Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:25-07-2015 Ran by Donek (administrator) on DONEK-KOMPUTER (26-07-2015 17:44:23) Running from C:\Users\Donek\Desktop Loaded Profiles: Donek (Available Profiles: Donek) Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Polski (Polska) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Easy Settings\CmdServer\EasyLauncher.exe () C:\Program Files (x86)\Samsung\Easy Settings\CmdServer\EasySettingsCmdServer.exe (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (BitTorrent Inc.) C:\Users\Donek\AppData\Roaming\uTorrent\uTorrent.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Kadu Team) C:\Program Files (x86)\Kadu\kadu.exe () C:\Program Files (x86)\screenSHU\screenSHU.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Samsung Electronics CO., LTD.) C:\ProgramData\SAMSUNG\SW Update Service\SWMAgent.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Easy Settings\sSettings.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5618456 2013-09-12] (ESET) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2817872 2012-04-24] (ELAN Microelectronics Corp.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11613288 2014-08-03] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-06-17] (NVIDIA Corporation) HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdcBase.exe [660360 2007-05-31] (Microsoft Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170280 2015-07-11] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104 2015-07-07] (Adobe Systems Incorporated) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2267527380-3529112817-3422914625-1000\...\Run: [uTorrent] => C:\Users\Donek\AppData\Roaming\uTorrent\uTorrent.exe [1690192 2015-06-28] (BitTorrent Inc.) HKU\S-1-5-21-2267527380-3529112817-3422914625-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-2267527380-3529112817-3422914625-1000\...\Run: [Kadu] => C:\Program Files (x86)\Kadu\kadu.exe [572574 2015-01-17] (Kadu Team) HKU\S-1-5-21-2267527380-3529112817-3422914625-1000\...\Run: [screenSHU] => C:\Program Files (x86)\screenSHU\screenSHU.exe [2112000 2013-09-04] () HKU\S-1-5-21-2267527380-3529112817-3422914625-1000\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-2267527380-3529112817-3422914625-1000\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [43816 2015-04-26] (Apple Inc.) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [176904 2015-06-17] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [155280 2015-06-17] (NVIDIA Corporation) ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2014-02-07] (Autodesk, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2267527380-3529112817-3422914625-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-19] (Oracle Corporation) BHO-x32: Pomocnik logowania za pomocą konta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-19] (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{CECA4E47-C389-4C8E-90EB-809B9045EA69}: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-01-06] () FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-02-13] (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-19] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-19] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2015-02-11] Chrome: ======= CHR Profile: C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-10] CHR Extension: (Google Docs) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-10] CHR Extension: (Google Drive) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-10] CHR Extension: (YouTube) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-10] CHR Extension: (Google Search) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-10] CHR Extension: (Full Page Screen Capture) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2015-04-28] CHR Extension: (Google Sheets) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-10] CHR Extension: (AdBlock) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-10] CHR Extension: (crxMouse Chrome Gestures) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlgkpaicikihijadgifklkbpdajbkhjo [2015-02-10] CHR Extension: (Auto HD For YouTube™) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\koiaokdomkpjdgniimnkhgbilbjgpeak [2015-02-10] CHR Extension: (Chrome Web Store Payments) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-10] CHR Extension: (Gmail) - C:\Users\Donek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-10] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944 2014-12-05] (Autodesk Inc.) S3 Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDevice.exe [55336 2015-06-28] () R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.) S2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [31192 2014-02-07] (Autodesk, Inc.) R2 Easy Launcher; C:\Program Files (x86)\Samsung\Easy Settings\CmdServer\EasyLauncher.exe [1593976 2012-10-19] (Samsung Electronics CO., LTD.) R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1337752 2013-09-12] (ESET) S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2015-02-12] () [File not signed] S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3025248 2015-07-07] (Samsung Electronics CO., LTD.) S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-16] (ESET) U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [239296 2013-09-16] (ESET) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [168256 2013-09-16] (ESET) R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [157432 2013-09-16] (ESET) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] () S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14944 2014-11-18] () S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] () S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] () R1 jakndis; C:\Windows\System32\DRIVERS\jakndis.sys [32064 2013-02-06] (Jaksta Technologies Pty Ltd) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-26 16:25 - 2015-07-26 16:25 - 00156829 _____ C:\Users\Donek\Desktop\Shortcut.txt 2015-07-26 16:24 - 2015-07-26 17:44 - 00015374 _____ C:\Users\Donek\Desktop\FRST.txt 2015-07-26 16:24 - 2015-07-26 16:25 - 00038628 _____ C:\Users\Donek\Desktop\Addition.txt 2015-07-26 16:17 - 2015-07-26 16:17 - 00261628 _____ C:\Users\Donek\Desktop\Desktop.rar 2015-07-26 16:17 - 2015-07-26 16:17 - 00088056 _____ C:\Users\Donek\Desktop\gmer.txt 2015-07-26 02:05 - 2015-07-26 11:28 - 00000288 _____ C:\HELP_DECRYPT.URL 2015-07-26 01:31 - 2015-07-26 01:32 - 00000816 _____ C:\Users\Donek\Desktop\Nowy dokument tekstowy.txt 2015-07-26 01:06 - 2015-07-26 17:44 - 00000000 ____D C:\FRST 2015-07-26 00:51 - 2015-07-26 00:51 - 02146816 _____ (Farbar) C:\Users\Donek\Desktop\FRST64.exe 2015-07-26 00:51 - 2015-07-26 00:51 - 00380416 _____ C:\Users\Donek\Desktop\4ncptqkh.exe 2015-07-24 21:32 - 2015-07-24 21:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game of Thrones Episode 5 2015-07-21 12:28 - 2015-07-15 05:19 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-07-21 12:28 - 2015-07-15 05:19 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-07-21 12:28 - 2015-07-15 05:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-07-21 12:28 - 2015-07-15 05:19 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-07-21 12:28 - 2015-07-15 04:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-07-21 12:28 - 2015-07-15 04:55 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-07-21 12:28 - 2015-07-15 04:55 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-07-21 12:28 - 2015-07-15 04:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-07-21 12:28 - 2015-07-15 03:59 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-07-21 12:28 - 2015-07-15 03:52 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-07-20 18:05 - 2015-07-20 18:05 - 00262144 _____ C:\Windows\Minidump\072015-13993-01.dmp 2015-07-20 18:03 - 2015-07-20 18:03 - 00262144 _____ C:\Windows\Minidump\072015-28111-01.dmp 2015-07-20 18:01 - 2015-07-20 18:01 - 00262144 _____ C:\Windows\Minidump\072015-28969-01.dmp 2015-07-20 17:59 - 2015-07-20 17:59 - 00262144 _____ C:\Windows\Minidump\072015-30264-01.dmp 2015-07-20 17:56 - 2015-07-20 17:56 - 00262144 _____ C:\Windows\Minidump\072015-27596-01.dmp 2015-07-20 17:54 - 2015-07-20 17:54 - 00262144 _____ C:\Windows\Minidump\072015-26800-01.dmp 2015-07-20 17:51 - 2015-07-20 17:51 - 00262144 _____ C:\Windows\Minidump\072015-28407-01.dmp 2015-07-20 17:49 - 2015-07-20 17:49 - 00262144 _____ C:\Windows\Minidump\072015-30014-01.dmp 2015-07-20 17:47 - 2015-07-20 17:47 - 00262144 _____ C:\Windows\Minidump\072015-23665-02.dmp 2015-07-20 17:45 - 2015-07-20 17:45 - 00262144 _____ C:\Windows\Minidump\072015-23836-01.dmp 2015-07-20 17:44 - 2015-07-20 17:44 - 00262144 _____ C:\Windows\Minidump\072015-24039-01.dmp 2015-07-20 17:42 - 2015-07-20 17:42 - 00262144 _____ C:\Windows\Minidump\072015-23649-01.dmp 2015-07-20 09:19 - 2015-07-20 09:19 - 00852504 _____ C:\Windows\Minidump\072015-18205-01.dmp 2015-07-19 11:13 - 2015-07-19 11:13 - 00000000 ____D C:\Windows\SysWOW64\NV 2015-07-19 11:13 - 2015-07-19 11:13 - 00000000 ____D C:\Windows\system32\NV 2015-07-19 11:10 - 2015-06-17 11:10 - 42729104 _____ C:\Windows\system32\nvcompiler.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 37748880 _____ C:\Windows\SysWOW64\nvcompiler.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 30481552 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 22947144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 17724600 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 16145200 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 15866992 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 15224784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 14497520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 13263056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 12855416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 11831856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 11011216 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2015-07-19 11:10 - 2015-06-17 11:10 - 03395648 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 02997544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 02599752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435330.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 01557832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435330.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 01099992 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 01060168 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 01050768 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 00975176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 00938752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2015-07-19 11:10 - 2015-06-17 11:10 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2015-07-19 11:07 - 2015-07-19 11:11 - 00000000 ____D C:\ProgramData\boost_interprocess 2015-07-19 11:05 - 2015-07-19 11:05 - 00000000 ____D C:\NVIDIA 2015-07-19 10:34 - 2015-07-19 10:34 - 00861400 _____ C:\Windows\Minidump\071915-21216-01.dmp 2015-07-18 23:07 - 2015-07-26 17:40 - 00000000 ____D C:\Users\Donek\AppData\Local\screenSHU 2015-07-18 22:42 - 2015-07-18 22:42 - 00266320 _____ C:\Windows\Minidump\071815-19952-01.dmp 2015-07-17 12:16 - 2011-07-05 13:55 - 04745280 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL664.SYS 2015-07-17 12:16 - 2011-07-05 13:55 - 03952128 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll 2015-07-17 12:16 - 2011-07-05 13:55 - 03617280 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll 2015-07-17 12:16 - 2010-07-07 03:43 - 00006656 _____ C:\Windows\system32\bcmwlrc.dll 2015-07-17 12:08 - 2015-07-17 12:16 - 00000000 ____D C:\Program Files\Broadcom 2015-07-17 11:23 - 2015-07-17 11:23 - 00861256 _____ C:\Windows\Minidump\071715-21028-01.dmp 2015-07-17 11:22 - 2015-07-20 18:05 - 779514236 _____ C:\Windows\MEMORY.DMP 2015-07-16 21:26 - 2015-07-26 11:18 - 00006226 _____ C:\Windows\PFRO.log 2015-07-16 21:02 - 2015-07-26 17:40 - 00003080 _____ C:\Windows\setupact.log 2015-07-16 21:02 - 2015-07-16 21:02 - 00000000 _____ C:\Windows\setuperr.log 2015-07-16 20:59 - 2015-07-16 20:59 - 00000000 ____D C:\Users\Donek\AppData\Local\Samsung 2015-07-16 20:57 - 2015-07-16 20:57 - 00003456 _____ C:\Windows\System32\Tasks\EasySettings 2015-07-16 20:57 - 2015-07-16 20:57 - 00003442 _____ C:\Windows\System32\Tasks\WLANStartup 2015-07-16 20:49 - 2015-07-16 20:49 - 00003042 _____ C:\Windows\System32\Tasks\SAgent 2015-07-16 20:49 - 2015-07-16 20:49 - 00000000 ____D C:\Program Files\Samsung 2015-07-15 23:14 - 2015-07-09 19:58 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-07-15 23:14 - 2015-07-09 19:58 - 02603008 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-07-15 23:14 - 2015-07-09 19:58 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-07-15 23:14 - 2015-07-09 19:58 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-07-15 23:14 - 2015-07-09 19:58 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-07-15 23:14 - 2015-07-09 19:58 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-07-15 23:14 - 2015-07-09 19:58 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-07-15 23:14 - 2015-07-09 19:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-07-15 23:14 - 2015-07-09 19:58 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-07-15 23:14 - 2015-07-09 19:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-07-15 23:14 - 2015-07-09 19:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-07-15 23:14 - 2015-07-09 19:43 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-07-15 23:14 - 2015-07-09 19:43 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-07-15 23:14 - 2015-07-09 19:43 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-07-15 23:14 - 2015-07-09 19:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-07-15 23:14 - 2015-07-09 19:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-07-15 23:09 - 2015-07-09 19:59 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-07-15 23:09 - 2015-07-09 19:58 - 01085440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-07-15 23:09 - 2015-07-09 19:58 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-07-15 23:09 - 2015-07-09 19:58 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-07-15 23:09 - 2015-07-09 19:58 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-07-15 23:09 - 2015-07-09 19:58 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-07-15 23:09 - 2015-07-09 19:58 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-07-15 23:09 - 2015-07-09 19:50 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-07-15 23:09 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-07-15 23:09 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-07-15 23:09 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-07-15 23:09 - 2015-07-02 23:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-07-15 23:09 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-07-15 23:09 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-07-15 23:09 - 2015-07-02 22:46 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-07-15 23:09 - 2015-07-02 22:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-07-15 23:09 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-07-15 23:09 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-07-15 23:09 - 2015-07-02 22:12 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-07-15 23:09 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-07-15 23:09 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-07-15 23:09 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-07-15 23:09 - 2015-07-01 22:56 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-07-15 23:09 - 2015-07-01 22:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-07-15 23:09 - 2015-07-01 22:49 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-07-15 23:09 - 2015-07-01 22:49 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-07-15 23:09 - 2015-07-01 22:48 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-07-15 23:09 - 2015-07-01 22:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-07-15 23:09 - 2015-07-01 22:47 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-07-15 23:09 - 2015-07-01 22:47 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-07-15 23:09 - 2015-07-01 22:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-07-15 23:09 - 2015-07-01 22:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-07-15 23:09 - 2015-07-01 22:39 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-07-15 23:09 - 2015-07-01 22:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-07-15 23:09 - 2015-07-01 22:29 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-07-15 23:09 - 2015-07-01 22:29 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-07-15 23:09 - 2015-07-01 22:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-07-15 23:09 - 2015-07-01 22:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-07-15 23:09 - 2015-07-01 22:26 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-07-15 23:09 - 2015-07-01 22:24 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-07-15 23:09 - 2015-07-01 21:27 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-07-15 23:09 - 2015-07-01 21:26 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-07-15 23:09 - 2015-07-01 21:26 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-07-15 23:09 - 2015-06-25 20:09 - 00389832 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-07-15 23:09 - 2015-06-25 19:43 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-07-15 23:09 - 2015-06-25 10:57 - 03207168 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-07-15 23:09 - 2015-06-20 22:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-07-15 23:09 - 2015-06-20 21:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-07-15 23:09 - 2015-06-20 21:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-07-15 23:09 - 2015-06-20 21:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-07-15 23:09 - 2015-06-20 21:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-07-15 23:09 - 2015-06-20 21:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-07-15 23:09 - 2015-06-20 21:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-07-15 23:09 - 2015-06-20 21:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-07-15 23:09 - 2015-06-20 20:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-07-15 23:09 - 2015-06-20 20:48 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-07-15 23:09 - 2015-06-20 20:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-07-15 23:09 - 2015-06-19 20:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-07-15 23:09 - 2015-06-19 20:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-07-15 23:09 - 2015-06-19 20:24 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-07-15 23:09 - 2015-06-19 20:23 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-07-15 23:09 - 2015-06-19 20:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-07-15 23:09 - 2015-06-19 20:16 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-07-15 23:09 - 2015-06-19 20:13 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-07-15 23:09 - 2015-06-19 20:13 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-07-15 23:09 - 2015-06-19 20:03 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-07-15 23:09 - 2015-06-19 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-07-15 23:09 - 2015-06-19 19:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-07-15 23:09 - 2015-06-19 19:51 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-07-15 23:09 - 2015-06-19 19:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-07-15 23:09 - 2015-06-19 19:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-07-15 23:09 - 2015-06-19 19:11 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-07-15 23:09 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-07-15 23:09 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-07-15 23:09 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-07-15 23:09 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-07-15 23:09 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-07-15 23:09 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-07-15 23:09 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-07-15 23:09 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-07-15 23:09 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-07-15 23:09 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-07-15 23:09 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2015-07-15 23:09 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll 2015-07-15 23:09 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-07-15 23:09 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-07-15 23:09 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-07-15 23:09 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-07-15 23:09 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-07-15 23:09 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-07-15 23:09 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-07-15 23:09 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2015-07-15 23:08 - 2015-06-27 04:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-07-15 23:08 - 2015-06-27 04:43 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-07-15 23:08 - 2015-06-27 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-07-15 23:08 - 2015-06-27 03:39 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-07-15 23:08 - 2015-06-20 21:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-07-15 23:08 - 2015-06-20 21:49 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-07-15 23:08 - 2015-06-20 21:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-07-15 23:08 - 2015-06-20 21:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-07-15 23:08 - 2015-06-20 21:34 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-07-15 23:08 - 2015-06-20 21:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-07-15 23:08 - 2015-06-20 21:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-07-15 23:08 - 2015-06-20 21:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-07-15 23:08 - 2015-06-20 21:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-07-15 23:08 - 2015-06-20 20:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-07-15 23:08 - 2015-06-20 20:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-07-15 23:08 - 2015-06-20 20:26 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-07-15 23:08 - 2015-06-19 20:24 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-07-15 23:08 - 2015-06-19 19:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-07-15 23:08 - 2015-06-19 19:39 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-07-15 23:08 - 2015-06-19 19:15 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-07-15 23:08 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-07-15 23:08 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-07-15 23:08 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2015-07-15 23:08 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll 2015-07-14 19:34 - 2015-07-14 19:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace 2015-07-14 19:34 - 2015-07-14 19:34 - 00000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2015-07-14 19:33 - 2015-07-14 19:33 - 73850656 _____ (Microsoft® Corporation) C:\Users\Donek\Downloads\Microsoft Games for Windows - LIVE 3.5.0056.0.exe 2015-07-14 19:27 - 2015-07-14 19:27 - 00000000 ____D C:\Windows\SysWOW64\xlive 2015-07-14 19:26 - 2015-07-26 11:20 - 00000000 ____D C:\Users\Donek\AppData\Local\Fallout3 2015-07-13 23:29 - 2015-07-13 23:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-07-13 23:28 - 2015-07-13 23:29 - 00000000 ____D C:\Program Files\iTunes 2015-07-13 23:28 - 2015-07-13 23:28 - 00000000 ____D C:\Program Files\iPod 2015-07-13 23:28 - 2015-07-13 23:28 - 00000000 ____D C:\Program Files (x86)\iTunes 2015-07-12 18:06 - 2015-07-26 17:41 - 00000000 ____D C:\Users\Donek\Desktop\gopro 2015-07-10 19:22 - 2015-07-10 19:22 - 00000000 ____D C:\Users\Donek\AppData\Roaming\YCanPDF 2015-07-06 19:14 - 2015-07-06 19:14 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf 2015-07-06 18:34 - 2015-07-06 18:58 - 00000000 ____D C:\Users\Donek\AppData\Roaming\iFunbox_UserCache 2015-07-06 18:34 - 2015-07-06 18:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\i-Funbox DevTeam 2015-07-06 18:34 - 2015-07-06 18:34 - 00000000 ____D C:\Program Files (x86)\i-Funbox DevTeam 2015-07-01 22:45 - 2015-07-01 22:45 - 00214132 ____H C:\Windows\system32\mlfcache.dat 2015-07-01 18:31 - 2015-07-01 18:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2015-07-01 18:31 - 2015-07-01 18:31 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2015-07-01 18:31 - 2015-06-22 15:25 - 00254976 _____ C:\Windows\system32\xvidvfw.dll 2015-07-01 18:31 - 2015-06-22 15:25 - 00240128 _____ C:\Windows\SysWOW64\xvidvfw.dll 2015-07-01 18:31 - 2015-06-22 15:24 - 00729088 _____ C:\Windows\system32\xvidcore.dll 2015-07-01 18:31 - 2015-06-22 15:24 - 00655872 _____ C:\Windows\SysWOW64\xvidcore.dll 2015-07-01 18:31 - 2015-05-31 20:00 - 00126976 _____ C:\Windows\system32\ff_vfw.dll 2015-07-01 18:31 - 2015-05-31 20:00 - 00112128 _____ C:\Windows\SysWOW64\ff_vfw.dll 2015-07-01 18:31 - 2015-02-28 17:22 - 03571200 _____ (x264vfw project) C:\Windows\system32\x264vfw64.dll 2015-07-01 18:31 - 2015-02-28 17:21 - 03591680 _____ (x264vfw project) C:\Windows\SysWOW64\x264vfw.dll 2015-07-01 18:31 - 2012-07-21 12:55 - 00180736 _____ (fccHandler) C:\Windows\system32\ac3acm.acm 2015-07-01 18:31 - 2012-07-21 12:54 - 00122880 _____ (fccHandler) C:\Windows\SysWOW64\ac3acm.acm 2015-07-01 18:31 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\Windows\system32\lagarith.dll 2015-07-01 18:31 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\Windows\SysWOW64\lagarith.dll 2015-07-01 18:08 - 2015-07-01 18:08 - 00000000 ____D C:\Users\Donek\AppData\Local\Xenocode 2015-06-30 19:20 - 2015-07-26 01:55 - 00000000 ____D C:\Users\Donek\Desktop\Wiadrosklad - Nie do OPOwiedzenia - 2015 2015-06-28 20:28 - 2015-06-28 20:28 - 00000000 ____D C:\Users\Donek\AppData\Roaming\TaiG 2015-06-28 12:53 - 2015-07-26 17:40 - 00000000 ___RD C:\Users\Donek\iCloudDrive 2015-06-28 12:53 - 2015-07-26 00:15 - 00000000 ____D C:\Users\Donek\AppData\Local\Apple Inc 2015-06-26 15:52 - 2015-07-18 22:57 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-26 17:42 - 2015-02-12 22:13 - 00000000 ____D C:\Users\Donek\AppData\Roaming\uTorrent 2015-07-26 17:41 - 2015-02-17 13:19 - 00000000 ____D C:\Users\Donek\AppData\Roaming\Kadu 2015-07-26 17:41 - 2015-02-14 17:08 - 00000266 __RSH C:\ProgramData\ntuser.pol 2015-07-26 17:40 - 2015-05-18 23:19 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d091b059866df0.job 2015-07-26 17:40 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-07-26 17:39 - 2015-02-10 00:15 - 00000000 ____D C:\Users\Donek 2015-07-26 17:39 - 2015-02-10 00:09 - 01391002 _____ C:\Windows\WindowsUpdate.log 2015-07-26 17:37 - 2015-02-10 20:12 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-07-26 16:46 - 2009-07-14 06:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-07-26 16:46 - 2009-07-14 06:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-07-26 16:43 - 2011-03-21 21:49 - 00740348 _____ C:\Windows\system32\perfh015.dat 2015-07-26 16:43 - 2011-03-21 21:49 - 00155890 _____ C:\Windows\system32\perfc015.dat 2015-07-26 16:43 - 2009-07-14 07:13 - 01669190 _____ C:\Windows\system32\PerfStringBackup.INI 2015-07-26 11:21 - 2015-02-10 20:12 - 00000000 ____D C:\Users\Donek\AppData\Local\Google 2015-07-26 02:04 - 2015-06-02 18:52 - 00000000 ____D C:\Users\Public\Documents\Baidu 2015-07-26 01:56 - 2015-05-19 17:28 - 00000000 ____D C:\Users\Donek\Documents\The Witcher 3 2015-07-26 01:56 - 2015-02-21 22:00 - 00000000 ____D C:\Users\Donek\Documents\Rockstar Games 2015-07-26 01:55 - 2015-05-18 19:30 - 00000000 ____D C:\Users\Donek\Desktop\Ortega_Cartel-Lavorama-(SPCD-509)-CD-PL-2009-211 2015-07-26 01:55 - 2015-02-18 21:02 - 00000000 ____D C:\Users\Donek\Documents\My Games 2015-07-26 01:53 - 2015-02-12 22:02 - 00000000 ____D C:\Users\Donek\Desktop\Gry 2015-07-26 01:42 - 2015-02-11 22:19 - 00000000 ____D C:\Users\Donek\AppData\Roaming\Autodesk 2015-07-26 01:42 - 2015-02-10 21:43 - 00000000 ____D C:\Users\Donek\AppData\Roaming\DAEMON Tools Lite 2015-07-26 01:41 - 2015-02-12 22:45 - 00000000 ____D C:\Users\Donek\AppData\Roaming\Apple Computer 2015-07-26 01:34 - 2015-06-08 18:06 - 00000000 ____D C:\Users\Donek\AppData\Local\Popcorn-Time 2015-07-26 01:33 - 2015-06-08 18:05 - 00000000 ____D C:\Users\Donek\AppData\Local\Popcorn Time 2015-07-26 01:27 - 2015-02-17 17:07 - 00000000 ____D C:\Users\Donek\AppData\Local\JDownloader v2.0 2015-07-26 00:19 - 2015-02-17 13:13 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-07-26 00:19 - 2015-02-11 23:13 - 00000000 ____D C:\Users\Donek\AppData\Local\Autodesk 2015-07-26 00:18 - 2015-02-17 13:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-07-26 00:18 - 2015-02-17 13:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-07-26 00:17 - 2015-03-08 23:54 - 00000000 ____D C:\AdwCleaner 2015-07-26 00:15 - 2015-02-12 22:45 - 00000000 ____D C:\Users\Donek\AppData\Local\Apple Computer 2015-07-26 00:14 - 2015-02-17 16:03 - 00000000 ____D C:\ProgramData\Steam 2015-07-26 00:14 - 2015-02-14 23:27 - 00000000 ____D C:\totalcmd 2015-07-26 00:13 - 2015-04-03 21:43 - 00000000 ____D C:\ProgramData\Freemake 2015-07-26 00:13 - 2015-03-01 20:25 - 00000000 ____D C:\ProgramData\Rockstar Games 2015-07-26 00:13 - 2015-02-11 20:54 - 00000000 ____D C:\ProgramData\ESET 2015-07-26 00:13 - 2015-02-10 20:23 - 00000000 ____D C:\ProgramData\SAMSUNG 2015-07-26 00:11 - 2015-04-13 19:55 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2015-07-26 00:11 - 2015-02-11 22:19 - 00000000 ____D C:\ProgramData\Autodesk 2015-07-26 00:10 - 2015-02-12 22:43 - 00000000 ____D C:\ProgramData\Apple Computer 2015-07-26 00:10 - 2015-02-12 21:42 - 00000000 ____D C:\Autodesk 2015-07-24 23:04 - 2015-03-31 17:14 - 00000000 ____D C:\Users\Donek\AppData\Roaming\vlc 2015-07-24 15:07 - 2015-02-15 21:09 - 00000000 ____D C:\Users\Donek\Documents\Youcam 2015-07-24 14:30 - 2015-02-12 21:40 - 00000000 ____D C:\Users\Donek\AppData\Local\Mirillis 2015-07-21 12:38 - 2015-03-22 16:28 - 00007648 _____ C:\Users\Donek\AppData\Local\Resmon.ResmonCfg 2015-07-21 12:32 - 2009-07-14 06:45 - 00490488 _____ C:\Windows\system32\FNTCACHE.DAT 2015-07-20 18:05 - 2015-03-22 21:27 - 00000000 ____D C:\Windows\Minidump 2015-07-19 11:13 - 2015-05-19 16:28 - 00000000 ____D C:\ProgramData\NVIDIA 2015-07-19 11:12 - 2015-02-10 21:09 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-07-19 11:11 - 2015-04-18 18:47 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-07-19 11:04 - 2015-02-10 20:22 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-07-19 11:04 - 2015-02-10 20:22 - 00000000 ____D C:\Program Files (x86)\Samsung 2015-07-19 10:48 - 2015-04-18 18:54 - 00000000 ____D C:\Users\Donek\AppData\Local\NVIDIA Corporation 2015-07-19 10:48 - 2015-04-18 18:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-07-19 10:48 - 2015-02-17 13:37 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-07-19 08:41 - 2015-02-14 23:05 - 00000000 ____D C:\Program Files (x86)\screenSHU 2015-07-19 08:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2015-07-19 01:12 - 2015-02-10 20:24 - 00000000 ____D C:\ProgramData\Oracle 2015-07-19 01:11 - 2015-02-10 20:24 - 00000000 ____D C:\Program Files (x86)\Java 2015-07-19 01:10 - 2015-02-10 20:24 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-07-17 13:42 - 2015-02-10 20:01 - 00000086 _____ C:\setup.log 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\zh-HK 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\th-TH 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sl-SI 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sk-SK 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\ro-RO 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\lv-LV 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\lt-LT 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\hr-HR 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\he-IL 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\et-EE 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\bg-BG 2015-07-17 12:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\ar-SA 2015-07-17 12:04 - 2015-05-18 23:19 - 00003802 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore1d091b059866df0 2015-07-16 22:06 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-07-16 21:23 - 2015-02-10 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2015-07-16 21:14 - 2015-02-10 20:12 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-07-16 21:13 - 2015-02-10 20:12 - 00003804 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-07-16 20:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-07-16 18:21 - 2015-02-10 23:37 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-07-16 18:21 - 2015-02-10 23:37 - 00000000 ____D C:\Windows\system32\appraiser 2015-07-16 18:20 - 2015-02-12 21:44 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-07-15 23:15 - 2015-02-10 21:54 - 00000000 ____D C:\Windows\system32\MRT 2015-07-15 23:07 - 2015-02-10 20:25 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-07-15 23:05 - 2015-02-10 20:12 - 00004044 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-07-14 19:34 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-07-14 00:02 - 2015-02-17 14:07 - 00000099 _____ C:\Users\Donek\Documents\Powers.log 2015-07-13 23:28 - 2015-02-12 22:42 - 00000000 ____D C:\Program Files\Common Files\Apple 2015-07-03 08:43 - 2015-02-10 21:54 - 130333168 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-07-01 16:46 - 2015-03-16 23:01 - 00000000 ____D C:\Windows\pl 2015-06-28 18:06 - 2015-02-17 13:16 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2015-06-28 18:06 - 2015-02-17 13:16 - 00000000 ____D C:\Program Files\CCleaner 2015-06-28 18:03 - 2015-02-12 22:13 - 00000793 _____ C:\Users\Donek\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2015-06-28 15:16 - 2015-05-09 19:35 - 00000000 ____D C:\ProgramData\PMS ==================== Files in the root of some directories ======= 2015-07-26 01:43 - 2015-07-26 11:26 - 0045569 _____ () C:\Users\Donek\AppData\Roaming\HELP_DECRYPT.PNG 2015-07-26 01:34 - 2015-07-26 11:23 - 0045569 _____ () C:\Users\Donek\AppData\Local\HELP_DECRYPT.PNG 2015-05-26 20:56 - 2015-05-26 20:56 - 0002348 _____ () C:\Users\Donek\AppData\Local\recently-used.xbel 2015-03-22 16:28 - 2015-07-21 12:38 - 0007648 _____ () C:\Users\Donek\AppData\Local\Resmon.ResmonCfg 2015-07-26 00:14 - 2015-07-26 00:14 - 0045744 _____ () C:\ProgramData\HELP_DECRYPT.PNG 2015-02-11 23:12 - 2015-02-11 23:12 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-07-24 14:16 ==================== End of log ============================