SystemLook 30.07.11 by jpshortstuff Log created at 07:49 on 13/01/2014 by Przemek Administrator - Elevation successful ========== filefind ========== Searching for "apisetschema.dll" C:\Tmp\amd64\apisetschema.dll --a---- 6656 bytes [09:12 12/01/2014] [01:24 14/07/2009] 316663537A203220F15B9D426D5B44F8 C:\Tmp\wow64\apisetschema.dll --a---- 6656 bytes [09:12 12/01/2014] [04:47 19/03/2013] 7F21DA4760CE9B4B1B12CBC58C2A642A C:\Windows\System32\apisetschema.dll --a---- 6656 bytes [23:18 13/07/2009] [01:24 14/07/2009] 316663537A203220F15B9D426D5B44F8 C:\Windows\SysWOW64\apisetschema.dll --a---- 6656 bytes [17:03 09/04/2013] [04:47 19/03/2013] 7F21DA4760CE9B4B1B12CBC58C2A642A C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\apisetschema.dll --a---- 6656 bytes [23:18 13/07/2009] [01:24 14/07/2009] 316663537A203220F15B9D426D5B44F8 C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_0a5f8ec22fd235a9\apisetschema.dll --a---- 6656 bytes [23:18 13/07/2009] [01:24 14/07/2009] 316663537A203220F15B9D426D5B44F8 C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22280_none_0a9a7b3b492b4d05\apisetschema.dll --a---- 6656 bytes [23:18 13/07/2009] [01:24 14/07/2009] 316663537A203220F15B9D426D5B44F8 C:\Windows\winsxs\wow64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_128443f66743685c\apisetschema.dll --a---- 6656 bytes [23:10 13/07/2009] [01:03 14/07/2009] 2F03490092C032392FB6FF635222B9B2 C:\Windows\winsxs\wow64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_14b439146432f7a4\apisetschema.dll --a---- 6656 bytes [17:03 09/04/2013] [04:47 19/03/2013] 7F21DA4760CE9B4B1B12CBC58C2A642A C:\Windows\winsxs\wow64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22280_none_14ef258d7d8c0f00\apisetschema.dll --a---- 6656 bytes [17:03 09/04/2013] [04:30 19/03/2013] 1A95599AE0FF9E2E3B8420D093DE2D08 Searching for "csrsrv.dll" C:\Tmp\csrsrv.dll --a---- 43520 bytes [09:12 12/01/2014] [05:46 19/03/2013] CEC1EDF4022DC4DCA40384DCEC672B0E C:\Windows\System32\csrsrv.dll --a---- 43520 bytes [17:03 09/04/2013] [05:46 19/03/2013] CEC1EDF4022DC4DCA40384DCEC672B0E C:\Windows\winsxs\amd64_microsoft-windows-csrsrv_31bf3856ad364e35_6.1.7600.16385_none_257c28acbf0ea870\csrsrv.dll --a---- 43520 bytes [23:19 13/07/2009] [01:40 14/07/2009] 0D7598360DF6C8637E6D678C20B5C47C C:\Windows\winsxs\amd64_microsoft-windows-csrsrv_31bf3856ad364e35_6.1.7601.18113_none_27ac1dcabbfe37b8\csrsrv.dll --a---- 43520 bytes [17:03 09/04/2013] [05:46 19/03/2013] CEC1EDF4022DC4DCA40384DCEC672B0E C:\Windows\winsxs\amd64_microsoft-windows-csrsrv_31bf3856ad364e35_6.1.7601.22280_none_27e70a43d5574f14\csrsrv.dll --a---- 43520 bytes [17:03 09/04/2013] [05:17 19/03/2013] D62AB6C892DE1324014CD75D166F4747 Searching for "smss.exe" C:\Tmp\smss.exe --a---- 112640 bytes [09:12 12/01/2014] [03:06 19/03/2013] F0371DE302FFFF8F086661611BE60848 C:\Windows\System32\smss.exe --a---- 112640 bytes [17:03 09/04/2013] [03:06 19/03/2013] F0371DE302FFFF8F086661611BE60848 C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe --a---- 112640 bytes [23:19 13/07/2009] [01:39 14/07/2009] 1911A3356FA3F77CCC825CCBAC038C2A C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_0a5f8ec22fd235a9\smss.exe --a---- 112640 bytes [17:03 09/04/2013] [03:06 19/03/2013] F0371DE302FFFF8F086661611BE60848 C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.22280_none_0a9a7b3b492b4d05\smss.exe --a---- 112640 bytes [17:03 09/04/2013] [02:57 19/03/2013] 498E2A20E145199709CD100CDBA8603D ========== dir ========== C:\Windows\winsxs\wow64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_14b439146432f7a4 - Parameters: "(none)" ---Files--- apisetschema.dll --a---- 6656 bytes [17:03 09/04/2013] [04:47 19/03/2013] ---Folders--- None found. C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7601.18113_none_0a5f8ec22fd235a9 - Parameters: "(none)" ---Files--- apisetschema.dll --a---- 6656 bytes [23:18 13/07/2009] [01:24 14/07/2009] smss.exe --a---- 112640 bytes [17:03 09/04/2013] [03:06 19/03/2013] ---Folders--- None found. C:\Windows\winsxs\amd64_microsoft-windows-csrsrv_31bf3856ad364e35_6.1.7601.18113_none_27ac1dcabbfe37b8 - Parameters: "(none)" ---Files--- csrsrv.dll --a---- 43520 bytes [17:03 09/04/2013] [05:46 19/03/2013] ---Folders--- None found. -= EOF =-