\SysWow64\StructuredQuery.dll
2012-12-05 06:41:55 373760 ----a-w- C:\Windows\System32\SearchProtocolHost.exe
2012-12-05 06:41:55 1267424 ----a-w- C:\Windows\System32\winload.exe
2012-12-05 06:41:55 1217328 ----a-w- C:\Windows\System32\winresume.efi
2012-12-05 06:41:55 1093880 ----a-w- C:\Windows\System32\winresume.exe
2012-12-05 06:41:55 1001192 ----a-w- C:\Windows\System32\drivers\ndis.sys
2012-12-05 06:41:54 592896 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
2012-12-05 06:41:54 517120 ----a-w- C:\Windows\System32\winlogon.exe
2012-12-05 06:41:54 441576 ----a-w- C:\Windows\System32\drivers\netio.sys
2012-12-05 06:41:54 410624 ----a-w- C:\Windows\SysWow64\Windows.Networking.dll
2012-12-05 06:41:54 286208 ----a-w- C:\Windows\System32\drivers\portcls.sys
2012-12-05 06:41:53 653824 ----a-w- C:\Windows\SysWow64\kerberos.dll
2012-12-05 06:41:53 58088 ----a-w- C:\Windows\System32\drivers\dam.sys
2012-12-05 06:41:53 503080 ----a-w- C:\Windows\System32\ci.dll
2012-12-05 06:41:53 411136 ----a-w- C:\Windows\SysWow64\mfmp4srcsnk.dll
2012-12-05 06:41:53 336104 ----a-w- C:\Windows\System32\drivers\Classpnp.sys
2012-12-05 06:41:53 303104 ----a-w- C:\Windows\SysWow64\SearchProtocolHost.exe
2012-12-05 06:41:53 154112 ----a-w- C:\Windows\System32\Windows.Storage.Compression.dll
2012-12-05 06:41:53 1045504 ----a-w- C:\Windows\System32\usercpl.dll
2012-12-05 06:41:52 962560 ----a-w- C:\Windows\SysWow64\usercpl.dll
2012-12-05 06:41:52 671232 ----a-w- C:\Windows\SysWow64\SearchIndexer.exe
2012-12-05 06:41:52 264704 ----a-w- C:\Windows\System32\ListSvc.dll
2012-12-05 06:41:52 244224 ----a-w- C:\Windows\System32\dhcpcore6.dll
2012-12-05 06:41:52 190976 ----a-w- C:\Windows\System32\bdesvc.dll
2012-12-05 06:41:51 56552 ----a-w- C:\Windows\System32\drivers\sdstor.sys
2012-12-05 06:41:51 562392 ----a-w- C:\Windows\System32\drivers\cng.sys
2012-12-05 06:41:51 505344 ----a-w- C:\Windows\System32\SpaceControl.dll
2012-12-05 06:41:51 415232 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\tiptsf.dll
2012-12-05 06:41:51 408064 ----a-w- C:\Windows\SysWow64\mssph.dll
2012-12-05 06:41:51 393416 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe
2012-12-05 06:41:51 33512 ----a-w- C:\Windows\System32\drivers\battc.sys
2012-12-05 06:41:51 21064 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
2012-12-05 06:41:51 204800 ----a-w- C:\Windows\SysWow64\dhcpcore6.dll
2012-12-05 06:41:51 197120 ----a-w- C:\Windows\System32\SearchFilterHost.exe
2012-12-05 06:41:50 219648 ----a-w- C:\Windows\SysWow64\input.dll
2012-12-05 06:41:50 172264 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2012-12-05 06:41:50 116224 ----a-w- C:\Windows\SysWow64\Windows.Storage.Compression.dll
2012-12-05 06:41:49 62976 ----a-w- C:\Windows\System32\dhcpcsvc6.dll
2012-12-05 06:41:49 51712 ----a-w- C:\Windows\SysWow64\dhcpcsvc6.dll
2012-12-05 06:41:49 259584 ----a-w- C:\Windows\System32\input.dll
2012-12-05 06:41:48 745984 ----a-w- C:\Windows\System32\mssvp.dll
2012-12-05 06:41:48 658432 ----a-w- C:\Windows\SysWow64\mssvp.dll
2012-12-05 06:41:48 65024 ----a-w- C:\Windows\System32\msscntrs.dll
2012-12-05 06:41:48 355328 ----a-w- C:\Windows\System32\mswsock.dll
2012-12-05 06:41:48 34816 ----a-w- C:\Windows\System32\microsoft-windows-pdc.dll
2012-12-05 06:41:48 289280 ----a-w- C:\Windows\SysWow64\mswsock.dll
2012-12-05 06:41:47 99840 ----a-w- C:\Windows\SysWow64\AppxSip.dll
2012-12-05 06:41:47 757760 ----a-w- C:\Windows\System32\FirewallAPI.dll
2012-12-05 06:41:47 550912 ----a-w- C:\Windows\SysWow64\FirewallAPI.dll
2012-12-05 06:41:47 47616 ----a-w- C:\Windows\SysWow64\PCPKsp.dll
2012-12-05 06:41:47 331776 ----a-w- C:\Windows\System32\dhcpcore.dll
2012-12-05 06:41:47 270336 ----a-w- C:\Windows\SysWow64\dhcpcore.dll
2012-12-05 06:41:47 170496 ----a-w- C:\Windows\SysWow64\SearchFilterHost.exe
2012-12-05 06:41:47 1420800 ----a-w- C:\Windows\SysWow64\DWrite.dll
2012-12-05 06:41:47 1294336 ----a-w- C:\Windows\System32\gdi32.dll
2012-12-05 06:41:47 1280000 ----a-w- C:\Windows\System32\FntCache.dll
2012-12-05 06:41:47 118784 ----a-w- C:\Windows\System32\AppxSip.dll
2012-12-05 06:41:46 93184 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\TipBand.dll
2012-12-05 06:41:46 81920 ----a-w- C:\Windows\System32\dhcpcsvc.dll
2012-12-05 06:41:46 60416 ----a-w- C:\Windows\SysWow64\dhcpcsvc.dll
2012-12-05 06:41:46 55808 ----a-w- C:\Windows\System32\PCPKsp.dll
2012-12-05 06:41:46 49664 ----a-w- C:\Windows\System32\BdeUISrv.exe
2012-12-05 06:41:46 370176 ----a-w- C:\Windows\System32\SysFxUI.dll
2012-12-05 06:41:46 246272 ----a-w- C:\Windows\System32\mssphtb.dll
2012-12-05 06:41:46 186880 ----a-w- C:\Windows\SysWow64\mssphtb.dll
2012-12-05 06:41:46 1836032 ----a-w- C:\Windows\System32\DWrite.dll
2012-12-05 06:41:46 105984 ----a-w- C:\Windows\System32\icfupgd.dll
2012-12-05 06:41:45 96256 ----a-w- C:\Windows\System32\mssprxy.dll
2012-12-05 06:41:45 94208 ----a-w- C:\Windows\SysWow64\mssitlb.dll
2012-12-05 06:41:45 48640 ----a-w- C:\Windows\SysWow64\msscntrs.dll
2012-12-05 06:41:45 35328 ----a-w- C:\Windows\SysWow64\mssprxy.dll
2012-12-05 06:41:45 24576 ----a-w- C:\Windows\System32\wfapigp.dll
2012-12-05 06:41:45 19968 ----a-w- C:\Windows\SysWow64\wfapigp.dll
2012-12-05 06:41:45 14336 ----a-w- C:\Windows\System32\msshooks.dll
2012-12-05 06:41:45 10752 ----a-w- C:\Windows\SysWow64\msshooks.dll
2012-12-05 06:41:45 102400 ----a-w- C:\Windows\System32\mssitlb.dll
2012-12-05 06:41:45 1022464 ----a-w- C:\Windows\SysWow64\gdi32.dll
2012-12-05 06:41:44 7680 ----a-w- C:\Windows\System32\kbdhebl3.dll
2012-12-05 06:41:44 74752 ----a-w- C:\Windows\System32\drivers\mpsdrv.sys
2012-12-05 06:41:44 7168 ----a-w- C:\Windows\SysWow64\kbdhebl3.dll
2012-12-05 06:41:44 5632 ----a-w- C:\Windows\System32\drivers\drmkaud.sys
2012-12-05 06:41:44 275968 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\TipRes.dll
2012-12-05 06:41:44 111616 ----a-w- C:\Windows\System32\drivers\drmk.sys
2012-12-05 06:35:58 94208 ----a-w- C:\Windows\System32\synceng.dll
2012-12-05 06:35:58 72192 ----a-w- C:\Windows\SysWow64\synceng.dll
2012-12-05 06:35:57 2893824 ----a-w- C:\Windows\System32\msmpeg2vdec.dll
2012-12-05 06:35:57 2400256 ----a-w- C:\Windows\SysWow64\msmpeg2vdec.dll
2012-12-05 06:35:48 26624 ----a-w- C:\Windows\System32\ReAgentc.exe
2012-12-05 06:35:48 24064 ----a-w- C:\Windows\SysWow64\ReAgentc.exe
2012-12-05 06:35:36 405504 ----a-w- C:\Windows\System32\pcasvc.dll
2012-12-05 06:35:36 31232 ----a-w- C:\Windows\System32\pcadm.dll
2012-12-05 06:35:36 13312 ----a-w- C:\Windows\System32\pcalua.exe
2012-12-05 06:35:36 11776 ----a-w- C:\Windows\System32\pcaevts.dll
2012-12-04 13:14:52 -------- d-----w- C:\Users\userxxx\AppData\Local\Diagnostics
2012-12-04 13:12:08 -------- d-----w- C:\Users\userxxx\AppData\Roaming\IDM
2012-12-04 13:12:08 -------- d-----w- C:\Users\userxxx\AppData\Roaming\DMCache
2012-12-04 13:12:06 -------- d-----w- C:\Program Files (x86)\Internet Download Manager
2012-12-04 13:12:01 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Adobe32x64-
2012-12-04 13:10:05 81920 ----a-r- C:\Users\userxxx\AppData\Roaming\Microsoft\Installer\{E36FB5F6-94FE-47BF-9FBE-6D8CBCFB0269}\Notes.exe
2012-12-04 13:10:05 81920 ----a-r- C:\Users\userxxx\AppData\Roaming\Microsoft\Installer\{E36FB5F6-94FE-47BF-9FBE-6D8CBCFB0269}\NMinder.exe
2012-12-04 13:10:05 45056 ----a-r- C:\Users\userxxx\AppData\Roaming\Microsoft\Installer\{E36FB5F6-94FE-47BF-9FBE-6D8CBCFB0269}\NSD.exe
2012-12-04 13:09:46 -------- d-----w- C:\LN
2012-12-04 10:58:29 50784 ----a-w- C:\ProgramData\Microsoft\windowsfiltering\Sqm\Manifest\Sqm3.bin
2012-12-04 10:58:27 18528 ----a-w- C:\ProgramData\Microsoft\windowssampling\Sqm\Manifest\Sqm2.bin
2012-12-03 20:31:33 -------- d-----w- C:\ProgramData\FolderView
2012-12-03 20:30:38 -------- d-----w- C:\ProgramData\USBChargerPlus
2012-12-03 20:30:20 -------- d-----w- C:\Windows\SoftwareDistribution
2012-12-03 15:38:16 -------- d-----w- C:\Users\userxxx\AppData\Roaming\WinRAR
2012-12-03 08:18:18 -------- d-----w- C:\Users\userxxx\AppData\Local\Macromedia
2012-12-03 07:29:55 8192 ----a-w- C:\Windows\SysWow64\srvany.exe
2012-12-03 07:29:55 151552 ----a-w- C:\Windows\KMService.exe
2012-12-03 07:13:31 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Identities
2012-12-03 07:07:39 -------- d-----w- C:\Program Files\WinRAR
2012-12-03 07:03:59 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Mozilla
2012-12-03 07:03:59 -------- d-----w- C:\Users\userxxx\AppData\Local\Mozilla
2012-12-03 07:03:42 -------- d-----w- C:\ProgramData\Mozilla
2012-12-03 07:03:41 96224 ----a-w- C:\Program Files (x86)\Mozilla Firefox\webapprt-stub.exe
2012-12-03 07:03:41 96224 ----a-w- C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll
2012-12-03 07:03:41 92640 ----a-w- C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll
2012-12-03 07:03:41 916960 ----a-w- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
2012-12-03 07:03:41 91104 ----a-w- C:\Program Files (x86)\Mozilla Firefox\smime3.dll
2012-12-03 07:03:41 890048 ----a-w- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
2012-12-03 07:03:41 810976 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll
2012-12-03 07:03:41 770384 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll
2012-12-03 07:03:41 73696 ----a-w- C:\Program Files (x86)\Mozilla Firefox\breakpadinjector.dll
2012-12-03 07:03:41 638432 ----a-w- C:\Program Files (x86)\Mozilla Firefox\nss3.dll
2012-12-03 07:03:41 58848 ----a-w- C:\Program Files (x86)\Mozilla Firefox\libEGL.dll
2012-12-03 07:03:41 472544 ----a-w- C:\Program Files (x86)\Mozilla Firefox\libGLESv2.dll
2012-12-03 07:03:41 4220896 ----a-w- C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll
2012-12-03 07:03:41 421200 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll
2012-12-03 07:03:41 370656 ----a-w- C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll
2012-12-03 07:03:41 270816 ----a-w- C:\Program Files (x86)\Mozilla Firefox\updater.exe
2012-12-03 07:03:41 262112 ----a-w- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
2012-12-03 07:03:41 258528 ----a-w- C:\Program Files (x86)\Mozilla Firefox\freebl3.dll
2012-12-03 07:03:41 2397152 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2012-12-03 07:03:41 21472 ----a-w- C:\Program Files (x86)\Mozilla Firefox\plc4.dll
2012-12-03 07:03:41 2106216 ----a-w- C:\Program Files (x86)\Mozilla Firefox\D3DCompiler_43.dll
2012-12-03 07:03:41 20960 ----a-w- C:\Program Files (x86)\Mozilla Firefox\plds4.dll
2012-12-03 07:03:41 1998168 ----a-w- C:\Program Files (x86)\Mozilla Firefox\d3dx9_43.dll
2012-12-03 07:03:41 19424 ----a-w- C:\Program Files (x86)\Mozilla Firefox\xpcom.dll
2012-12-03 07:03:41 192728 ----a-w- C:\Program Files (x86)\Mozilla Firefox\maintenanceservice_installer.exe
2012-12-03 07:03:41 18912 ----a-w- C:\Program Files (x86)\Mozilla Firefox\AccessibleMarshal.dll
2012-12-03 07:03:41 172000 ----a-w- C:\Program Files (x86)\Mozilla Firefox\nspr4.dll
2012-12-03 07:03:41 16864 ----a-w- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
2012-12-03 07:03:41 15840 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll
2012-12-03 07:03:41 157272 ----a-w- C:\Program Files (x86)\Mozilla Firefox\webapp-uninstaller.exe
2012-12-03 07:03:41 155104 ----a-w- C:\Program Files (x86)\Mozilla Firefox\softokn3.dll
2012-12-03 07:03:41 15112160 ----a-w- C:\Program Files (x86)\Mozilla Firefox\xul.dll
2012-12-03 07:03:41 145376 ----a-w- C:\Program Files (x86)\Mozilla Firefox\ssl3.dll
2012-12-03 07:03:41 124896 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozglue.dll
2012-12-03 07:03:41 116192 ----a-w- C:\Program Files (x86)\Mozilla Firefox\crashreporter.exe
2012-12-03 07:03:41 115168 ----a-w- C:\Program Files (x86)\Mozilla Firefox\maintenanceservice.exe
2012-12-03 07:03:41 -------- d-----w- C:\Program Files (x86)\Mozilla Maintenance Service
2012-12-03 07:03:41 -------- d-----w- C:\Program Files (x86)\Mozilla Firefox
2012-12-03 07:02:51 -------- d-----w- C:\Users\userxxx\AppData\Local\Adobe
2012-12-03 06:46:56 -------- d-----w- C:\Program Files\Common Files\DESIGNER
2012-12-03 06:46:38 -------- d-----w- C:\Program Files\Microsoft Synchronization Services
2012-12-03 06:46:27 -------- d-----w- C:\Windows\PCHEALTH
2012-12-03 06:46:27 -------- d-----w- C:\Program Files\Microsoft Sync Framework
2012-12-03 06:46:27 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition
2012-12-03 06:45:54 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-12-03 06:45:42 -------- d-----w- C:\Program Files\Microsoft Analysis Services
2012-12-03 06:45:42 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services
2012-12-03 06:45:37 -------- d-----w- C:\Users\userxxx\AppData\Local\Microsoft Help
2012-12-03 06:45:36 -------- d-----w- C:\ProgramData\Microsoft Help
2012-12-03 06:45:36 -------- d-----w- C:\Program Files\Microsoft Office
2012-12-03 06:45:30 -------- d--h--r- C:\MSOCache
2012-12-03 06:43:34 165376 ----a-w- C:\Windows\SysWow64\unrar.dll
2012-12-03 06:43:28 839680 ----a-w- C:\Windows\SysWow64\lameACM.acm
2012-12-03 06:43:27 790528 ----a-w- C:\Windows\SysWow64\xvidcore.dll
2012-12-03 06:43:27 217088 ----a-w- C:\Windows\SysWow64\yv12vfw.dll
2012-12-03 06:43:27 151552 ----a-w- C:\Windows\SysWow64\ac3acm.acm
2012-12-03 06:43:27 134144 ----a-w- C:\Windows\SysWow64\xvidvfw.dll
2012-12-03 06:43:27 108032 ----a-w- C:\Windows\SysWow64\ff_vfw.dll
2012-12-03 06:43:25 -------- d-----w- C:\Program Files (x86)\K-Lite Codec Pack
2012-12-03 06:40:01 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Macromedia
2012-12-03 06:39:30 -------- d-----w- C:\Users\userxxx\AppData\Roaming\ASUS WebStorage
2012-12-03 06:39:28 408 ----a-w- C:\Users\userxxx\AppData\Roaming\sp_data.sys
2012-12-03 06:39:10 -------- d-----r- C:\Users\userxxx\Searches
2012-12-03 06:39:09 -------- d-----r- C:\Users\userxxx\Contacts
2012-12-03 06:38:28 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Adobe
2012-12-03 06:37:54 -------- d-----w- C:\Users\userxxx\AppData\Local\VirtualStore
2012-12-03 06:37:52 -------- d-----w- C:\Users\userxxx\AppData\Roaming\Intel
2012-12-03 06:37:52 -------- d-----w- C:\Users\userxxx\AppData\Local\Packages
2012-12-03 06:37:52 -------- d-----w- C:\Users\userxxx\AppData\Local\ASUS
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\Templates
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\Start Menu
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\SendTo
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\Recent
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\PrintHood
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\NetHood
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\My Documents
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\Local Settings
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\Cookies
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\Application Data
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\AppData\Local\Temporary Internet Files
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\AppData\Local\History
2012-12-03 06:37:49 -------- d-sh--we C:\Users\userxxx\AppData\Local\Application Data
2012-12-03 06:37:49 -------- d-s---w- C:\Users\userxxx\AppData\Roaming\Microsoft
2012-12-03 06:37:49 -------- d--h--w- C:\Users\userxxx\AppData
2012-12-03 06:37:49 -------- d-----w- C:\Users\userxxx\Roaming
2012-12-03 06:37:49 -------- d-----w- C:\Users\userxxx\AppData\Local\Temp
2012-12-03 06:37:49 -------- d-----w- C:\Users\userxxx\AppData\Local\Microsoft
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Videos
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Saved Games
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Pictures
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Music
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Links
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Favorites
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Downloads
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Documents
2012-12-03 06:37:49 -------- d-----r- C:\Users\userxxx\Desktop
2012-11-21 18:36:36 4927680 ----a-w- C:\Users\userxxx\AppData\Roaming\idman612.exe
2012-10-31 20:10:00 61824 ----a-w- C:\Windows\System32\drivers\AsusTP.sys
.
==================== Find6M ====================
.
2012-11-29 23:06:06 80736 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-11-29 23:06:06 695648 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-11-06 04:54:13 2205696 ----a-w- C:\Windows\SysWow64\PrintConfig.dll
2012-10-25 00:12:26 94208 ----a-w- C:\Windows\SysWow64\QuickTimeVR.qtx
2012-10-25 00:12:26 69632 ----a-w- C:\Windows\SysWow64\QuickTime.qts
2012-10-11 07:02:27 1636672 ----a-w- C:\Windows\System32\WMALFXGFXDSP.dll
2012-09-28 07:32:56 5989776 ----a-w- C:\Windows\System32\usbaaplrc.dll
2012-09-28 07:32:56 53760 ----a-w- C:\Windows\System32\drivers\usbaapl64.sys
2012-08-28 04:31:46 6293504 ---h--r- C:\UX31A.BIN
2012-08-25 00:17:10 192000 ----a-w- C:\Windows\SysWow64\ACEngSvr.exe
2012-08-21 10:34:12 4106256 ----a-w- C:\Windows\System32\drivers\RTKVHD64.sys
2012-08-21 10:01:20 125872 ----a-w- C:\Windows\System32\GEARAspi64.dll
2012-08-21 10:01:20 106928 ----a-w- C:\Windows\SysWow64\GEARAspi.dll
2012-08-21 06:51:10 881808 ----a-w- C:\Windows\System32\RtkApi64.dll
2012-08-20 10:25:40 2743440 ----a-w- C:\Windows\System32\RtPgEx64.dll
2012-08-19 21:53:16 4273192 ----a-w- C:\Windows\System32\drivers\NETwew00.sys
2012-08-16 06:40:12 276288 ----a-w- C:\Windows\SysWow64\IntelCpHeciSvc.exe
2012-08-16 06:40:06 170304 ----a-w- C:\Windows\System32\igfxtray.exe
2012-08-16 06:40:02 509248 ----a-w- C:\Windows\System32\igfxsrvc.exe
2012-08-16 06:40:00 440640 ----a-w- C:\Windows\System32\igfxpers.exe
2012-08-16 06:39:58 250688 ----a-w- C:\Windows\System32\igfxext.exe
2012-08-16 06:39:56 398656 ----a-w- C:\Windows\System32\hkcmd.exe
2012-08-16 06:39:54 5899072 ----a-w- C:\Windows\System32\GfxUI.exe
2012-08-16 06:39:50 184640 ----a-w- C:\Windows\System32\difx64.exe
2012-08-16 06:18:04 5972992 ----a-w- C:\Windows\System32\RCoRes64.dat
2012-08-16 03:27:28 109712 ----a-w- C:\Windows\System32\RCoInstII64.dll
2012-08-15 17:52:56 8518144 ----a-w- C:\Windows\System32\igd10umd64.dll
2012-08-15 17:52:56 80896 ----a-w- C:\Windows\System32\igdde64.dll
2012-08-15 17:52:56 64512 ----a-w- C:\Windows\SysWow64\igdde32.dll
2012-08-15 17:52:56 3582976 ----a-w- C:\Windows\System32\igdbcl64.dll
2012-08-15 17:52:56 2899968 ----a-w- C:\Windows\SysWow64\igdbcl32.dll
2012-08-15 17:52:54 6840832 ----a-w- C:\Windows\SysWow64\igd10umd32.dll
2012-08-15 17:52:52 8468480 ----a-w- C:\Windows\SysWow64\ig7icd32.dll
2012-08-15 17:52:52 755048 ----a-w- C:\Windows\SysWow64\igcodeckrng700.bin
2012-08-15 17:52:52 755048 ----a-w- C:\Windows\System32\igcodeckrng700.bin
2012-08-15 17:52:52 11307008 ----a-w- C:\Windows\System32\ig7icd64.dll
2012-08-15 17:52:46 94208 ----a-w- C:\Windows\System32\IccLibDll_x64.dll
2012-08-15 17:52:46 172544 ----a-w- C:\Windows\System32\gfxSrvc.dll
2012-08-15 17:52:46 110592 ----a-w- C:\Windows\System32\hccutils.dll
2012-08-13 10:06:52 1561744 ----a-w- C:\Windows\System32\RTSnMg64.cpl
2012-08-10 11:31:48 770688 ----a-w- C:\Windows\System32\SFSS_APO.dll
2012-08-10 07:57:22 1264272 ----a-w- C:\Windows\System32\RTCOM64.dll
2012-08-10 02:29:54 35296 ----a-w- C:\Windows\System32\drivers\intelaud.sys
2012-08-10 02:29:54 25568 ----a-w- C:\Windows\System32\drivers\iwdbus.sys
2012-08-10 02:29:54 1721576 ----a-w- C:\Windows\System32\WdfCoInstaller01009.dll
2012-08-10 02:29:52 48096 ----a-w- C:\Windows\System32\drivers\usb3Hub.sys
2012-08-10 02:29:52 188384 ----a-w- C:\Windows\System32\drivers\xHCIPort.sys
2012-08-09 02:09:53 256512 ----a-w- C:\Windows\System32\msvproc.dll
2012-08-09 02:09:53 214016 ----a-w- C:\Windows\SysWow64\msvproc.dll
2012-08-08 12:35:22 13824 ----a-w- C:\Windows\SysWow64\drivers\ru-RU\NdisImPlatform.sys.mui
2012-08-08 12:35:19 6144 ----a-w- C:\Windows\SysWow64\drivers\ru-RU\ndiscap.sys.mui
2012-08-08 12:35:19 2560 ----a-w- C:\Windows\SysWow64\drivers\ru-RU\wfplwfs.sys.mui
2012-08-03 10:18:02 1706640 ------w- C:\Windows\RtlExUpd.dll
2012-08-02 03:22:48 14992 ----a-w- C:\Windows\System32\drivers\kbfiltr.sys
2012-07-30 12:27:58 193576 ----a-w- C:\Windows\SysWow64\irstrtsv.exe
2012-07-30 12:27:52 43800 ----a-w- C:\Windows\System32\drivers\irstrtdv.sys
2012-07-30 11:27:08 21888 ----a-w- C:\Windows\System32\dptfpolicylpmservicehelper.exe
2012-07-30 11:27:06 36224 ----a-w- C:\Windows\System32\dptfpolicylpmservice.exe
2012-07-30 11:27:04 30080 ----a-w- C:\Windows\System32\dptfpolicycriticalservice.exe
2012-07-30 11:27:00 30592 ----a-w- C:\Windows\System32\DptfPolicyConfigTDPService.exe
2012-07-30 11:26:58 29056 ----a-w- C:\Windows\System32\DptfParticipantProcessorService.exe
2012-07-30 11:26:44 185216 ----a-w- C:\Windows\SysWow64\dptfinvalidpolicyremover.exe
2012-07-30 06:03:01 217 ----a-w- C:\ProgramData\SetStretch.cmd
2012-07-28 00:31:50 348160 ----a-w- C:\Windows\msvcr71.dll
2012-07-28 00:31:46 434252 ----a-w- C:\Windows\MSVCRTD.DLL
2012-07-26 08:23:07 778856 ----a-w- C:\Windows\SysWow64\PresentationNative_v0300.dll
2012-07-26 08:23:07 35400 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe
2012-07-26 08:23:07 35400 ----a-w- C:\Windows\System32\TsWpfWrp.exe
2012-07-26 08:23:07 124040 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2012-07-26 08:23:07 1166440 ----a-w- C:\Windows\System32\PresentationNative_v0300.dll
2012-07-26 08:23:07 102528 ----a-w- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2012-07-26 08:11:45 170496 ----a-w- C:\Windows\SysWow64\msclmd.dll
2012-07-26 08:11:43 23040 ----a-w- C:\Windows\System32\drivers\secdrv.sys
2012-07-26 08:11:43 186368 ----a-w- C:\Windows\System32\msclmd.dll
2012-07-26 07:48:57 6144 ----a-w- C:\Windows\SysWow64\drivers\en-US\fwpkclnt.sys.mui
2012-07-26 07:48:48 5632 ----a-w- C:\Windows\SysWow64\drivers\en-US\ndiscap.sys.mui
2012-07-26 07:48:47 11264 ----a-w- C:\Windows\SysWow64\drivers\en-US\NdisImPlatform.sys.mui
2012-07-26 07:48:45 2560 ----a-w- C:\Windows\SysWow64\drivers\en-US\wfplwfs.sys.mui
2012-07-26 05:00:58 97008 ----a-w- C:\Windows\System32\drivers\uaspstor.sys
2012-07-26 04:59:35 217328 ----a-w- C:\Windows\System32\drivers\rdyboost.sys
2012-07-26 04:58:34 33520 ----a-w- C:\Windows\System32\drivers\wimmount.sys
2012-07-26 04:58:32 34032 ----a-w- C:\Windows\System32\SysResetErr.exe
2012-07-26 04:58:32 125168 ----a-w- C:\Windows\System32\bootsect.exe
2012-07-26 04:58:00 52464 ----a-w- C:\Windows\System32\drivers\pcw.sys
2012-07-26 04:58:00 107760 ----a-w- C:\Windows\System32\drivers\sbp2port.sys
2012-07-26 04:55:47 77928 ----a-w- C:\Windows\System32\kdvm.dll
2012-07-26 04:55:32 1326784 ----a-w- C:\Windows\System32\webservices.dll
2012-07-26 04:55:31 33504 ----a-w- C:\Windows\System32\RuntimeBroker.exe
2012-07-26 04:55:14 46320 ----a-w- C:\Windows\System32\apisetschema.dll
2012-07-26 04:55:14 303856 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2012-07-26 04:55:14 1448688 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2012-07-26 04:53:48 918528 ----a-w- C:\Windows\System32\fhuxpresentation.dll
2012-07-26 04:53:48 80896 ----a-w- C:\Windows\System32\fhuxgraphics.dll
2012-07-26 04:53:48 453120 ----a-w- C:\Windows\System32\FileHistory.exe
2012-07-26 04:53:48 31744 ----a-w- C:\Windows\System32\fhuxcommon.dll
2012-07-26 04:53:48 16384 ----a-w- C:\Windows\System32\fhuxapi.dll
2012-07-26 04:53:48 124928 ----a-w- C:\Windows\System32\fhuxadapter.dll
2012-07-26 04:53:16 67824 ----a-w- C:\Windows\System32\drivers\vpci.sys
2012-07-26 04:53:16 496368 ----a-w- C:\Windows\System32\drivers\vhdmp.sys
2012-07-26 04:53:16 19696 ----a-w- C:\Windows\System32\kdhv1394.dll
2012-07-26 04:53:15 36080 ----a-w- C:\Windows\System32\drivers\vdrvroot.sys
2012-07-26 04:52:35 62496 ----a-w- C:\Windows\System32\drivers\dumpfve.sys
2012-07-26 04:52:35 320112 ----a-w- C:\Windows\System32\cfgmgr32.dll
2012-07-26 04:52:35 177576 ----a-w- C:\Windows\System32\ProximityUxHost.exe
2012-07-26 04:52:35 147624 ----a-w- C:\Windows\System32\bdeunlock.exe
2012-07-26 04:52:35 134168 ----a-w- C:\Windows\System32\devobj.dll
2012-07-26 04:52:35 1122776 ----a-w- C:\Windows\System32\Taskmgr.exe
2012-07-26 04:52:35 103712 ----a-w- C:\Windows\System32\systemreset.exe
2012-07-26 04:52:06 90112 ----a-w- C:\Windows\System32\srmlib.dll
2012-07-26 04:51:42 152272 ----a-w- C:\Windows\System32\wscapi.dll
2012-07-26 04:51:39 439392 ----a-w- C:\Windows\System32\WerFault.exe
2012-07-26 04:51:39 136768 ----a-w- C:\Windows\System32\wermgr.exe
2012-07-26 04:51:20 72192 ----a-w- C:\Windows\System32\appidapi.dll
2012-07-26 04:51:20 32992 ----a-w- C:\Windows\System32\LicensingUI.exe
2012-07-26 04:51:20 292760 ----a-w- C:\Windows\System32\rsaenh.dll
2012-07-26 04:51:20 190480 ----a-w- C:\Windows\System32\dssenh.dll
2012-07-26 04:51:20 120712 ----a-w- C:\Windows\System32\AuthHost.exe
2012-07-26 04:51:18 180976 ----a-w- C:\Windows\System32\basecsp.dll
2012-07-26 04:50:20 86632 ----a-w- C:\Windows\System32\drivers\vmbkmcl.sys
2012-07-26 04:50:20 62568 ----a-w- C:\Windows\System32\drivers\winhv.sys
2012-07-26 04:50:20 45160 ----a-w- C:\Windows\System32\drivers\vmstorfl.sys
2012-07-26 04:50:20 37992 ----a-w- C:\Windows\System32\drivers\storvsc.sys
2012-07-26 04:50:20 137832 ----a-w- C:\Windows\System32\drivers\vmbus.sys
2012-07-26 04:50:16 127488 ----a-w- C:\Windows\System32\NAPHLPR.DLL
2012-07-26 04:50:15 51200 ----a-w- C:\Windows\System32\NAPCRYPT.DLL
2012-07-26 04:50:15 5118464 ----a-w- C:\Windows\System32\AuthFWSnapin.dll
2012-07-26 04:50:14 135168 ----a-w- C:\Windows\System32\dnscmmc.dll
2012-07-26 04:50:14 114176 ----a-w- C:\Windows\System32\AuthFWWizFwk.dll
2012-07-26 04:50:01 306928 ----a-w- C:\Windows\System32\WMASF.DLL
2012-07-26 04:49:37 199680 ----a-w- C:\Windows\System32\cdd.dll
2012-07-26 04:49:13 95448 ----a-w- C:\Windows\System32\OpenWith.exe
2012-07-26 04:49:13 36648 ----a-w- C:\Windows\System32\CredentialUIBroker.exe
2012-07-26 04:49:13 28344 ----a-w- C:\Windows\System32\PickerHost.exe
2012-07-26 04:49:13 26224 ----a-w- C:\Windows\System32\SystemSettingsRemoveDevice.exe
2012-07-26 04:49:13 22128 ----a-w- C:\Windows\System32\PurchaseWindowsLicense.exe
2012-07-26 04:49:13 1798928 ----a-w- C:\Windows\System32\DisplaySwitch.exe
2012-07-26 04:48:55 61368 ----a-w- C:\Windows\System32\wwapi.dll
2012-07-26 04:48:06 33792 ----a-w- C:\Windows\System32\dmvscres.dll
2012-07-26 04:48:04 55808 ----a-w- C:\Windows\System32\vmbusres.dll
2012-07-26 04:48:01 38400 ----a-w- C:\Windows\System32\vmstorfltres.dll
2012-07-26 04:47:57 160256 ----a-w- C:\Windows\System32\vmicres.dll
2012-07-26 04:47:47 163328 ----a-w- C:\Windows\System32\Windows.Help.Runtime.dll
2012-07-26 04:46:56 2366984 ----a-w- C:\Windows\System32\WSService.dll
2012-07-26 04:45:08 389368 ----a-w- C:\Windows\System32\MMDevAPI.dll
2012-07-26 04:45:07 15952 ----a-w- C:\Windows\System32\ksuser.dll
2012-07-26 04:44:59 1119336 ----a-w- C:\Windows\System32\drmv2clt.dll
2012-07-26 04:44:30 258288 ----a-w- C:\Windows\System32\drivers\WdFilter.sys
2012-07-26 04:43:49 29880 ----a-w- C:\Windows\System32\CameraSettingsUIHost.exe
2012-07-26 04:43:49 27288 ----a-w- C:\Windows\System32\avrt.dll
2012-07-26 04:36:15 34216 ----a-w- C:\Windows\System32\drivers\WdBoot.sys
2012-07-26 03:59:44 28824 ----a-w- C:\Windows\System32\PrintDialogHost.exe
2012-07-26 03:50:58 240880 ----a-w- C:\Windows\SysWow64\WMASF.DLL
2012-07-26 03:50:01 88200 ----a-w- C:\Windows\SysWow64\OpenWith.exe
2012-07-26 03:50:01 32440 ----a-w- C:\Windows\SysWow64\CredentialUIBroker.exe
2012-07-26 03:50:01 25712 ----a-w- C:\Windows\SysWow64\PickerHost.exe
2012-07-26 03:50:01 1791176 ----a-w- C:\Windows\SysWow64\DisplaySwitch.exe
2012-07-26 03:48:32 92912 ----a-w- C:\Windows\SysWow64\MigAutoPlay.exe
2012-07-26 03:40:13 15088 ---ha-w- C:\Windows\SysWow64\ext-ms-win-ntos-tm-l1-1-0.dll
2012-07-26 03:40:13 12016 ---ha-w- C:\Windows\SysWow64\ext-ms-win-ntos-ksigningpolicy-l1-1-0.dll
2012-07-26 03:40:11 24304 ----a-w- C:\Windows\SysWow64\BOOTVID.DLL
2012-07-26 03:40:10 14064 ---ha-w- C:\Windows\SysWow64\ext-ms-win-fs-clfs-l1-1-0.dll
2012-07-26 03:40:10 12016 ---ha-w- C:\Windows\SysWow64\ext-ms-win-ntos-ksecurity-l1-1-0.dll
2012-07-26 03:39:34 60144 ----a-w- C:\Windows\SysWow64\PSHED.DLL
2012-07-26 03:39:02 1409384 ----a-w- C:\Windows\SysWow64\ntdll.dll
2012-07-26 03:38:34 90112 ----a-w- C:\Windows\SysWow64\srmlib.dll
2012-07-26 03:38:11 1027160 ----a-w- C:\Windows\SysWow64\Taskmgr.exe
2012-07-26 03:38:10 284456 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2012-07-26 03:38:10 120200 ----a-w- C:\Windows\SysWow64\devobj.dll
2012-07-26 03:38:02 26776 ----a-w- C:\Windows\SysWow64\CameraSettingsUIHost.exe
2012-07-26 03:38:01 23664 ----a-w- C:\Windows\SysWow64\avrt.dll
2012-07-26 03:36:01 46592 ----a-w- C:\Windows\SysWow64\NAPCRYPT.DLL
2012-07-26 03:36:01 106496 ----a-w- C:\Windows\SysWow64\NAPHLPR.DLL
2012-07-26 03:36:00 5118464 ----a-w- C:\Windows\SysWow64\AuthFWSnapin.dll
2012-07-26 03:36:00 129024 ----a-w- C:\Windows\SysWow64\dnscmmc.dll
2012-07-26 03:35:59 114176 ----a-w- C:\Windows\SysWow64\AuthFWWizFwk.dll
2012-07-26 03:34:26 307200 ----a-w- C:\Windows\SysWow64\MMDevAPI.dll
2012-07-26 03:34:26 14336 ----a-w- C:\Windows\SysWow64\ksuser.dll
2012-07-26 03:34:25 48424 ----a-w- C:\Windows\SysWow64\wwapi.dll
2012-07-26 03:34:00 991848 ----a-w- C:\Windows\SysWow64\drmv2clt.dll
2012-07-26 03:33:45 63376 ----a-w- C:\Windows\SysWow64\appidapi.dll
2012-07-26 03:33:45 251400 ----a-w- C:\Windows\SysWow64\rsaenh.dll
2012-07-26 03:33:45 155344 ----a-w- C:\Windows\SysWow64\dssenh.dll
2012-07-26 03:33:35 152304 ----a-w- C:\Windows\SysWow64\basecsp.dll
2012-07-26 03:32:50 385672 ----a-w- C:\Windows\SysWow64\WerFault.exe
2012-07-26 03:32:49 131536 ----a-w- C:\Windows\SysWow64\wermgr.exe
2012-07-26 03:32:15 124368 ----a-w- C:\Windows\SysWow64\wscapi.dll
2012-07-26 03:30:19 946128 ----a-w- C:\Windows\SysWow64\webservices.dll
2012-07-26 03:23:09 74272 ----a-w- C:\Windows\System32\sessionmsg.exe
2012-07-26 03:23:09 235936 ----a-w- C:\Windows\System32\wkspbroker.exe
2012-07-26 03:20:59 9728 ----a-w- C:\Windows\SysWow64\systray.exe
2012-07-26 03:19:59 96768 ----a-w- C:\Windows\SysWow64\shsetup.dll
2012-07-26 03:18:59 90112 ----a-w- C:\Windows\SysWow64\mi.dll
2012-07-26 03:17:59 726016 ----a-w- C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
2012-07-26 03:08:54 898048 ----a-w- C:\Windows\System32\Bubbles.scr
2012-07-26 03:07:59 303104 ----a-w- C:\Windows\System32\winsta.dll
2012-07-26 03:06:59 917504 ----a-w- C:\Windows\System32\CPFilters.dll
2012-07-26 03:05:59 87040 ----a-w- C:\Windows\System32\loghours.dll
2012-07-26 03:04:58 864768 ----a-w- C:\Windows\System32\TabletPC.cpl
2012-07-26 02:47:25 61952 ----a-w- C:\Windows\SysWow64\msobjs.dll
2012-07-26 02:47:23 146432 ----a-w- C:\Windows\SysWow64\msaudite.dll
2012-07-26 02:45:58 95232 ----a-w- C:\Windows\SysWow64\auditpolmsg.dll
2012-07-26 02:44:59 6014976 ----a-w- C:\Windows\SysWow64\NlsLexicons001a.dll
2012-07-26 02:43:57 25088 ----a-w- C:\Windows\SysWow64\msimsg.dll
2012-07-26 02:42:58 7168 ----a-w- C:\Windows\SysWow64\KBDLAO.DLL
2012-07-26 02:41:50 84480 ----a-w- C:\Windows\SysWow64\INETRES.dll
2012-07-26 02:40:59 4096 ---ha-w- C:\Windows\SysWow64\ext-ms-win-ntuser-window-l1-1-0.dll
2012-07-26 02:38:52 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-winrt-registration-l1-1-0.dll
2012-07-26 02:35:59 4608 ---ha-w- C:\Windows\System32\api-ms-win-core-crt-l1-1-0.dll
2012-07-26 02:34:51 9892864 ----a-w- C:\Windows\System32\NlsLexicons000a.dll
2012-07-26 02:33:50 65536 ----a-w- C:\Windows\System32\sberes.dll
2012-07-26 02:32:59 8192 ----a-w- C:\Windows\System32\kbdnec95.dll
2012-07-26 02:31:54 3072 ----a-w- C:\Windows\SysWow64\iprop.dll
2012-07-26 02:31:50 77312 ----a-w- C:\Windows\System32\usp10.dll
2012-07-26 02:31:49 3072 ---ha-w- C:\Windows\System32\ext-ms-win-mm-wmdrmsdk-l1-1-0.dll
2012-07-26 02:31:48 3072 ---ha-w- C:\Windows\System32\ext-ms-win-mm-pehelper-l1-1-0.dll
2012-07-26 02:29:57 20480 ----a-w- C:\Windows\System32\drivers\smclib.sys
2012-07-26 02:28:58 21376 ----a-w- C:\Windows\System32\drivers\ksthunk.sys
2012-07-26 02:27:58 12288 ----a-w- C:\Windows\System32\drivers\vmgencounter.sys
2012-07-26 02:26:53 571392 ----a-w- C:\Windows\System32\drivers\csc.sys
2012-07-26 02:25:57 33280 ----a-w- C:\Windows\System32\drivers\dmvsc.sys
2012-07-26 02:24:56 81920 ----a-w- C:\Windows\System32\drivers\raspppoe.sys
2012-07-26 02:24:55 30720 ----a-w- C:\Windows\System32\drivers\monitor.sys
2012-07-26 02:24:50 25600 ----a-w- C:\Windows\System32\drivers\usbprint.sys
2012-07-26 02:24:46 3072 ----a-w- C:\Windows\SysWow64\user.exe
2012-07-26 02:24:28 331776 ----a-w- C:\Windows\System32\drivers\netbt.sys
2012-07-26 02:24:25 804864 ----a-w- C:\Windows\System32\drivers\PEAuth.sys
2012-07-26 02:24:06 78848 ----a-w- C:\Windows\System32\drivers\rspndr.sys
2012-07-26 02:24:02 60416 ----a-w- C:\Windows\System32\drivers\lltdio.sys
2012-07-26 02:22:36 3072 ----a-w- C:\Windows\System32\lz32.dll
2012-07-26 02:22:36 14848 ----a-w- C:\Windows\SysWow64\diskcomp.com
2012-07-26 02:22:36 11776 ----a-w- C:\Windows\SysWow64\diskcopy.com
2012-07-26 02:22:26 29184 ----a-w- C:\Windows\System32\vid.dll
2012-07-26 02:22:23 3584 ----a-w- C:\Windows\System32\normaliz.dll
2012-07-26 02:22:07 9216 ----a-w- C:\Windows\System32\clrhost.dll
2012-07-26 02:21:53 25600 ----a-w- C:\Windows\SysWow64\mode.com
2012-07-26 02:19:22 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2012-07-26 02:19:21 974848 ----a-w- C:\Windows\SysWow64\kernel32.dll
2012-07-26 02:19:18 8704 ----a-w- C:\Windows\SysWow64\instnm.exe
2012-07-26 02:17:37 18944 ----a-w- C:\Windows\System32\tree.com
2012-07-26 02:17:36 13312 ----a-w- C:\Windows\System32\chcp.com
2012-07-26 02:16:22 15872 ----a-w- C:\Windows\System32\diskcomp.com
2012-07-26 02:16:22 13312 ----a-w- C:\Windows\System32\diskcopy.com
2012-07-26 02:15:45 30208 ----a-w- C:\Windows\System32\mode.com
2012-07-26 02:13:59 8704 ----a-w- C:\Windows\SysWow64\msctfime.ime
2012-07-26 02:08:33 9216 ----a-w- C:\Windows\System32\msctfime.ime
2012-07-26 02:03:02 361984 ----a-w- C:\Windows\SysWow64\html.iec
2012-07-26 02:02:01 15360 ----a-w- C:\Windows\System32\vmbuspipe.dll
2012-07-26 02:01:23 16896 ----a-w- C:\Windows\SysWow64\wksprtPS.dll
2012-07-26 01:59:02 138240 ----a-w- C:\Windows\System32\VmdCoinstall.dll
2012-07-26 01:57:29 441856 ----a-w- C:\Windows\System32\html.iec
2012-07-26 01:55:05 18432 ----a-w- C:\Windows\System32\wksprtPS.dll
2012-07-26 01:53:39 36352 ----a-w- C:\Windows\apppatch\acwow64.dll
2012-07-26 01:40:38 14848 ----a-w- C:\Windows\SysWow64\wowreg32.exe
2012-07-26 01:21:26 59904 ----a-w- C:\Windows\System32\vmictimeprovider.dll
2012-07-26 00:55:54 556544 ----a-w- C:\Windows\System32\aeinv.dll
2012-07-26 00:53:43 12288 ----a-w- C:\Windows\System32\VmApplicationHealthMonitorProxy.dll
2012-07-26 00:36:54 388608 ----a-w- C:\Windows\System32\wksprt.exe
2012-07-26 00:24:02 336384 ----a-w- C:\Windows\System32\icsvc.dll
2012-07-26 00:20:02 354304 ----a-w- C:\Windows\System32\vmrdvcore.dll
2012-07-26 00:13:37 843264 ----a-w- C:\Windows\SysWow64\TSWorkspace.dll
2012-07-26 00:11:50 98816 ----a-w- C:\Windows\SysWow64\sspicli.dll
2012-07-26 00:11:33 96256 ----a-w- C:\Windows\SysWow64\bcrypt.dll
2012-07-26 00:11:21 1046016 ----a-w- C:\Windows\System32\TSWorkspace.dll
2012-07-26 00:10:46 694272 ----a-w- C:\Windows\SysWow64\rpcrt4.dll
2012-07-26 00:10:22 125952 ----a-w- C:\Windows\System32\wclUnicode.dll
2012-07-26 00:07:59 22016 ----a-w- C:\Windows\SysWow64\more.com
2012-07-26 00:07:32 101376 ----a-w- C:\Windows\System32\whealogr.dll
2012-07-26 00:07:02 38400 ----a-w- C:\Windows\SysWow64\format.com
2012-07-26 00:06:22 302592 ----a-w- C:\Windows\System32\PowerWmiProvider.dll
2012-07-26 00:06:21 25600 ----a-w- C:\Windows\System32\more.com
2012-07-26 00:06:01 122880 ----a-w- C:\Windows\SysWow64\dcomp.dll
2012-07-26 00:05:41 35328 ----a-w- C:\Windows\System32\format.com
2012-07-26 00:02:48 1126912 ----a-w- C:\Windows\SysWow64\user32.dll
2012-07-25 23:54:56 1437696 ----a-w- C:\Windows\SysWow64\GdiPlus.dll
2012-07-25 23:54:24 1690624 ----a-w- C:\Windows\System32\GdiPlus.dll
2012-07-25 20:37:31 43520 ----a-w- C:\Windows\SysWow64\msdxm.tlb
2012-07-25 20:37:31 18432 ----a-w- C:\Windows\SysWow64\amcompat.tlb
2012-07-25 20:37:29 43131 ----a-w- C:\Windows\mib.bin
2012-07-25 20:33:29 43520 ----a-w- C:\Windows\System32\msdxm.tlb
2012-07-25 20:33:29 18432 ----a-w- C:\Windows\System32\amcompat.tlb
2012-07-25 01:21:22 17152 ----a-w- C:\Windows\System32\drivers\AiCharger.sys
2012-07-24 03:16:28 645952 ----a-w- C:\Windows\System32\drivers\iaStorA.sys
2012-07-23 08:44:50 1433976 ----a-w- C:\Windows\System32\MaxxAudioRealtek264.dll
2012-07-19 08:52:24 2028920 ----a-w- C:\Windows\System32\MaxxAudioEQ64.dll
2012-07-19 08:52:20 7598456 ----a-w- C:\Windows\System32\MaxxAudioRealtek64.dll
2012-07-19 08:51:50 2080120 ----a-w- C:\Windows\System32\WavesGUILib64.dll
2012-07-19 08:51:48 834936 ----a-w- C:\Windows\System32\MaxxAudioAPOShell64.dll
2012-07-18 19:15:12 4311344 ----a-w- C:\Windows\System32\wlihvui.dll
2012-07-18 19:15:10 2548528 ----a-w- C:\Windows\System32\iwmssvc.dll
2012-07-17 07:39:22 162344 ----a-w- C:\Windows\System32\drivers\AmpPal.sys
2012-07-16 06:16:18 3643024 ----a-w- C:\Windows\System32\RtkAPO64.dll
2012-07-15 13:13:26 394616 ----a-w- C:\Windows\System32\MaxxAudioAPO30.dll
2012-07-15 13:13:20 394616 ----a-w- C:\Windows\System32\MaxxVolumeSDAPO.dll
2012-07-15 00:36:30 825344 ----a-w- C:\Windows\System32\drivers\btmhsf.sys
2012-07-13 08:54:02 16704 ----a-w- C:\Windows\System32\DptfCoInstaller.dll
2012-07-13 08:52:58 21312 ----a-w- C:\Windows\System32\dptfpolicylpmdll.dll
2012-07-13 08:52:50 21312 ----a-w- C:\Windows\System32\DptfPolicyConfigTDPDll.dll
2012-07-13 08:50:40 64832 ----a-w- C:\Windows\System32\drivers\DptfDevGen.sys
2012-07-13 08:50:40 361792 ----a-w- C:\Windows\System32\drivers\DptfManager.sys
2012-07-13 08:50:38 107328 ----a-w- C:\Windows\System32\drivers\DptfDevDram.sys
2012-07-13 08:50:36 42816 ----a-w- C:\Windows\System32\drivers\DptfDevFan.sys
2012-07-13 08:50:34 96064 ----a-w- C:\Windows\System32\drivers\DptfDevPch.sys
2012-07-13 08:50:32 228672 ----a-w- C:\Windows\System32\drivers\DptfDevProc.sys
2012-07-12 02:02:13 864208 ----a-w- C:\Windows\SysWow64\msvcr110_clr0400.dll
2012-07-12 02:02:13 501712 ----a-w- C:\Windows\SysWow64\msvcp110_clr0400.dll
2012-07-12 02:02:13 28616 ----a-w- C:\Windows\SysWow64\aspnet_counters.dll
2012-07-12 02:01:23 856016 ----a-w- C:\Windows\System32\msvcr110_clr0400.dll
2012-07-12 02:01:23 613840 ----a-w- C:\Windows\System32\msvcp110_clr0400.dll
2012-07-12 02:01:23 30160 ----a-w- C:\Windows\System32\aspnet_counters.dll
2012-07-12 02:00:49 260024 ----a-w- C:\Windows\SysWow64\rometadata.dll
2012-07-12 02:00:48 309688 ----a-w- C:\Windows\System32\rometadata.dll
2012-07-06 02:01:17 81480 ----a-w- C:\Windows\SysWow64\mscories.dll
2012-07-06 02:01:17 156232 ----a-w- C:\Windows\SysWow64\mscorier.dll
2012-07-06 02:01:06 73800 ----a-w- C:\Windows\System32\mscories.dll
2012-07-06 02:01:06 155720 ----a-w- C:\Windows\System32\mscorier.dll
2012-07-04 19:31:40 55848 ----a-w- C:\Windows\System32\drivers\iBtFltCoex.sys
2012-07-04 02:55:04 53248 ----a-w- C:\Windows\SysWow64\CSVer.dll
2012-07-02 22:16:02 62784 ----a-w- C:\Windows\System32\drivers\HECIx64.sys
.
============= FINISH: 10:41:09.81 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:06:11 PM

Posted 01 January 2013 - 07:38 PM

Hi,

Welcome to Bleeping Computer. My name is m0le and I will be helping you with your log.
  • Please subscribe to this topic, if you haven't already. Click the Watch This Topic button at the top on the right.

  • Please avoid installing/uninstalling or updating any programs and attempting any unsupervised fixes or scans. This can make helping you impossible.

  • Please reply to this post so I know you are there.
The forum is busy and we need to have replies as soon as possible. If I haven't had a reply after 3 days I will bump the topic and if you do not reply by the following day after that then I will close the topic.

Once I receive a reply then I will return with your first instructions.

Thanks :thumbup2:
Posted Image
m0le is a proud member of UNITE

#3 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:06:11 PM

Posted 06 January 2013 - 08:57 PM

Due to the lack of feedback, this topic is now closed.In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days. Please include a link to your topic in the Private Message. Thank you.
Posted Image
m0le is a proud member of UNITE




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users