OTL logfile created on: 2014-07-22 15:58:41 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = D:\raporty Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17207) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1011,87 Mb Total Physical Memory | 101,95 Mb Available Physical Memory | 10,07% Memory free 2,61 Gb Paging File | 1,37 Gb Available in Paging File | 52,44% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 215,68 Gb Total Space | 178,65 Gb Free Space | 82,83% Space Free | Partition Type: NTFS Drive D: | 4,10 Gb Total Space | 2,55 Gb Free Space | 62,13% Space Free | Partition Type: FAT32 Drive E: | 48,53 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive F: | 68,91 Mb Total Space | 51,47 Mb Free Space | 74,70% Space Free | Partition Type: FAT32 Drive G: | 3,60 Gb Total Space | 2,06 Gb Free Space | 57,15% Space Free | Partition Type: FAT32 Computer Name: BLOE-KOMPUTER | User Name: bloe | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-07-22 15:38:04 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\raporty\OTL.exe PRC - [2014-07-17 07:42:02 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2014-07-15 15:20:45 | 000,765,048 | ---- | M] (Webroot) -- C:\Program Files\WvfSNamU\IOLmWrgN.exe PRC - [2014-07-11 20:44:35 | 000,107,624 | ---- | M] (RaMMicHaeL) -- C:\Program Files\Unchecky\bin\unchecky_svc.exe PRC - [2014-07-11 20:44:33 | 000,320,104 | ---- | M] (RaMMicHaeL) -- C:\Program Files\Unchecky\bin\unchecky_bg.exe PRC - [2014-07-10 16:39:24 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2014-07-10 14:26:32 | 001,869,488 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe PRC - [2013-12-19 09:30:55 | 000,678,480 | ---- | M] () -- C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe PRC - [2013-12-19 09:30:54 | 000,084,560 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\Internet Manager.exe PRC - [2013-10-28 04:02:26 | 000,276,048 | ---- | M] () -- C:\ProgramData\DatacardService\HWDeviceService.exe PRC - [2013-10-28 04:02:24 | 000,238,160 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\ProgramData\DatacardService\DCSHelper.exe PRC - [2013-08-02 02:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe PRC - [2012-04-05 15:48:02 | 000,255,376 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe PRC - [2011-05-10 07:01:33 | 000,492,096 | ---- | M] (Insyde Software Corp.) -- C:\Program Files\Acer\Updater\iUpdate.exe PRC - [2011-05-10 07:01:32 | 000,408,128 | ---- | M] (Insyde Software Corp.) -- C:\Program Files\Acer\Android Manager\iSync.exe PRC - [2011-03-14 13:44:38 | 000,414,800 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LMutilps32.exe PRC - [2011-03-14 13:44:38 | 000,334,416 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LMworker.exe PRC - [2011-03-14 13:44:36 | 000,352,336 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\dsiwmis.exe PRC - [2011-03-07 10:45:22 | 001,755,136 | ---- | M] (Realsil Microelectronics Inc.) -- C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe PRC - [2011-02-25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2011-02-22 21:01:10 | 000,715,368 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe PRC - [2011-02-22 21:01:08 | 000,739,944 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe PRC - [2011-02-22 21:01:02 | 000,469,608 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe PRC - [2011-01-05 13:22:50 | 000,936,208 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe PRC - [2011-01-05 13:22:12 | 001,210,640 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe PRC - [2011-01-05 13:09:24 | 000,477,456 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe PRC - [2010-11-06 08:54:22 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe PRC - [2010-11-06 08:54:20 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe PRC - [2010-10-05 23:46:10 | 000,704,104 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer VCM\AcerVCM.exe PRC - [2010-09-28 04:00:56 | 000,340,336 | ---- | M] (Egis Technology Inc.) -- C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe PRC - [2010-09-18 01:10:16 | 000,407,920 | ---- | M] (Egis Technology Inc.) -- C:\Program Files\EgisTec IPS\PmmUpdate.exe PRC - [2010-09-18 01:10:02 | 000,201,584 | ---- | M] (Egis Technology Inc.) -- C:\Program Files\EgisTec IPS\EgisUpdate.exe PRC - [2010-01-30 01:52:58 | 000,260,640 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer VCM\RS_Service.exe PRC - [2010-01-08 15:21:22 | 000,023,584 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Registration\GREGsvc.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-07-17 22:44:00 | 001,020,928 | ---- | M] () -- C:\Users\bloe\AppData\Roaming\Mozilla\Firefox\Profiles\im92ncl4.default\extensions\support@lastpass.com\platform\WINNT_x86-msvc\components\lpxpcom.dll MOD - [2014-07-17 07:42:24 | 003,800,688 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2014-07-13 18:04:40 | 000,774,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\98c91b8d3f1d54c41ada5f37e0935303\System.Runtime.Remoting.ni.dll MOD - [2014-07-13 18:04:39 | 000,014,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\b1f7b4e15aef3faf382db6ba14c81371\IAStorCommon.ni.dll MOD - [2014-07-13 18:04:38 | 003,348,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1d696b2d3de530f7ee971070263667ff\WindowsBase.ni.dll MOD - [2014-07-13 18:04:30 | 000,475,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\0eef5f1e5c15e0171152ee8f1cfc6924\IAStorUtil.ni.dll MOD - [2014-07-13 18:04:25 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\8bc548587e91ecf0552a40e47bbf99cc\System.Windows.Forms.ni.dll MOD - [2014-07-13 18:04:03 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5c24d3b0041ebf4f48a93615b9fa3de9\System.Drawing.ni.dll MOD - [2014-07-13 18:03:52 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\217ece46920546d718414291d463bb1c\System.Xml.ni.dll MOD - [2014-07-13 18:03:40 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\5b6ddf934128d538cd5cd77bf4209b93\System.Configuration.ni.dll MOD - [2014-07-13 18:03:32 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dll MOD - [2014-07-13 18:03:12 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dll MOD - [2014-07-10 14:26:31 | 017,029,808 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_14_0_0_145.dll MOD - [2013-12-19 09:30:54 | 000,084,560 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\Internet Manager.exe MOD - [2013-12-19 06:01:56 | 000,148,992 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\VPNPlugin.dll MOD - [2013-12-19 06:01:48 | 000,110,080 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\ServiceUIPlugin.dll MOD - [2013-12-19 06:01:39 | 000,100,352 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\CompressRatePlugin.dll MOD - [2013-12-19 06:01:31 | 000,139,776 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\HelpUIPlugin.dll MOD - [2013-12-19 06:01:11 | 000,448,512 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\USSDUIPlugin.dll MOD - [2013-12-19 06:00:32 | 000,308,736 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NetInfoRecordUIPlugin.dll MOD - [2013-12-19 06:00:16 | 000,518,656 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NetInfoUIExPlugin.dll MOD - [2013-12-19 05:59:54 | 000,412,672 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\DiagnosisPlugin.dll MOD - [2013-12-19 05:59:32 | 000,819,712 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\MiniFramePlugin.dll MOD - [2013-12-19 05:59:15 | 000,274,944 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\MenuMgrPlugin.dll MOD - [2013-12-19 05:58:59 | 000,331,776 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NetConnectPlugin.dll MOD - [2013-12-19 05:58:39 | 000,306,176 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\SettingUIPlugin.dll MOD - [2013-12-19 05:58:16 | 000,117,248 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\LayoutPlugin.dll MOD - [2013-12-19 05:58:05 | 000,304,128 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\XFramePlugin.dll MOD - [2013-12-19 05:57:49 | 000,318,976 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\StatusBarMgrPlugin.dll MOD - [2013-12-19 05:57:25 | 000,560,128 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\DeviceMgrUIPlugin.dll MOD - [2013-12-19 05:57:01 | 000,502,784 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NetSettingPlugin.dll MOD - [2013-12-19 05:56:44 | 000,808,448 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\AddrBookUIPlugin.dll MOD - [2013-12-19 05:55:51 | 000,097,280 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NotifyServicePlugin.dll MOD - [2013-12-19 05:55:47 | 000,841,216 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\SMSUIPlugin.dll MOD - [2013-12-19 05:54:41 | 000,419,328 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\DialupUIPlugin.dll MOD - [2013-12-19 05:54:14 | 000,425,984 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\core.dll MOD - [2013-12-19 05:53:40 | 000,275,968 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\sdk.dll MOD - [2013-12-19 05:53:30 | 000,167,936 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\ATR2SMgr.dll MOD - [2013-12-19 05:53:27 | 000,317,952 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NetInfoSrvPlugin.dll MOD - [2013-12-19 05:53:17 | 000,339,968 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\DeviceAppPlugin.dll MOD - [2013-12-19 05:53:07 | 000,322,560 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\DeviceSrvPlugin.dll MOD - [2013-12-19 05:52:58 | 000,708,608 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\SmsAppPlugin.dll MOD - [2013-12-19 05:52:46 | 000,219,136 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\SmsSrvPlugin.dll MOD - [2013-12-19 05:52:41 | 000,142,336 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\USSDSrvPlugin.dll MOD - [2013-12-19 05:52:38 | 001,088,512 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\AddrBookPlugin.dll MOD - [2013-12-19 05:52:27 | 000,284,672 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\AddrBookSrvPlugin.dll MOD - [2013-12-19 05:52:19 | 000,200,192 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NDISPlugin.dll MOD - [2013-12-19 05:52:14 | 000,233,984 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\DialUpPlugin.dll MOD - [2013-12-19 05:52:09 | 000,237,056 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NetSrvPlugin.dll MOD - [2013-12-19 05:52:03 | 000,158,720 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NetConnectSrvPlugin.dll MOD - [2013-12-19 05:51:59 | 000,154,624 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\DataServicePlugin.dll MOD - [2013-12-19 05:51:56 | 000,390,656 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\Proxy.dll MOD - [2013-12-19 05:51:42 | 000,065,536 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\OSPowerMgr.dll MOD - [2013-12-19 05:51:41 | 000,131,584 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\OSNDIS.dll MOD - [2013-12-19 05:51:39 | 000,156,160 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\OSDialup.dll MOD - [2013-12-19 05:51:37 | 000,102,400 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\OSAdapt.dll MOD - [2013-12-19 05:51:35 | 000,260,608 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\AtCodec.dll MOD - [2013-12-19 05:51:26 | 000,190,464 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\XCodec.dll MOD - [2013-12-19 05:51:21 | 000,546,304 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\PluginContainer.dll MOD - [2013-12-19 05:51:00 | 000,158,208 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\Trace.dll MOD - [2013-12-19 05:50:58 | 000,243,712 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\Common.dll MOD - [2013-12-19 04:20:28 | 009,559,040 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\QtGui4.dll MOD - [2013-12-19 04:20:28 | 002,417,152 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\QtCore4.dll MOD - [2013-12-19 04:20:28 | 001,148,416 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\QtNetwork4.dll MOD - [2013-12-19 04:20:28 | 001,146,880 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\NDISAPI.dll MOD - [2013-12-19 04:20:28 | 000,712,192 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\LiveUpdateInterface.dll MOD - [2013-12-19 04:20:28 | 000,398,336 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\QtXml4.dll MOD - [2013-12-19 04:20:28 | 000,370,176 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\plugins\imageformats\qtiff4.dll MOD - [2013-12-19 04:20:28 | 000,350,720 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\plugins\imageformats\qmng4.dll MOD - [2013-12-19 04:20:28 | 000,192,000 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\plugins\imageformats\qjpeg4.dll MOD - [2013-12-19 04:20:28 | 000,120,192 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\Win7Support.dll MOD - [2013-12-19 04:20:28 | 000,082,944 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\plugins\imageformats\qgif4.dll MOD - [2013-12-19 04:20:28 | 000,081,920 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\plugins\imageformats\qico4.dll MOD - [2013-12-19 04:20:28 | 000,043,008 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\libgcc_s_dw2-1.dll MOD - [2013-12-19 04:20:28 | 000,011,362 | ---- | M] () -- C:\Program Files\T-Mobile\InternetMobile\mingwm10.dll MOD - [2013-07-08 14:39:14 | 000,032,768 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_pl_b77a5c561934e089\System.Runtime.Remoting.resources.dll MOD - [2013-07-08 14:39:08 | 000,311,296 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll MOD - [2011-05-10 07:01:31 | 000,410,112 | ---- | M] () -- C:\Program Files\Acer\Android Manager\PLK.dll MOD - [2010-07-04 23:32:38 | 000,010,752 | ---- | M] () -- C:\Program Files\Unlocker\UnlockerCOM.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2014-07-17 07:42:17 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2014-07-15 15:20:45 | 000,765,048 | ---- | M] (Webroot) [Auto | Running] -- C:\Program Files\WvfSNamU\IOLmWrgN.exe -- (WRSVC) SRV - [2014-07-11 20:44:35 | 000,107,624 | ---- | M] (RaMMicHaeL) [Auto | Running] -- C:\Program Files\Unchecky\bin\unchecky_svc.exe -- (Unchecky) SRV - [2014-07-10 16:41:59 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService) SRV - [2014-07-10 14:26:32 | 000,262,320 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2013-12-19 09:30:55 | 000,678,480 | ---- | M] () [Auto | Stopped] -- C:\Program Files\T-Mobile\InternetMobile\UpdateDog\ouc.exe -- (Internet Manager. RunOuc) SRV - [2013-10-28 04:02:26 | 000,276,048 | ---- | M] () [Auto | Running] -- C:\ProgramData\DatacardService\HWDeviceService.exe -- (HWDeviceService.exe) SRV - [2013-05-27 06:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2012-04-05 15:48:02 | 000,255,376 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Live Updater Service) SRV - [2011-03-14 13:44:36 | 000,352,336 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Program Files\Launch Manager\dsiwmis.exe -- (DsiWMIService) SRV - [2011-03-07 10:45:22 | 001,755,136 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R) SRV - [2011-02-22 21:01:08 | 000,739,944 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe -- (ePowerSvc) SRV - [2011-01-05 13:22:50 | 000,936,208 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng) SRV - [2011-01-05 13:11:14 | 000,227,600 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS) SRV - [2011-01-05 13:09:24 | 000,477,456 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc) SRV - [2010-11-06 08:54:22 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) SRV - [2010-09-28 03:09:54 | 000,172,912 | ---- | M] (Egis Technology Inc. ) [On_Demand | Stopped] -- C:\Program Files\Common Files\EgisTec\Services\EgisTicketService.exe -- (EgisTec Ticket Service) SRV - [2010-01-30 01:52:58 | 000,260,640 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Acer VCM\RS_Service.exe -- (RS_Service) SRV - [2010-01-08 15:21:22 | 000,023,584 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Registration\GREGsvc.exe -- (GREGService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2014-07-15 15:20:47 | 000,116,736 | ---- | M] (Webroot) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\WRkrn.sys -- (WRkrn) DRV - [2013-12-19 04:20:28 | 000,316,544 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ew_wwanecm.sys -- (hwusb_wwanecm) DRV - [2013-12-19 04:20:28 | 000,108,032 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ew_cdcacm.sys -- (hwusb_cdcacm) DRV - [2013-12-19 04:20:28 | 000,095,232 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ew_hwusbdev.sys -- (ew_hwusbdev) DRV - [2013-12-19 04:20:28 | 000,077,824 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ew_jubusenum.sys -- (huawei_enumerator) DRV - [2013-12-19 04:20:28 | 000,011,904 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ew_usbenumfilter.sys -- (ew_usbenumfilter) DRV - [2011-05-10 11:32:21 | 000,062,048 | ---- | M] (Egis Technology Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\mwlPSDVDisk.sys -- (mwlPSDVDisk) DRV - [2011-05-10 11:32:21 | 000,019,304 | ---- | M] (Egis Technology Inc.) [File_System | System | Running] -- C:\Windows\System32\drivers\mwlPSDFilter.sys -- (mwlPSDFilter) DRV - [2011-05-10 11:32:21 | 000,016,744 | ---- | M] (Egis Technology Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\mwlPSDNserv.sys -- (mwlPSDNServ) DRV - [2011-03-07 05:46:26 | 000,252,520 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RtsPStor.sys -- (RSPCIESTOR) DRV - [2011-01-04 05:28:54 | 007,435,264 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETwNs32.sys -- (NETwNs32) DRV - [2010-11-20 23:29:24 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV - [2010-11-20 23:29:03 | 000,027,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbGD.sys -- (TsUsbGD) DRV - [2010-07-04 21:51:26 | 000,004,096 | ---- | M] () [Kernel | Unavailable | Unknown] -- C:\Program Files\Unlocker\UnlockerDriver5.sys -- (UnlockerDriver5) DRV - [2009-07-14 01:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.duba.com/?f=weishi2&s=ins IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com IE - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.duba.com/?f=weishi2&s=ins IE - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR IE - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\..\SearchScopes\{24F1085D-D0AF-4875-88F4-662670F908E9}: "URL" = https://www.google.com/search?q={searchTerms} IE - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\..\SearchScopes\{F88163D5-9E0F-4702-93F6-619FD55D64C1}: "URL" = http://www.google.com/search?hl=pl&q={searchTerms} IE - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledAddons: %7B12A60D0F-0077-4F41-81B2-1286DDD278BB%7D:0.8.2 FF - prefs.js..extensions.enabledAddons: support%40lastpass.com:3.1.40 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:31.0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 31.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 31.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2014-07-22 08:32:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\Extensions [2014-07-22 13:05:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\Firefox\Profiles\im92ncl4.default\extensions [2014-07-15 15:22:46 | 000,000,000 | ---D | M] (Webroot Password Manager) -- C:\Users\bloe\AppData\Roaming\mozilla\Firefox\Profiles\im92ncl4.default\extensions\{8ac62a8b-8b3f-43ba-9b1a-90c299b9dfda} [2014-07-17 22:44:07 | 000,000,000 | ---D | M] (LastPass) -- C:\Users\bloe\AppData\Roaming\mozilla\Firefox\Profiles\im92ncl4.default\extensions\support@lastpass.com [2014-07-13 16:40:08 | 000,344,276 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi [2014-07-16 23:16:49 | 000,002,767 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\CookiesIE@yahoo.com.xpi [2014-07-20 22:11:55 | 000,011,042 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\jid1-P34HaABBBpOerQ@jetpack.xpi [2014-07-19 01:05:21 | 000,002,333 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\pbm-personas@dactyl.googlecode.com.xpi [2014-07-14 22:35:40 | 000,002,736 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\rssicon.vaka@gmail.com.xpi [2014-07-21 18:57:56 | 000,003,672 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\TabsAlwaysInTitlebar@SoapyBrew.xpi [2014-07-12 00:17:44 | 000,023,446 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\useragentoverrider@qixinglu.com.xpi [2014-07-10 14:31:48 | 000,215,733 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\{12A60D0F-0077-4F41-81B2-1286DDD278BB}.xpi [2014-07-22 13:05:43 | 000,233,217 | ---- | M] () (No name found) -- C:\Users\bloe\AppData\Roaming\mozilla\firefox\profiles\im92ncl4.default\extensions\{281944CE-E7F4-4A43-A5D0-EAC0B3E71BFF}.xpi [2014-07-21 22:44:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2014-07-21 22:44:32 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} O1 HOSTS File: ([2014-07-13 17:57:12 | 000,001,927 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com O1 - Hosts: 0.0.0.0 media.opencandy.com O1 - Hosts: 0.0.0.0 cdn.opencandy.com O1 - Hosts: 0.0.0.0 tracking.opencandy.com O1 - Hosts: 0.0.0.0 api.opencandy.com O1 - Hosts: 0.0.0.0 installer.betterinstaller.com O1 - Hosts: 0.0.0.0 installer.filebulldog.com O1 - Hosts: 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net O1 - Hosts: 0.0.0.0 inno.bisrv.com O1 - Hosts: 0.0.0.0 nsis.bisrv.com O1 - Hosts: 0.0.0.0 cdn.file2desktop.com O1 - Hosts: 0.0.0.0 cdn.goateastcach.us O1 - Hosts: 0.0.0.0 cdn.guttastatdk.us O1 - Hosts: 0.0.0.0 cdn.inskinmedia.com O1 - Hosts: 0.0.0.0 cdn.insta.oibundles2.com O1 - Hosts: 0.0.0.0 cdn.insta.playbryte.com O1 - Hosts: 0.0.0.0 cdn.llogetfastcach.us O1 - Hosts: 0.0.0.0 cdn.montiera.com O1 - Hosts: 0.0.0.0 cdn.msdwnld.com O1 - Hosts: 0.0.0.0 cdn.mypcbackup.com O1 - Hosts: 0.0.0.0 cdn.ppdownload.com O1 - Hosts: 0.0.0.0 cdn.riceateastcach.us O1 - Hosts: 0.0.0.0 cdn.shyapotato.us O1 - Hosts: 0.0.0.0 cdn.solimba.com O1 - Hosts: 0.0.0.0 cdn.tuto4pc.com O1 - Hosts: 9 more lines... O2 - BHO: (Webroot Vault) - {c8d5d964-2be8-4c5b-8cf5-6e975aa88504} - C:\ProgramData\WRData\PKG\LPBar.dll (Webroot) O3 - HKLM\..\Toolbar: (Webroot Toolbar) - {97ab88ef-346b-4179-a0b1-7445896547a5} - C:\ProgramData\WRData\PKG\LPBar.dll (Webroot) O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O4 - HKLM..\Run: [AndroidManager] C:\Program Files\Acer\Android Manager\AML.exe () O4 - HKLM..\Run: [EgisTecPMMUpdate] C:\Program Files\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) O4 - HKLM..\Run: [EgisUpdate] C:\Program Files\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.) O4 - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation) O4 - HKLM..\Run: [iPatchData] C:\Program Files\Acer\Updater\iUpdate.exe (Insyde Software Corp.) O4 - HKLM..\Run: [iSyncData] C:\Program Files\Acer\Android Manager\iSync.exe (Insyde Software Corp.) O4 - HKLM..\Run: [Power Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated) O4 - HKLM..\Run: [SuiteTray] C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (Egis Technology Inc.) O4 - HKLM..\Run: [WRSVC] C:\Program Files\WvfSNamU\IOLmWrgN.exe (Webroot) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewOnDrive = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRun = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRunOnce = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRun = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRunOnce = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewContextMenu = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoShellSearchButton = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFind = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFile = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideClock = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayContextMenu = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayItemsDisplay = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDevMgrUpdate = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetTaskbar = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDeletePrinter = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDFSTab = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeStartMenu = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogoff = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoEncryptOnMove = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRunasInstallPrompt = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoHardwareTab = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuSubFolders = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispAppearancePage = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispSettingsPage = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewOnDrive = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRun = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRunOnce = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRun = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRunOnce = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewContextMenu = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoShellSearchButton = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFind = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFile = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideClock = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayContextMenu = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayItemsDisplay = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDevMgrUpdate = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetTaskbar = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDeletePrinter = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDFSTab = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeStartMenu = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogoff = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoEncryptOnMove = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRunasInstallPrompt = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoHardwareTab = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuSubFolders = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispAppearancePage = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispSettingsPage = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewOnDrive = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRun = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRunOnce = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRun = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRunOnce = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewContextMenu = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoShellSearchButton = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFind = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFile = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideClock = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayContextMenu = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayItemsDisplay = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDevMgrUpdate = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetTaskbar = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDeletePrinter = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDFSTab = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeStartMenu = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogoff = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoEncryptOnMove = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRunasInstallPrompt = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoHardwareTab = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuSubFolders = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispAppearancePage = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispSettingsPage = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewOnDrive = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRun = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRunOnce = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRun = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRunOnce = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewContextMenu = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoShellSearchButton = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFind = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFile = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideClock = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayContextMenu = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayItemsDisplay = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDevMgrUpdate = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetTaskbar = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDeletePrinter = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDFSTab = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeStartMenu = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogoff = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoEncryptOnMove = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRunasInstallPrompt = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoHardwareTab = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuSubFolders = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispAppearancePage = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispSettingsPage = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewOnDrive = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRun = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRunOnce = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRun = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRunOnce = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewContextMenu = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoShellSearchButton = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFind = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFile = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideClock = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayContextMenu = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayItemsDisplay = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDevMgrUpdate = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetTaskbar = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDeletePrinter = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDFSTab = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeStartMenu = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogoff = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoEncryptOnMove = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRunasInstallPrompt = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoHardwareTab = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuSubFolders = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispAppearancePage = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispSettingsPage = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewOnDrive = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRun = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRunOnce = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRun = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableCurrentUserRunOnce = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 181 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewContextMenu = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoShellSearchButton = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFind = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFile = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideClock = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayContextMenu = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayItemsDisplay = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDevMgrUpdate = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetTaskbar = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDeletePrinter = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDFSTab = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeStartMenu = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogoff = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoEncryptOnMove = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRunasInstallPrompt = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoHardwareTab = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuSubFolders = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispAppearancePage = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0 O7 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispSettingsPage = 0 O9 - Extra Button: Webroot - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\ProgramData\WRData\PKG\LPBar.dll (Webroot) O9 - Extra 'Tools' menuitem : Webroot - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\ProgramData\WRData\PKG\LPBar.dll (Webroot) O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D1B30EB4-7D11-4781-ABDF-CC5A05C9D990}: DhcpNameServer = 192.168.1.250 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DEAF94F3-4084-4AFA-8D50-5C5CCA9A8029}: NameServer = 213.158.199.1 213.158.199.5 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Acer\Acer VCM\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2014-07-12 21:31:04 | 000,000,000 | ---D | M] - D:\Autorun.inf -- [ FAT32 ] O32 - AutoRun File - [2013-12-19 12:20:28 | 000,150,608 | R--- | M] () - E:\AutoRun.exe -- [ CDFS ] O32 - AutoRun File - [2013-12-19 12:20:28 | 000,000,045 | R--- | M] () - E:\AUTORUN.INF -- [ CDFS ] O32 - AutoRun File - [2014-07-12 21:31:14 | 000,000,000 | RHSD | M] - G:\Autorun.inf -- [ FAT32 ] O32 - AutoRun File - [2014-07-09 14:54:38 | 000,000,076 | RH-- | M] () - G:\AUTORUN.FCB -- [ FAT32 ] O33 - MountPoints2\{3580a494-0798-11e4-b0a7-78929c2757d8}\Shell - "" = AutoRun O33 - MountPoints2\{3580a494-0798-11e4-b0a7-78929c2757d8}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2013-12-19 12:20:28 | 000,150,608 | R--- | M] () O33 - MountPoints2\{3580a4ad-0798-11e4-b0a7-e89a8f8606a4}\Shell - "" = AutoRun O33 - MountPoints2\{3580a4ad-0798-11e4-b0a7-e89a8f8606a4}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2013-12-19 12:20:28 | 000,150,608 | R--- | M] () O33 - MountPoints2\{5ac9d402-08e9-11e4-bd7b-e89a8f8606a4}\Shell - "" = AutoRun O33 - MountPoints2\{5ac9d402-08e9-11e4-bd7b-e89a8f8606a4}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2013-12-19 12:20:28 | 000,150,608 | R--- | M] () O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O35 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKU\.DEFAULT\...exe [@ = exefile] -- "%1" %* O37 - HKU\S-1-5-18\...exe [@ = exefile] -- "%1" %* O37 - HKU\S-1-5-21-2967279237-490306214-3179046938-1000\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-07-22 15:39:21 | 000,000,000 | ---D | C] -- C:\FRST [2014-07-21 22:57:22 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\Apps [2014-07-21 21:47:25 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\Firefox17 [2014-07-21 18:33:33 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee [2014-07-21 18:25:40 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker [2014-07-21 18:25:39 | 000,000,000 | ---D | C] -- C:\Program Files\Unlocker [2014-07-21 18:01:49 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Kingsoft [2014-07-21 17:47:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Thunder Network [2014-07-21 17:45:03 | 000,000,000 | ---D | C] -- C:\ProgramData\KRSHistory [2014-07-21 17:44:36 | 000,000,000 | -HSD | C] -- C:\KRSHistory [2014-07-21 17:38:52 | 000,000,000 | ---D | C] -- C:\ProgramData\KSafeCommon [2014-07-21 17:38:33 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\Kingsoft [2014-07-21 17:37:56 | 000,000,000 | ---D | C] -- C:\ProgramData\kingsoft [2014-07-20 20:26:10 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro [2014-07-20 14:28:50 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye Webcam [2014-07-20 14:03:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Temp [2014-07-20 13:58:15 | 000,000,000 | ---D | C] -- C:\ProgramData\CyberLink [2014-07-20 13:58:14 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\CyberLink [2014-07-20 13:58:03 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\Youcam [2014-07-20 13:26:58 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Intel Corporation [2014-07-19 22:02:38 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\VirtualStore [2014-07-19 22:01:31 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Software Informer [2014-07-19 22:00:00 | 000,000,000 | ---D | C] -- C:\Program Files\AoaoPhoto Digital Studio [2014-07-19 01:08:09 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\Macromedia [2014-07-19 00:32:13 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\office portable [2014-07-18 12:09:25 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Audacity [2014-07-18 12:08:32 | 000,000,000 | ---D | C] -- C:\Program Files\Audacity [2014-07-18 12:08:21 | 000,000,000 | ---D | C] -- C:\Program Files\Lame For Audacity [2014-07-17 22:41:54 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\Skins [2014-07-17 21:23:27 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\Skiny [2014-07-16 12:47:35 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\Slimjet [2014-07-16 12:46:59 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\pcv – kopia firefox [2014-07-15 17:21:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Find Empty Files And Folder [2014-07-15 17:21:48 | 000,000,000 | ---D | C] -- C:\Program Files\Find Empty Files And Folder [2014-07-15 15:22:35 | 010,395,072 | ---- | C] (Webroot Software, Inc.) -- C:\Program Files\Common Files\wruninstall.exe [2014-07-15 15:22:20 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\lptmp957224719 [2014-07-15 15:20:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webroot SecureAnywhere [2014-07-15 15:20:46 | 000,153,256 | ---- | C] (Webroot) -- C:\Windows\System32\WRusr.dll [2014-07-15 15:20:46 | 000,116,736 | ---- | C] (Webroot) -- C:\Windows\System32\drivers\WRkrn.sys [2014-07-15 15:20:45 | 000,000,000 | ---D | C] -- C:\Program Files\WvfSNamU [2014-07-15 15:20:30 | 000,000,000 | ---D | C] -- C:\ProgramData\WRData [2014-07-15 12:44:25 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\GoogleChromePortable [2014-07-13 17:48:37 | 000,000,000 | ---D | C] -- C:\Windows\Migration [2014-07-13 16:54:52 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\RevoUninstallerPortable [2014-07-13 00:22:42 | 000,000,000 | ---D | C] -- C:\Moje Strony Web [2014-07-12 12:34:07 | 000,000,000 | ---D | C] -- C:\Tiranium_AntiVirus_G.A.R.K_System [2014-07-12 12:11:27 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET [2014-07-11 20:52:06 | 000,000,000 | ---D | C] -- C:\Program Files\Secunia [2014-07-11 20:44:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky [2014-07-11 20:44:32 | 000,000,000 | ---D | C] -- C:\Program Files\Unchecky [2014-07-11 19:46:01 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe [2014-07-11 19:45:55 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fsutil.exe [2014-07-11 19:45:42 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll [2014-07-11 19:45:37 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe [2014-07-11 19:45:35 | 003,419,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll [2014-07-11 19:45:35 | 001,987,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll [2014-07-11 19:45:32 | 001,247,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll [2014-07-10 23:25:00 | 000,000,000 | -HSD | C] -- C:\Users\bloe\AppData\Local\EmieUserList [2014-07-10 23:25:00 | 000,000,000 | -HSD | C] -- C:\Users\bloe\AppData\Local\EmieSiteList [2014-07-10 22:34:39 | 000,000,000 | --SD | C] -- C:\Windows\System32\CompatTel [2014-07-10 21:47:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Kromtech [2014-07-10 21:47:11 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HaoZip [2014-07-10 21:46:53 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\HaoZip [2014-07-10 21:46:40 | 000,000,000 | ---D | C] -- C:\Program Files\HaoZip [2014-07-10 18:10:26 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\wdf01000.sys.mui [2014-07-10 18:01:40 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFPlatform.dll [2014-07-10 18:01:39 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFx.dll [2014-07-10 18:01:39 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFCoinstaller.dll [2014-07-10 17:35:23 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe [2014-07-10 16:42:06 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\elshyph.dll [2014-07-10 16:42:05 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsIntl.dll [2014-07-10 16:42:05 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll [2014-07-10 16:42:05 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll [2014-07-10 16:42:05 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe [2014-07-10 16:42:05 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll [2014-07-10 16:42:05 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\JavaScriptCollectionAgent.dll [2014-07-10 16:42:04 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll [2014-07-10 16:42:04 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll [2014-07-10 16:42:04 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat [2014-07-10 16:42:04 | 000,595,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe [2014-07-10 16:42:04 | 000,367,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll [2014-07-10 16:42:04 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec [2014-07-10 16:42:04 | 000,240,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll [2014-07-10 16:42:04 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll [2014-07-10 16:42:04 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll [2014-07-10 16:42:04 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll [2014-07-10 16:42:04 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll [2014-07-10 16:42:03 | 001,964,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl [2014-07-10 16:42:02 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll [2014-07-10 16:42:01 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll [2014-07-10 16:42:00 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb [2014-07-10 16:42:00 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll [2014-07-10 16:42:00 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe [2014-07-10 16:42:00 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe [2014-07-10 16:42:00 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe [2014-07-10 16:42:00 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll [2014-07-10 16:41:59 | 004,254,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll [2014-07-10 16:41:59 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9diag.dll [2014-07-10 16:41:59 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll [2014-07-10 16:41:59 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll [2014-07-10 16:41:59 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IEAdvpack.dll [2014-07-10 16:41:59 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollector.exe [2014-07-10 16:41:59 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll [2014-07-10 16:41:59 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe [2014-07-10 16:41:59 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MshtmlDac.dll [2014-07-10 16:41:59 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwproxystub.dll [2014-07-10 16:41:59 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll [2014-07-10 16:41:59 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll [2014-07-10 16:41:59 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll [2014-07-10 16:41:59 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe [2014-07-10 16:41:59 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollectorres.dll [2014-07-10 16:40:29 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tdh.dll [2014-07-10 16:40:29 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll [2014-07-10 16:39:24 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe [2014-07-10 16:34:53 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msmpeg2vdec.dll [2014-07-10 16:34:53 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll [2014-07-10 16:34:53 | 001,080,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll [2014-07-10 16:34:53 | 000,604,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll [2014-07-10 16:34:53 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll [2014-07-10 16:34:53 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll [2014-07-10 16:34:53 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll [2014-07-10 16:34:53 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll [2014-07-10 16:34:53 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll [2014-07-10 16:34:53 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll [2014-07-10 16:34:53 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll [2014-07-10 16:34:53 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll [2014-07-10 16:34:53 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll [2014-07-10 16:34:53 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll [2014-07-10 16:34:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll [2014-07-10 16:34:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll [2014-07-10 16:34:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll [2014-07-10 16:34:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll [2014-07-10 16:34:53 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll [2014-07-10 16:34:52 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll [2014-07-10 14:38:29 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Intel [2014-07-10 14:36:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless [2014-07-10 14:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Cisco [2014-07-10 14:35:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel [2014-07-10 14:35:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel [2014-07-10 14:25:15 | 000,699,056 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe [2014-07-10 14:25:13 | 000,071,344 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2014-07-10 13:37:15 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\Diagnostics [2014-07-10 11:09:35 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssrch.dll [2014-07-10 11:09:34 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tquery.dll [2014-07-10 11:09:34 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssvp.dll [2014-07-10 11:09:34 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssph.dll [2014-07-10 11:09:33 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssphtb.dll [2014-07-10 11:09:33 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscntrs.dll [2014-07-10 11:09:31 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdosys.dll [2014-07-10 11:09:25 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\System32\fpb.rs [2014-07-10 11:09:25 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\System32\oflc-nz.rs [2014-07-10 11:09:25 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\System32\pegibbfc.rs [2014-07-10 11:09:25 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\System32\csrr.rs [2014-07-10 11:09:25 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\System32\cob-au.rs [2014-07-10 11:09:25 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\System32\djctq.rs [2014-07-10 11:09:24 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gameux.dll [2014-07-10 11:09:24 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Wpc.dll [2014-07-10 11:09:24 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\System32\cero.rs [2014-07-10 11:09:24 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\System32\esrb.rs [2014-07-10 11:09:24 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\System32\usk.rs [2014-07-10 11:09:24 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\System32\oflc.rs [2014-07-10 11:09:24 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\System32\grb.rs [2014-07-10 11:09:24 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi-pt.rs [2014-07-10 11:09:24 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi-fi.rs [2014-07-10 11:09:24 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi.rs [2014-07-10 11:09:06 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll [2014-07-10 11:08:51 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\hidclass.sys [2014-07-10 11:08:51 | 000,025,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\hidparse.sys [2014-07-10 11:08:45 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\RNDISMP.sys [2014-07-10 11:08:34 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\authui.dll [2014-07-10 11:08:34 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SmartcardCredentialProvider.dll [2014-07-10 11:07:44 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usb8023.sys [2014-07-10 11:07:13 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpnet.dll [2014-07-10 11:07:11 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\prevhost.exe [2014-07-10 11:05:38 | 003,969,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe [2014-07-10 11:05:37 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe [2014-07-10 11:05:36 | 000,538,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\objsel.dll [2014-07-10 11:05:35 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cngprovider.dll [2014-07-10 11:05:35 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\adprovider.dll [2014-07-10 11:05:35 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\capiprovider.dll [2014-07-10 11:05:35 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpapiprovider.dll [2014-07-10 11:05:35 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dimsroam.dll [2014-07-10 11:05:35 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wincredprovider.dll [2014-07-10 11:05:13 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cscript.exe [2014-07-10 11:05:11 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml6r.dll [2014-07-10 11:05:11 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml3r.dll [2014-07-10 11:05:01 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OxpsConverter.exe [2014-07-10 11:04:51 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll [2014-07-10 11:04:51 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisrndr.ax [2014-07-10 11:04:42 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\timedate.cpl [2014-07-10 11:04:33 | 000,218,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\dxgmms1.sys [2014-07-10 11:04:23 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cryptdlg.dll [2014-07-10 11:04:09 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll [2014-07-10 11:03:53 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll [2014-07-10 11:03:49 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll [2014-07-10 11:03:49 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll [2014-07-10 11:03:37 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll [2014-07-10 11:03:37 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll [2014-07-10 11:03:37 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wwanprotdim.dll [2014-07-10 11:03:37 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll [2014-07-10 11:03:37 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll [2014-07-10 11:03:33 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scavengeui.dll [2014-07-10 11:03:28 | 000,149,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\storport.sys [2014-07-10 11:03:28 | 000,027,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\Diskdump.sys [2014-07-10 11:03:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iologmsg.dll [2014-07-10 11:03:19 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certutil.exe [2014-07-10 11:03:19 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certenc.dll [2014-07-10 11:03:07 | 000,175,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netcorehc.dll [2014-07-10 11:03:07 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncsi.dll [2014-07-10 11:03:07 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll [2014-07-10 11:02:41 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\packager.dll [2014-07-10 10:26:47 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srcore.dll [2014-07-10 10:26:45 | 002,350,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys [2014-07-10 10:26:44 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\osk.exe [2014-07-10 10:26:41 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll [2014-07-10 10:26:27 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browcli.dll [2014-07-10 10:26:25 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll [2014-07-10 10:26:23 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVDECOD.DLL [2014-07-10 10:26:09 | 000,177,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\portcls.sys [2014-07-10 10:26:09 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\drmk.sys [2014-07-10 10:26:08 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll [2014-07-10 10:26:08 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qdvd.dll [2014-07-10 10:25:53 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qedit.dll [2014-07-10 10:25:52 | 000,240,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys [2014-07-10 10:25:51 | 000,187,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [2014-07-10 09:55:08 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\webio.dll [2014-07-10 09:55:03 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbcjt32.dll [2014-07-10 09:55:03 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbctrac.dll [2014-07-10 09:55:03 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccp32.dll [2014-07-10 09:55:03 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccu32.dll [2014-07-10 09:55:03 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccr32.dll [2014-07-10 09:54:59 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorekmts.dll [2014-07-10 09:54:59 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpwsx.dll [2014-07-10 09:54:59 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdrmemptylst.exe [2014-07-10 09:54:51 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\synceng.dll [2014-07-10 09:54:28 | 000,133,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ataport.sys [2014-07-10 09:54:25 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshwfp.dll [2014-07-10 09:54:25 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FWPUCLNT.DLL [2014-07-10 09:53:57 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dhcpcore6.dll [2014-07-10 09:53:57 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dhcpcsvc6.dll [2014-07-10 09:53:12 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe [2014-07-10 09:53:11 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll [2014-07-10 09:53:11 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll [2014-07-10 09:53:11 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll [2014-07-10 09:53:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll [2014-07-10 09:53:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll [2014-07-10 09:53:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll [2014-07-10 09:53:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll [2014-07-10 09:53:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll [2014-07-10 09:53:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll [2014-07-10 09:53:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll [2014-07-10 09:53:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll [2014-07-10 09:53:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll [2014-07-10 09:53:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll [2014-07-10 09:53:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll [2014-07-10 09:53:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll [2014-07-10 09:53:10 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll [2014-07-10 09:53:10 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll [2014-07-10 09:53:10 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll [2014-07-10 09:53:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll [2014-07-10 09:52:45 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL [2014-07-10 09:52:44 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wer.dll [2014-07-10 09:52:40 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aepdu.dll [2014-07-10 09:52:39 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aeinv.dll [2014-07-10 09:52:16 | 000,047,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\WdfLdr.sys [2014-07-10 09:52:16 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Wdfres.dll [2014-07-10 09:52:10 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\poqexec.exe [2014-07-10 09:52:05 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usbport.sys [2014-07-10 09:52:05 | 000,006,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usbd.sys [2014-07-10 09:51:58 | 000,594,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe [2014-07-10 09:51:57 | 000,572,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe [2014-07-10 09:51:57 | 000,510,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe [2014-07-10 09:51:57 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe [2014-07-10 09:51:57 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll [2014-07-10 09:51:56 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll [2014-07-10 09:51:56 | 000,390,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdrm.dll [2014-07-10 09:51:56 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll [2014-07-10 09:51:56 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll [2014-07-10 09:51:13 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sspisrv.dll [2014-07-10 09:50:28 | 000,101,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\consent.exe [2014-07-10 05:32:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\XPSViewer [2014-07-10 05:32:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\pl-PL [2014-07-10 05:32:56 | 000,000,000 | ---D | C] -- C:\Windows\pl-PL [2014-07-10 05:32:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\pl [2014-07-10 05:32:02 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\usbrpm.sys.mui [2014-07-10 05:31:46 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\fvevol.sys.mui [2014-07-10 05:31:36 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\nwifi.sys.mui [2014-07-10 05:31:36 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\qwavedrv.sys.mui [2014-07-10 05:31:23 | 000,033,280 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\pl-PL\yk62x86.sys.mui [2014-07-10 05:31:23 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\volsnap.sys.mui [2014-07-10 05:31:23 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\usbport.sys.mui [2014-07-10 05:31:23 | 000,022,016 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e1y6032.sys.mui [2014-07-10 05:31:23 | 000,022,016 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e1e6032.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\viac7.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\processr.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\intelppm.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\amdppm.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\amdk8.sys.mui [2014-07-10 05:31:23 | 000,018,944 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\E1G60I32.sys.mui [2014-07-10 05:31:23 | 000,012,800 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\pl-PL\k57nd60x.sys.mui [2014-07-10 05:31:23 | 000,012,800 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\pl-PL\b57nd60x.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\usbhub.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ohci1394.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\1394ohci.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e1q6032.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e1k6032.sys.mui [2014-07-10 05:31:23 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\serial.sys.mui [2014-07-10 05:31:23 | 000,010,752 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\pl-PL\BrSerId.sys.mui [2014-07-10 05:31:23 | 000,010,752 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\pl-PL\BrSerIb.sys.mui [2014-07-10 05:31:23 | 000,010,752 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\pl-PL\ltmdmnt.sys.mui [2014-07-10 05:31:23 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\acpi.sys.mui [2014-07-10 05:31:23 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\battc.sys.mui [2014-07-10 05:31:23 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\IPMIDrv.sys.mui [2014-07-10 05:31:23 | 000,005,632 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\pl-PL\bcm4sbxp.sys.mui [2014-07-10 05:31:23 | 000,005,120 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e100b325.sys.mui [2014-07-10 05:31:23 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\wacompen.sys.mui [2014-07-10 05:31:23 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\tpm.sys.mui [2014-07-10 05:31:23 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\parport.sys.mui [2014-07-10 05:31:23 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ataport.sys.mui [2014-07-10 05:31:23 | 000,003,072 | ---- | C] (VIA Technologies, Inc. ) -- C:\Windows\System32\drivers\pl-PL\getn62.sys.mui [2014-07-10 05:31:23 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\umbus.sys.mui [2014-07-10 05:31:23 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\GAGP30KX.SYS.mui [2014-07-10 05:31:23 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\UAGP35.SYS.mui [2014-07-10 05:31:23 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\parvdm.sys.mui [2014-07-10 05:31:23 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\MTConfig.sys.mui [2014-07-10 05:31:23 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\disk.sys.mui [2014-07-10 05:31:23 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\wd.sys.mui [2014-07-10 05:31:23 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\cdrom.sys.mui [2014-07-10 05:31:23 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\amdide.sys.mui [2014-07-10 05:31:19 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\vhdmp.sys.mui [2014-07-10 05:31:18 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mpio.sys.mui [2014-07-10 05:31:18 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\i8042prt.sys.mui [2014-07-10 05:31:18 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\pci.sys.mui [2014-07-10 05:31:18 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\bthport.sys.mui [2014-07-10 05:31:18 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\msdsm.sys.mui [2014-07-10 05:31:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\sermouse.sys.mui [2014-07-10 05:31:18 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mouclass.sys.mui [2014-07-10 05:31:18 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\kbdclass.sys.mui [2014-07-10 05:31:18 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\bthpan.sys.mui [2014-07-10 05:31:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\vdrvroot.sys.mui [2014-07-10 05:31:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\pcmcia.sys.mui [2014-07-10 05:31:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\isapnp.sys.mui [2014-07-10 05:31:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\hdaudbus.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\pl-PL\pscr.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\tsusbflt.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\portcls.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\HdAudio.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\pl-PL\atikmdag.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ULIAGPKX.SYS.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\rndismpx.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\rndismp6.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\NV_AGP.SYS.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mssmbios.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mouhid.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\hidbth.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\vwifibus.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\VIAAGP.SYS.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\SISAGP.SYS.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\serscan.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\pnpmem.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\kbdhid.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\Dot4usb.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\BTHUSB.SYS.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\AMDAGP.SYS.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\AGP440.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\pl-PL\BrParwdm.sys.mui [2014-07-10 05:31:18 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\bthenum.sys.mui [2014-07-10 05:31:13 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ndiscap.sys.mui [2014-07-10 05:31:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\scfilter.sys.mui [2014-07-10 05:31:12 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\fltmgr.sys.mui [2014-07-10 05:31:06 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\http.sys.mui [2014-07-10 05:31:06 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ndis.sys.mui [2014-07-10 05:31:05 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\tcpip.sys.mui [2014-07-10 05:31:05 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ws2ifsl.sys.mui [2014-07-10 05:31:01 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\pacer.sys.mui [2014-07-10 05:31:01 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\rdpwd.sys.mui [2014-07-10 05:31:00 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\bfe.dll.mui [2014-07-10 05:30:56 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\afd.sys.mui [2014-07-10 05:30:56 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\modem.sys.mui [2014-07-10 05:30:56 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\volmgrx.sys.mui [2014-07-10 05:30:52 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\tunnel.sys.mui [2014-07-10 05:30:51 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ntfs.sys.mui [2014-07-10 05:30:51 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\luafv.sys.mui [2014-07-10 05:30:51 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\rdbss.sys.mui [2014-07-10 05:30:51 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ndisuio.sys.mui [2014-07-10 05:30:51 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\partmgr.sys.mui [2014-07-10 05:30:51 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mountmgr.sys.mui [2014-07-10 05:24:58 | 000,000,000 | ---D | C] -- C:\Windows\NAPP_Dism_Log [2014-07-10 01:28:14 | 000,231,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe [2014-07-10 01:23:49 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcore.dll [2014-07-10 01:19:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\herdProtect [2014-07-10 01:19:44 | 000,000,000 | ---D | C] -- C:\Program Files\Reason [2014-07-10 00:46:31 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Mozilla [2014-07-10 00:46:31 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\Mozilla [2014-07-10 00:46:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla [2014-07-10 00:46:00 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2014-07-10 00:45:25 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2014-07-10 00:34:10 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll [2014-07-10 00:34:09 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll [2014-07-10 00:33:50 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll [2014-07-10 00:33:50 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll [2014-07-10 00:33:50 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll [2014-07-10 00:33:33 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll [2014-07-10 00:33:33 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe [2014-07-10 00:29:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Manager [2014-07-10 00:29:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Internet Manager [2014-07-10 00:28:43 | 001,112,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WdfCoInstaller01007.dll [2014-07-10 00:28:43 | 001,112,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\WdfCoInstaller01007.dll [2014-07-10 00:28:42 | 000,316,544 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_wwanecm.sys [2014-07-10 00:28:42 | 000,208,384 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [2014-07-10 00:28:42 | 000,108,032 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_cdcacm.sys [2014-07-10 00:28:42 | 000,070,528 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [2014-07-10 00:28:42 | 000,027,776 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [2014-07-10 00:28:41 | 000,101,248 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [2014-07-10 00:28:41 | 000,077,824 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [2014-07-10 00:28:41 | 000,025,856 | ---- | C] (Huawei Tech. Co., Ltd.) -- C:\Windows\System32\drivers\ewdcsc.sys [2014-07-10 00:28:41 | 000,019,200 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [2014-07-10 00:28:40 | 000,381,952 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbwwan.sys [2014-07-10 00:28:40 | 000,199,168 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbmdm.sys [2014-07-10 00:28:40 | 000,095,232 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [2014-07-10 00:28:40 | 000,011,904 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [2014-07-10 00:25:23 | 000,000,000 | ---D | C] -- C:\Program Files\T-Mobile [2014-07-10 00:24:52 | 000,000,000 | ---D | C] -- C:\ProgramData\DatacardService [2014-07-09 21:01:45 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Adobe [2014-07-09 21:01:45 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\Adobe [2014-07-09 20:59:16 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Roaming\Macromedia [2014-07-09 20:59:01 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\EgisTec IPS [2014-07-09 20:58:29 | 000,000,000 | R--D | C] -- C:\Users\bloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2014-07-09 20:58:29 | 000,000,000 | R--D | C] -- C:\Users\bloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2014-07-09 20:58:28 | 000,000,000 | R--D | C] -- C:\Users\bloe\Searches [2014-07-09 20:58:10 | 000,000,000 | R--D | C] -- C:\Users\bloe\Contacts [2014-07-09 20:56:12 | 000,000,000 | ---D | C] -- C:\Program Files\Accessory Store [2014-07-09 20:55:45 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Ustawienia lokalne [2014-07-09 20:55:45 | 000,000,000 | -HSD | C] -- C:\Users\bloe\AppData\Local\Temporary Internet Files [2014-07-09 20:55:45 | 000,000,000 | -HSD | C] -- C:\Users\bloe\AppData\Local\Historia [2014-07-09 20:55:45 | 000,000,000 | -HSD | C] -- C:\Users\bloe\AppData\Local\Dane aplikacji [2014-07-09 20:55:44 | 000,000,000 | --SD | C] -- C:\Users\bloe\AppData\Roaming\Microsoft [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Videos [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Saved Games [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Pictures [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Music [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Links [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Favorites [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Downloads [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Documents [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\Desktop [2014-07-09 20:55:44 | 000,000,000 | R--D | C] -- C:\Users\bloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Szablony [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\SendTo [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Recent [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\PrintHood [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\NetHood [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Documents\Moje wideo [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Documents\Moje obrazy [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Moje dokumenty [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Documents\Moja muzyka [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Menu Start [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Dane aplikacji [2014-07-09 20:55:44 | 000,000,000 | -HSD | C] -- C:\Users\bloe\Cookies [2014-07-09 20:55:44 | 000,000,000 | -H-D | C] -- C:\Users\bloe\AppData [2014-07-09 20:55:44 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\Temp [2014-07-09 20:55:44 | 000,000,000 | ---D | C] -- C:\Users\bloe\AppData\Local\Microsoft [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\Recovery [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty [2014-07-09 20:55:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji [2014-07-09 20:01:05 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2014-07-09 19:54:38 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics [2014-07-09 19:49:49 | 000,000,000 | ---D | C] -- C:\Program Files\Launch Manager [2014-07-09 19:46:52 | 000,000,000 | ---D | C] -- C:\book [2014-07-09 19:46:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem [2014-07-09 19:46:48 | 000,000,000 | ---D | C] -- C:\ProgramData\EgisTec [2014-07-09 19:43:45 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2014-07-09 19:42:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\Lang [2014-07-09 19:42:56 | 001,006,104 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igxpun.exe [2014-07-09 19:40:12 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2014-07-09 18:28:05 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\mini kopia [2014-07-09 17:45:47 | 000,000,000 | ---D | C] -- C:\Users\bloe\Documents\Zapytajowe odpowiedzi [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-07-22 16:00:09 | 000,000,360 | ---- | M] () -- C:\Windows\tasks\Acer Registration - Reminder Recall task.job [2014-07-22 15:13:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014-07-22 13:13:36 | 000,739,932 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2014-07-22 13:13:36 | 000,653,724 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2014-07-22 13:13:36 | 000,155,474 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2014-07-22 13:13:36 | 000,121,596 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2014-07-22 11:35:41 | 000,079,014 | ---- | M] () -- C:\mo[2].js [2014-07-22 08:44:46 | 000,000,124 | ---- | M] () -- C:\Windows\wininit.ini [2014-07-22 08:31:15 | 000,016,160 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2014-07-22 08:31:15 | 000,016,160 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2014-07-22 08:17:24 | 000,000,823 | ---- | M] () -- C:\Users\Public\Desktop\Webroot SecureAnywhere .lnk [2014-07-22 08:16:42 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2014-07-22 08:16:30 | 795,762,688 | -HS- | M] () -- C:\hiberfil.sys [2014-07-21 22:44:55 | 000,001,069 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014-07-18 12:09:15 | 000,000,929 | ---- | M] () -- C:\Users\Public\Desktop\Audacity.lnk [2014-07-15 17:21:48 | 000,001,137 | ---- | M] () -- C:\Users\Public\Desktop\Find Empty Files And Folder.lnk [2014-07-15 15:22:50 | 010,395,072 | ---- | M] (Webroot Software, Inc.) -- C:\Program Files\Common Files\wruninstall.exe [2014-07-15 15:22:50 | 000,002,114 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install Webroot FF RunOnce.lnk [2014-07-15 15:22:36 | 000,002,114 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install Webroot IE RunOnce.lnk [2014-07-15 15:20:47 | 000,153,256 | ---- | M] (Webroot) -- C:\Windows\System32\WRusr.dll [2014-07-15 15:20:47 | 000,116,736 | ---- | M] (Webroot) -- C:\Windows\System32\drivers\WRkrn.sys [2014-07-13 00:30:41 | 000,001,933 | ---- | M] () -- C:\Users\bloe\Desktop\HaoZip.lnk [2014-07-11 20:44:35 | 000,000,953 | ---- | M] () -- C:\Users\Public\Desktop\Unchecky.lnk [2014-07-10 22:55:27 | 000,267,040 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2014-07-10 16:42:07 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\elshyph.dll [2014-07-10 16:42:06 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jsIntl.dll [2014-07-10 16:42:05 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\html.iec [2014-07-10 16:42:05 | 000,182,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll [2014-07-10 16:42:05 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll [2014-07-10 16:42:05 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe [2014-07-10 16:42:05 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll [2014-07-10 16:42:05 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\JavaScriptCollectionAgent.dll [2014-07-10 16:42:04 | 001,068,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll [2014-07-10 16:42:04 | 000,704,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll [2014-07-10 16:42:04 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat [2014-07-10 16:42:04 | 000,595,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe [2014-07-10 16:42:04 | 000,367,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll [2014-07-10 16:42:04 | 000,240,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll [2014-07-10 16:42:04 | 000,239,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll [2014-07-10 16:42:04 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\url.dll [2014-07-10 16:42:04 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll [2014-07-10 16:42:04 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll [2014-07-10 16:42:04 | 000,016,284 | ---- | M] () -- C:\Windows\System32\ieuinit.inf [2014-07-10 16:42:03 | 001,964,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl [2014-07-10 16:42:02 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll [2014-07-10 16:42:02 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll [2014-07-10 16:42:00 | 002,724,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb [2014-07-10 16:42:00 | 000,526,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll [2014-07-10 16:42:00 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe [2014-07-10 16:42:00 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe [2014-07-10 16:42:00 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe [2014-07-10 16:42:00 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll [2014-07-10 16:41:59 | 004,254,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll [2014-07-10 16:41:59 | 000,592,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jscript9diag.dll [2014-07-10 16:41:59 | 000,442,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll [2014-07-10 16:41:59 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll [2014-07-10 16:41:59 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\IEAdvpack.dll [2014-07-10 16:41:59 | 000,108,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollector.exe [2014-07-10 16:41:59 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll [2014-07-10 16:41:59 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe [2014-07-10 16:41:59 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MshtmlDac.dll [2014-07-10 16:41:59 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieetwproxystub.dll [2014-07-10 16:41:59 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll [2014-07-10 16:41:59 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll [2014-07-10 16:41:59 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll [2014-07-10 16:41:59 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe [2014-07-10 16:41:59 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollectorres.dll [2014-07-10 16:40:29 | 000,619,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\tdh.dll [2014-07-10 16:40:29 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll [2014-07-10 16:39:24 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe [2014-07-10 16:34:53 | 002,284,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msmpeg2vdec.dll [2014-07-10 16:34:53 | 001,158,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll [2014-07-10 16:34:53 | 001,080,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll [2014-07-10 16:34:53 | 000,604,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll [2014-07-10 16:34:53 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll [2014-07-10 16:34:53 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll [2014-07-10 16:34:53 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll [2014-07-10 16:34:53 | 000,220,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll [2014-07-10 16:34:53 | 000,207,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll [2014-07-10 16:34:53 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll [2014-07-10 16:34:53 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll [2014-07-10 16:34:53 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll [2014-07-10 16:34:53 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll [2014-07-10 16:34:53 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll [2014-07-10 16:34:53 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll [2014-07-10 16:34:53 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll [2014-07-10 16:34:53 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll [2014-07-10 16:34:53 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll [2014-07-10 16:34:53 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll [2014-07-10 16:34:53 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll [2014-07-10 14:26:32 | 000,699,056 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe [2014-07-10 14:26:32 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2014-07-10 05:32:35 | 000,337,158 | ---- | M] () -- C:\Windows\System32\perfi015.dat [2014-07-10 05:32:35 | 000,038,710 | ---- | M] () -- C:\Windows\System32\perfd015.dat [2014-07-10 05:32:02 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\usbrpm.sys.mui [2014-07-10 05:31:46 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\fvevol.sys.mui [2014-07-10 05:31:38 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\UMDF\pl-PL\WpdMtpDr.dll.mui [2014-07-10 05:31:36 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\nwifi.sys.mui [2014-07-10 05:31:36 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\qwavedrv.sys.mui [2014-07-10 05:31:23 | 000,033,280 | ---- | M] (Marvell) -- C:\Windows\System32\drivers\pl-PL\yk62x86.sys.mui [2014-07-10 05:31:23 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\volsnap.sys.mui [2014-07-10 05:31:23 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\usbport.sys.mui [2014-07-10 05:31:23 | 000,022,016 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e1y6032.sys.mui [2014-07-10 05:31:23 | 000,022,016 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e1e6032.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\viac7.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\processr.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\intelppm.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\amdppm.sys.mui [2014-07-10 05:31:23 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\amdk8.sys.mui [2014-07-10 05:31:23 | 000,018,944 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\E1G60I32.sys.mui [2014-07-10 05:31:23 | 000,012,800 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\pl-PL\k57nd60x.sys.mui [2014-07-10 05:31:23 | 000,012,800 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\pl-PL\b57nd60x.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\usbhub.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ohci1394.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\1394ohci.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e1q6032.sys.mui [2014-07-10 05:31:23 | 000,011,776 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e1k6032.sys.mui [2014-07-10 05:31:23 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\serial.sys.mui [2014-07-10 05:31:23 | 000,010,752 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\pl-PL\BrSerId.sys.mui [2014-07-10 05:31:23 | 000,010,752 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\pl-PL\BrSerIb.sys.mui [2014-07-10 05:31:23 | 000,010,752 | ---- | M] (Agere Systems) -- C:\Windows\System32\drivers\pl-PL\ltmdmnt.sys.mui [2014-07-10 05:31:23 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\acpi.sys.mui [2014-07-10 05:31:23 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\battc.sys.mui [2014-07-10 05:31:23 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\IPMIDrv.sys.mui [2014-07-10 05:31:23 | 000,005,632 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\pl-PL\bcm4sbxp.sys.mui [2014-07-10 05:31:23 | 000,005,120 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\pl-PL\e100b325.sys.mui [2014-07-10 05:31:23 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\wacompen.sys.mui [2014-07-10 05:31:23 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\tpm.sys.mui [2014-07-10 05:31:23 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\parport.sys.mui [2014-07-10 05:31:23 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ataport.sys.mui [2014-07-10 05:31:23 | 000,003,072 | ---- | M] (VIA Technologies, Inc. ) -- C:\Windows\System32\drivers\pl-PL\getn62.sys.mui [2014-07-10 05:31:23 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\umbus.sys.mui [2014-07-10 05:31:23 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\GAGP30KX.SYS.mui [2014-07-10 05:31:23 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\UAGP35.SYS.mui [2014-07-10 05:31:23 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\parvdm.sys.mui [2014-07-10 05:31:23 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\MTConfig.sys.mui [2014-07-10 05:31:23 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\disk.sys.mui [2014-07-10 05:31:23 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\wd.sys.mui [2014-07-10 05:31:23 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\cdrom.sys.mui [2014-07-10 05:31:23 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\amdide.sys.mui [2014-07-10 05:31:19 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\vhdmp.sys.mui [2014-07-10 05:31:19 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mouhid.sys.mui [2014-07-10 05:31:18 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mpio.sys.mui [2014-07-10 05:31:18 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\i8042prt.sys.mui [2014-07-10 05:31:18 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\pci.sys.mui [2014-07-10 05:31:18 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\bthport.sys.mui [2014-07-10 05:31:18 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\UMDF\pl-PL\WUDFUsbccidDriver.dll.mui [2014-07-10 05:31:18 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\msdsm.sys.mui [2014-07-10 05:31:18 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\sermouse.sys.mui [2014-07-10 05:31:18 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mouclass.sys.mui [2014-07-10 05:31:18 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\kbdclass.sys.mui [2014-07-10 05:31:18 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\bthpan.sys.mui [2014-07-10 05:31:18 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\vdrvroot.sys.mui [2014-07-10 05:31:18 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\pcmcia.sys.mui [2014-07-10 05:31:18 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\isapnp.sys.mui [2014-07-10 05:31:18 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\hdaudbus.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\pl-PL\pscr.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\tsusbflt.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\portcls.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\HdAudio.sys.mui [2014-07-10 05:31:18 | 000,003,584 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\pl-PL\atikmdag.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ULIAGPKX.SYS.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\rndismpx.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\rndismp6.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\NV_AGP.SYS.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mssmbios.sys.mui [2014-07-10 05:31:18 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\hidbth.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\vwifibus.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\VIAAGP.SYS.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\SISAGP.SYS.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\serscan.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\pnpmem.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\kbdhid.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\Dot4usb.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\BTHUSB.SYS.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\AMDAGP.SYS.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\AGP440.sys.mui [2014-07-10 05:31:18 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\pl-PL\BrParwdm.sys.mui [2014-07-10 05:31:18 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\bthenum.sys.mui [2014-07-10 05:31:13 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ndiscap.sys.mui [2014-07-10 05:31:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\scfilter.sys.mui [2014-07-10 05:31:12 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\fltmgr.sys.mui [2014-07-10 05:31:06 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\http.sys.mui [2014-07-10 05:31:06 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ndis.sys.mui [2014-07-10 05:31:05 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\tcpip.sys.mui [2014-07-10 05:31:05 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ws2ifsl.sys.mui [2014-07-10 05:31:01 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\pacer.sys.mui [2014-07-10 05:31:01 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\rdpwd.sys.mui [2014-07-10 05:31:00 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\bfe.dll.mui [2014-07-10 05:30:56 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\afd.sys.mui [2014-07-10 05:30:56 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\modem.sys.mui [2014-07-10 05:30:56 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\volmgrx.sys.mui [2014-07-10 05:30:52 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\tunnel.sys.mui [2014-07-10 05:30:51 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ntfs.sys.mui [2014-07-10 05:30:51 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\luafv.sys.mui [2014-07-10 05:30:51 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\rdbss.sys.mui [2014-07-10 05:30:51 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\ndisuio.sys.mui [2014-07-10 05:30:51 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\partmgr.sys.mui [2014-07-10 05:30:51 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\pl-PL\mountmgr.sys.mui [2014-07-10 05:24:58 | 000,011,453 | ---- | M] () -- C:\Windows\ChangeLang_Done.tag [2014-07-10 01:19:50 | 000,001,230 | ---- | M] () -- C:\Users\Public\Desktop\herdProtect.lnk [2014-07-10 00:29:10 | 000,001,182 | ---- | M] () -- C:\Users\Public\Desktop\Internet Manager.lnk [2014-07-10 00:28:51 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_ew_jubusenum_01007.Wdf [2014-07-10 00:23:51 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2014-07-09 20:55:06 | 000,139,579 | ---- | M] () -- C:\Windows\System32\license.rtf [2014-07-09 19:54:47 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01009.Wdf [2014-07-09 19:49:54 | 000,000,172 | ---- | M] () -- C:\Windows\LMv4.UNI [2014-07-09 19:46:22 | 000,015,042 | ---- | M] () -- C:\Windows\System32\results.xml [2014-06-30 03:40:16 | 000,404,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\aepdu.dll [2014-06-30 03:36:00 | 000,302,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\aeinv.dll [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-07-22 11:35:41 | 000,079,014 | ---- | C] () -- C:\mo[2].js [2014-07-22 08:44:46 | 000,000,124 | ---- | C] () -- C:\Windows\wininit.ini [2014-07-18 12:09:15 | 000,000,941 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk [2014-07-18 12:09:15 | 000,000,929 | ---- | C] () -- C:\Users\Public\Desktop\Audacity.lnk [2014-07-15 17:21:48 | 000,001,137 | ---- | C] () -- C:\Users\Public\Desktop\Find Empty Files And Folder.lnk [2014-07-15 15:22:50 | 000,002,114 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install Webroot FF RunOnce.lnk [2014-07-15 15:22:36 | 000,002,114 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install Webroot IE RunOnce.lnk [2014-07-15 15:20:49 | 000,000,823 | ---- | C] () -- C:\Users\Public\Desktop\Webroot SecureAnywhere .lnk [2014-07-11 20:44:33 | 000,000,953 | ---- | C] () -- C:\Users\Public\Desktop\Unchecky.lnk [2014-07-10 21:46:47 | 000,001,933 | ---- | C] () -- C:\Users\bloe\Desktop\HaoZip.lnk [2014-07-10 18:01:38 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf [2014-07-10 16:42:04 | 000,016,284 | ---- | C] () -- C:\Windows\System32\ieuinit.inf [2014-07-10 16:15:32 | 000,000,360 | ---- | C] () -- C:\Windows\tasks\Acer Registration - Reminder Recall task.job [2014-07-10 14:25:19 | 000,000,930 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014-07-10 09:52:15 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf [2014-07-10 05:37:45 | 000,011,453 | ---- | C] () -- C:\Windows\ChangeLang_Done.tag [2014-07-10 05:33:33 | 000,739,932 | ---- | C] () -- C:\Windows\System32\perfh015.dat [2014-07-10 05:33:33 | 000,337,158 | ---- | C] () -- C:\Windows\System32\perfi015.dat [2014-07-10 05:33:33 | 000,155,474 | ---- | C] () -- C:\Windows\System32\perfc015.dat [2014-07-10 05:33:33 | 000,038,710 | ---- | C] () -- C:\Windows\System32\perfd015.dat [2014-07-10 01:19:50 | 000,001,230 | ---- | C] () -- C:\Users\Public\Desktop\herdProtect.lnk [2014-07-10 00:46:06 | 000,001,069 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014-07-10 00:46:05 | 000,001,081 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2014-07-10 00:29:10 | 000,001,182 | ---- | C] () -- C:\Users\Public\Desktop\Internet Manager.lnk [2014-07-10 00:28:51 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_ew_jubusenum_01007.Wdf [2014-07-10 00:23:51 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2014-07-09 20:58:34 | 000,001,425 | ---- | C] () -- C:\Users\bloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2014-07-09 20:56:39 | 000,001,955 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fooz Kids.lnk [2014-07-09 20:01:07 | 000,002,435 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk [2014-07-09 19:54:47 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01009.Wdf [2014-07-09 19:49:54 | 000,000,172 | ---- | C] () -- C:\Windows\LMv4.UNI [2014-07-09 19:46:22 | 000,015,042 | ---- | C] () -- C:\Windows\System32\results.xml [2014-07-09 19:40:12 | 795,762,688 | -HS- | C] () -- C:\hiberfil.sys [2011-05-10 10:51:59 | 000,131,984 | ---- | C] () -- C:\ProgramData\FullRemove.exe [color=#E56717]========== ZeroAccess Check ==========[/color] [2009-07-14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2014-03-25 04:09:54 | 012,874,240 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-20 23:29:20 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2009-07-14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2014-07-19 00:59:11 | 000,000,000 | ---D | M] -- C:\Users\bloe\AppData\Roaming\Audacity [2014-07-22 16:15:53 | 000,000,000 | ---D | M] -- C:\Users\bloe\AppData\Roaming\HaoZip [2014-07-21 18:01:49 | 000,000,000 | ---D | M] -- C:\Users\bloe\AppData\Roaming\Kingsoft [2014-07-19 22:20:56 | 000,000,000 | ---D | M] -- C:\Users\bloe\AppData\Roaming\Software Informer [color=#E56717]========== Purity Check ==========[/color] < End of report >