Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL logfile created on: 2015-05-04 07:38:13 - Run 1
- OTL by OldTimer - Version 3.2.69.0 Folder = F:\Pobrane
- 64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation
- Internet Explorer (Version = 9.11.9600.17728)
- Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
- 7,90 Gb Total Physical Memory | 5,48 Gb Available Physical Memory | 69,33% Memory free
- 9,15 Gb Paging File | 5,78 Gb Available in Paging File | 63,17% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
- Drive C: | 80,00 Gb Total Space | 29,56 Gb Free Space | 36,95% Space Free | Partition Type: NTFS
- Drive D: | 158,47 Gb Total Space | 44,92 Gb Free Space | 28,35% Space Free | Partition Type: NTFS
- Drive E: | 450,00 Gb Total Space | 218,00 Gb Free Space | 48,44% Space Free | Partition Type: NTFS
- Drive F: | 481,51 Gb Total Space | 140,51 Gb Free Space | 29,18% Space Free | Partition Type: NTFS
- Drive G: | 7,19 Gb Total Space | 0,06 Gb Free Space | 0,90% Space Free | Partition Type: FAT32
- Computer Name: PIECHO_LENOVO | User Name: Piechoo | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
- Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Processes (SafeList) ==========[/color]
- PRC - [2015-05-04 07:37:09 | 000,602,112 | ---- | M] (OldTimer Tools) -- F:\Pobrane\OTL.exe
- PRC - [2015-04-21 16:32:02 | 000,376,944 | ---- | M] (Mozilla Corporation) -- D:\Mozilla Firefox\firefox.exe
- PRC - [2015-04-14 18:36:27 | 001,892,528 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
- PRC - [2015-04-14 01:44:34 | 002,889,408 | ---- | M] (Valve Corporation) -- D:\Steam\Steam.exe
- PRC - [2015-04-14 01:44:34 | 001,543,872 | ---- | M] (Valve Corporation) -- D:\Steam\bin\steamwebhelper.exe
- PRC - [2015-04-14 01:44:34 | 000,836,288 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe
- PRC - [2015-03-28 05:45:04 | 002,673,296 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
- PRC - [2015-03-28 05:45:01 | 001,878,672 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
- PRC - [2015-01-11 19:10:13 | 000,151,552 | ---- | M] () -- C:\Windows\KMService.exe
- PRC - [2015-01-11 19:10:13 | 000,008,192 | ---- | M] () -- C:\Windows\SysWOW64\srvany.exe
- PRC - [2014-12-23 03:32:58 | 000,120,040 | ---- | M] (Insoft LLC) -- C:\Program Files (x86)\Adguard\AdguardSvc.exe
- PRC - [2014-10-10 10:37:18 | 000,409,376 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- PRC - [2014-10-10 10:37:16 | 000,158,496 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- PRC - [2014-04-04 23:39:18 | 000,143,288 | ---- | M] (Stardock Software, Inc) -- C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe
- PRC - [2013-11-21 09:31:44 | 000,015,720 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
- PRC - [2013-10-24 00:39:14 | 001,017,224 | ---- | M] (Flux Software LLC) -- C:\Users\Piechoo\AppData\Local\FluxSoftware\Flux\flux.exe
- [color=#E56717]========== Modules (No Company Name) ==========[/color]
- MOD - [2015-04-14 18:36:27 | 016,863,920 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll
- MOD - [2015-04-14 01:44:46 | 002,371,776 | ---- | M] () -- d:\Steam\video.dll
- MOD - [2015-04-14 01:44:34 | 000,702,656 | ---- | M] () -- D:\Steam\bin\chromehtml.dll
- MOD - [2015-04-09 02:58:18 | 000,012,104 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
- MOD - [2015-03-28 05:45:04 | 000,011,920 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
- MOD - [2015-03-10 08:37:24 | 000,775,680 | ---- | M] () -- d:\Steam\SDL2.dll
- MOD - [2015-02-25 03:58:34 | 034,641,288 | ---- | M] () -- D:\Steam\bin\libcef.dll
- MOD - [2015-02-25 03:58:32 | 001,709,960 | ---- | M] () -- D:\Steam\bin\ffmpegsumo.dll
- MOD - [2014-12-02 02:29:50 | 005,002,752 | ---- | M] () -- d:\Steam\v8.dll
- MOD - [2014-12-02 02:29:34 | 001,612,800 | ---- | M] () -- d:\Steam\icui18n.dll
- MOD - [2014-12-02 02:29:34 | 001,210,368 | ---- | M] () -- d:\Steam\icuuc.dll
- MOD - [2014-12-01 23:31:16 | 002,396,672 | ---- | M] () -- d:\Steam\libavcodec-56.dll
- MOD - [2014-12-01 23:31:16 | 000,485,888 | ---- | M] () -- d:\Steam\libswscale-3.dll
- MOD - [2014-12-01 23:31:16 | 000,479,744 | ---- | M] () -- d:\Steam\libavformat-56.dll
- MOD - [2014-12-01 23:31:16 | 000,442,880 | ---- | M] () -- d:\Steam\libavutil-54.dll
- MOD - [2014-12-01 23:31:16 | 000,332,800 | ---- | M] () -- d:\Steam\libavresample-2.dll
- [color=#E56717]========== Services (SafeList) ==========[/color]
- SRV:[b]64bit:[/b] - [2015-03-28 05:45:00 | 001,152,144 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe -- (GfExperienceService)
- SRV:[b]64bit:[/b] - [2015-03-28 05:44:59 | 022,995,600 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
- SRV:[b]64bit:[/b] - [2015-02-21 01:49:18 | 000,780,800 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
- SRV:[b]64bit:[/b] - [2015-02-04 01:58:28 | 000,366,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc)
- SRV:[b]64bit:[/b] - [2015-02-04 01:58:28 | 000,023,792 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
- SRV:[b]64bit:[/b] - [2015-01-08 12:24:38 | 000,319,080 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService1.0.0.0)
- SRV:[b]64bit:[/b] - [2014-12-06 03:35:00 | 000,229,888 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
- SRV:[b]64bit:[/b] - [2014-11-21 09:29:24 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:54 | 000,154,112 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:47 | 001,668,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:47 | 000,187,904 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:18 | 000,562,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:16 | 000,074,752 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:15 | 000,067,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:12 | 000,550,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:12 | 000,374,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:10 | 000,166,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:04 | 003,460,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:02 | 001,639,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:02 | 000,041,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:02 | 000,026,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:00 | 000,260,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:59:00 | 000,131,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:59 | 000,521,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GeofenceMonitorService.dll -- (lfsvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:57 | 000,407,040 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:57 | 000,270,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:56 | 000,262,656 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:56 | 000,206,848 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:53 | 000,294,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:53 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:52 | 000,121,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:52 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:49 | 001,348,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:46 | 000,092,992 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\KeyboardFilterSvc.dll -- (MsKeyboardFilter)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:44 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:44 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:44 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:44 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:44 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:44 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:44 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:34 | 000,838,656 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:34 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:32 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
- SRV:[b]64bit:[/b] - [2014-11-21 06:58:31 | 000,324,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BthHFSrv.dll -- (BthHFSrv)
- SRV:[b]64bit:[/b] - [2013-11-21 09:31:44 | 000,015,720 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
- SRV:[b]64bit:[/b] - [2013-09-04 19:12:54 | 002,252,504 | ---- | M] (Broadcom Corporation.) [Disabled | Stopped] -- C:\Windows\SysNative\BtwRSupportService.exe -- (BcmBtRSupport)
- SRV:[b]64bit:[/b] - [2013-05-11 18:45:54 | 000,822,232 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
- SRV:[b]64bit:[/b] - [2013-05-11 18:45:38 | 000,733,696 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
- SRV:[b]64bit:[/b] - [2012-10-04 17:07:17 | 006,371,192 | ---- | M] (Native Instruments GmbH) [Auto | Running] -- C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe -- (NIHardwareService)
- SRV - [2015-04-14 18:36:30 | 000,268,464 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
- SRV - [2015-04-14 01:44:34 | 000,836,288 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
- SRV - [2015-03-28 05:45:01 | 001,878,672 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)
- SRV - [2015-02-18 19:11:32 | 000,315,488 | R--- | M] (Skype Technologies) [Auto | Stopped] -- D:\Skype\Updater\Updater.exe -- (SkypeUpdate)
- SRV - [2015-01-20 20:52:56 | 001,903,472 | ---- | M] (Electronic Arts) [On_Demand | Stopped] -- D:\Program Files\Origin\OriginClientService.exe -- (Origin Client Service)
- SRV - [2015-01-19 16:16:38 | 000,169,128 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
- SRV - [2015-01-11 19:10:13 | 000,008,192 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\srvany.exe -- (KMService)
- SRV - [2015-01-08 12:24:40 | 000,280,680 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
- SRV - [2014-12-23 03:32:58 | 000,120,040 | ---- | M] (Insoft LLC) [Auto | Running] -- C:\Program Files (x86)\Adguard\AdguardSvc.exe -- (Adguard Service)
- SRV - [2014-11-21 06:59:32 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
- SRV - [2014-11-21 06:58:35 | 000,367,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GeofenceMonitorService.dll -- (lfsvc)
- SRV - [2014-11-21 06:58:34 | 000,017,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
- SRV - [2014-11-21 06:58:32 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
- SRV - [2014-10-10 10:37:18 | 000,409,376 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
- SRV - [2014-10-10 10:37:16 | 000,158,496 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
- SRV - [2014-04-04 23:39:18 | 000,143,288 | ---- | M] (Stardock Software, Inc) [Auto | Running] -- C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe -- (Start8)
- SRV - [2013-02-10 16:55:30 | 000,012,288 | ---- | M] (Chris Pietschmann (http://pietschsoft.com)) [Auto | Running] -- C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe -- (Virtual Router)
- SRV - [2012-04-24 15:37:56 | 000,169,752 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe -- (ICCS)
- SRV - [2010-02-19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
- [color=#E56717]========== Driver Services (SafeList) ==========[/color]
- DRV:[b]64bit:[/b] - [2015-04-09 02:58:18 | 000,031,376 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
- DRV:[b]64bit:[/b] - [2015-03-28 05:44:59 | 000,019,600 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms)
- DRV:[b]64bit:[/b] - [2015-03-04 12:25:11 | 000,377,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
- DRV:[b]64bit:[/b] - [2015-02-04 01:58:33 | 000,264,000 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter)
- DRV:[b]64bit:[/b] - [2015-02-04 01:58:33 | 000,114,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv)
- DRV:[b]64bit:[/b] - [2015-02-04 01:58:04 | 000,044,024 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot)
- DRV:[b]64bit:[/b] - [2015-01-08 12:24:36 | 003,775,928 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
- DRV:[b]64bit:[/b] - [2014-12-25 22:41:33 | 000,017,920 | ---- | M] (A4Tech Co.,Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Amusbx64.sys -- (Amusbprt)
- DRV:[b]64bit:[/b] - [2014-12-25 22:41:31 | 000,012,288 | ---- | M] ((Standard mouse types)) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\Amfltx64.sys -- (Amfilter)
- DRV:[b]64bit:[/b] - [2014-12-25 00:04:03 | 000,035,600 | ---- | M] (Lenovo Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AcpiVpc.sys -- (ACPIVPC)
- DRV:[b]64bit:[/b] - [2014-12-25 00:04:00 | 000,039,008 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LhdX64.sys -- (LHDmgr)
- DRV:[b]64bit:[/b] - [2014-12-12 02:51:20 | 000,075,776 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
- DRV:[b]64bit:[/b] - [2014-12-10 23:37:56 | 000,060,432 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\drivers\adgnetworktdi.sys -- (adgnetworktdi)
- DRV:[b]64bit:[/b] - [2014-11-22 12:46:30 | 000,038,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
- DRV:[b]64bit:[/b] - [2014-11-21 07:00:05 | 000,157,016 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\wof.sys -- (Wof)
- DRV:[b]64bit:[/b] - [2014-11-21 06:59:56 | 000,027,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
- DRV:[b]64bit:[/b] - [2014-11-21 06:59:54 | 000,054,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr)
- DRV:[b]64bit:[/b] - [2014-11-21 06:59:12 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatformMp)
- DRV:[b]64bit:[/b] - [2014-11-21 06:59:12 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
- DRV:[b]64bit:[/b] - [2014-11-21 06:59:10 | 000,066,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
- DRV:[b]64bit:[/b] - [2014-11-21 06:59:09 | 000,103,424 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
- DRV:[b]64bit:[/b] - [2014-11-21 06:59:08 | 000,921,920 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\refs.sys -- (ReFS)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:59 | 000,146,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:32 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:31 | 000,415,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:31 | 000,087,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb22.sys -- (xusb22)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:31 | 000,087,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc63.sys -- (netvsc)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:31 | 000,069,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:31 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:31 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDScan.sys -- (WSDScan)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:30 | 000,467,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:30 | 000,324,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
- DRV:[b]64bit:[/b] - [2014-11-21 06:58:30 | 000,189,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UCX01000.SYS -- (UCX01000)
- DRV:[b]64bit:[/b] - [2014-11-21 06:46:26 | 000,146,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
- DRV:[b]64bit:[/b] - [2014-11-21 06:46:16 | 000,175,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
- DRV:[b]64bit:[/b] - [2014-11-21 06:46:15 | 000,226,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthLEEnum.sys -- (BthLEEnum)
- DRV:[b]64bit:[/b] - [2014-11-21 06:46:15 | 000,079,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
- DRV:[b]64bit:[/b] - [2014-11-21 06:46:15 | 000,057,176 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
- DRV:[b]64bit:[/b] - [2014-11-21 06:46:15 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
- DRV:[b]64bit:[/b] - [2014-11-21 06:29:44 | 000,022,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\kbldfltr.sys -- (kbldfltr)
- DRV:[b]64bit:[/b] - [2014-11-21 06:29:37 | 000,220,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Vid.sys -- (Vid)
- DRV:[b]64bit:[/b] - [2014-11-21 06:29:37 | 000,129,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmbusr.sys -- (vmbusr)
- DRV:[b]64bit:[/b] - [2014-11-21 06:29:37 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\storvsp.sys -- (storvsp)
- DRV:[b]64bit:[/b] - [2014-11-21 06:29:37 | 000,065,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpcivsp.sys -- (vpcivsp)
- DRV:[b]64bit:[/b] - [2014-11-21 06:29:37 | 000,037,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
- DRV:[b]64bit:[/b] - [2014-11-10 20:06:59 | 000,136,512 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
- DRV:[b]64bit:[/b] - [2014-11-04 21:33:40 | 000,058,176 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
- DRV:[b]64bit:[/b] - [2014-11-04 19:58:28 | 000,038,296 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
- DRV:[b]64bit:[/b] - [2014-11-04 19:58:28 | 000,027,032 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
- DRV:[b]64bit:[/b] - [2014-10-17 06:56:24 | 000,238,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
- DRV:[b]64bit:[/b] - [2014-10-17 06:56:23 | 000,039,744 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
- DRV:[b]64bit:[/b] - [2014-10-17 05:35:04 | 000,086,336 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
- DRV:[b]64bit:[/b] - [2014-10-10 10:37:16 | 000,129,312 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
- DRV:[b]64bit:[/b] - [2014-10-03 13:35:54 | 000,454,416 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
- DRV:[b]64bit:[/b] - [2014-07-07 12:06:58 | 000,036,352 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgandnetmodem64.sys -- (ANDNetModem)
- DRV:[b]64bit:[/b] - [2014-07-07 12:06:36 | 000,029,184 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgandnetdiag64.sys -- (AndNetDiag)
- DRV:[b]64bit:[/b] - [2014-05-27 07:40:48 | 000,031,744 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgandnetadb.sys -- (andnetadb)
- DRV:[b]64bit:[/b] - [2014-02-25 07:18:38 | 003,349,984 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwew00.sys -- (NETwNe64)
- DRV:[b]64bit:[/b] - [2013-11-21 09:31:28 | 000,632,168 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
- DRV:[b]64bit:[/b] - [2013-09-04 19:12:52 | 000,166,104 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (btwampfl)
- DRV:[b]64bit:[/b] - [2013-09-04 19:12:38 | 000,170,712 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcbtums.sys -- (bcbtums)
- DRV:[b]64bit:[/b] - [2013-08-22 15:25:40 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
- DRV:[b]64bit:[/b] - [2013-08-22 15:25:40 | 000,030,048 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
- DRV:[b]64bit:[/b] - [2013-08-22 14:49:54 | 000,079,712 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
- DRV:[b]64bit:[/b] - [2013-08-22 14:49:33 | 000,159,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:49 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:48 | 000,041,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:45 | 003,357,024 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:45 | 000,093,536 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:45 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:45 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:44 | 000,081,760 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3.sys -- (LSI_SAS3)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,782,176 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,108,896 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,079,200 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:40 | 000,114,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:40 | 000,082,784 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:40 | 000,025,952 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:34 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:33 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:32 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:31 | 000,107,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:31 | 000,072,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
- DRV:[b]64bit:[/b] - [2013-08-22 14:43:31 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
- DRV:[b]64bit:[/b] - [2013-08-22 14:39:15 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
- DRV:[b]64bit:[/b] - [2013-08-22 14:36:12 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
- DRV:[b]64bit:[/b] - [2013-08-22 13:39:58 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
- DRV:[b]64bit:[/b] - [2013-08-22 13:39:31 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
- DRV:[b]64bit:[/b] - [2013-08-22 13:39:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo)
- DRV:[b]64bit:[/b] - [2013-08-22 13:39:06 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
- DRV:[b]64bit:[/b] - [2013-08-22 13:38:58 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
- DRV:[b]64bit:[/b] - [2013-08-22 13:38:48 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
- DRV:[b]64bit:[/b] - [2013-08-22 13:38:39 | 000,036,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
- DRV:[b]64bit:[/b] - [2013-08-22 13:38:26 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
- DRV:[b]64bit:[/b] - [2013-08-22 13:38:23 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
- DRV:[b]64bit:[/b] - [2013-08-22 13:38:22 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
- DRV:[b]64bit:[/b] - [2013-08-22 13:38:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid)
- DRV:[b]64bit:[/b] - [2013-08-22 13:37:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
- DRV:[b]64bit:[/b] - [2013-08-22 13:37:28 | 000,056,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
- DRV:[b]64bit:[/b] - [2013-08-22 13:37:28 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
- DRV:[b]64bit:[/b] - [2013-08-22 13:37:14 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
- DRV:[b]64bit:[/b] - [2013-08-22 13:36:25 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
- DRV:[b]64bit:[/b] - [2013-08-22 10:46:33 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fxppm.sys -- (FxPPM)
- DRV:[b]64bit:[/b] - [2013-08-13 01:25:46 | 000,017,624 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
- DRV:[b]64bit:[/b] - [2013-08-10 02:39:30 | 000,651,248 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV)
- DRV:[b]64bit:[/b] - [2013-07-30 20:47:35 | 000,024,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
- DRV:[b]64bit:[/b] - [2013-07-25 21:05:39 | 000,099,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
- DRV:[b]64bit:[/b] - [2013-06-18 16:44:59 | 000,129,224 | ---- | M] (Qualcomm Atheros Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C63x64.sys -- (L1C)
- DRV:[b]64bit:[/b] - [2013-04-12 12:41:28 | 000,131,856 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
- DRV:[b]64bit:[/b] - [2013-03-18 16:51:08 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
- DRV:[b]64bit:[/b] - [2013-03-08 17:58:18 | 000,473,840 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
- DRV:[b]64bit:[/b] - [2013-03-08 17:58:18 | 000,033,008 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys -- (SmbDrvI)
- DRV:[b]64bit:[/b] - [2012-08-21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
- DRV:[b]64bit:[/b] - [2012-07-03 16:10:00 | 000,084,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bpenum.sys -- (bpenum)
- DRV:[b]64bit:[/b] - [2012-06-22 15:22:16 | 000,174,176 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR)
- DRV:[b]64bit:[/b] - [2011-02-02 17:50:32 | 000,038,472 | ---- | M] (Dell Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dcdbas64.sys -- (dcdbas)
- DRV:[b]64bit:[/b] - [2010-04-27 17:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmVirHid.sys -- (WmVirHid)
- DRV:[b]64bit:[/b] - [2010-04-27 17:57:14 | 000,036,936 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmHidLo.sys -- (WmHidLo)
- DRV:[b]64bit:[/b] - [2010-04-27 17:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmBEnum.sys -- (WmBEnum)
- DRV:[b]64bit:[/b] - [2010-04-27 15:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmXlCore.sys -- (WmXlCore)
- DRV:[b]64bit:[/b] - [2010-04-27 15:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmFilter.sys -- (WmFilter)
- DRV:[b]64bit:[/b] - [2000-01-01 02:00:00 | 009,101,016 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtsuvc.sys -- (rtsuvc)
- [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
- [color=#E56717]========== Internet Explorer ==========[/color]
- IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
- IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\S-1-5-21-4108140768-390481658-3030472916-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
- IE - HKU\S-1-5-21-4108140768-390481658-3030472916-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp
- IE - HKU\S-1-5-21-4108140768-390481658-3030472916-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pl-PL
- IE - HKU\S-1-5-21-4108140768-390481658-3030472916-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 88 21 32 10 AA 31 D0 01 [binary data]
- IE - HKU\S-1-5-21-4108140768-390481658-3030472916-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\S-1-5-21-4108140768-390481658-3030472916-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
- IE - HKU\S-1-5-21-4108140768-390481658-3030472916-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- [color=#E56717]========== FireFox ==========[/color]
- FF - prefs.js..browser.search.countryCode: "PL"
- FF - prefs.js..browser.search.hiddenOneOffs: "DuckDuckGo,Encyklopedia PWN,Merlin,Wolne Lektury,WP"
- FF - prefs.js..browser.search.isUS: false
- FF - prefs.js..browser.search.region: "PL"
- FF - prefs.js..browser.search.useDBForOrder: true
- FF - prefs.js..browser.startup.homepage: "about:home"
- FF - prefs.js..extensions.enabledAddons: %7B46551EC9-40F0-4e47-8E18-8E5CF550CFB8%7D:2.0.2
- FF - prefs.js..extensions.enabledAddons: %7B5C655500-E712-41e7-9349-CE462F844B19%7D:1.0
- FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:37.0.2
- FF - user.js - File not found
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll File not found
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: D:\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
- FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll ()
- FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
- FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: D:\iTunes\Mozilla Plugins\npitunes.dll ()
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.45.2: C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
- FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2: C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll (Oracle Corporation)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: D:\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: D:\Microsoft Office\Office14\NPSPWRAP.DLL (Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: d:\VLC\npvlc.dll (VideoLAN)
- FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: D:\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
- FF - HKCU\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll File not found
- FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Piechoo\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
- FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\Piechoo\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
- FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Piechoo\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
- FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Piechoo\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
- FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Piechoo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 36.0.1\extensions\\Components: D:\Mozilla Firefox\components
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 36.0.1\extensions\\Plugins: D:\Mozilla Firefox\plugins
- FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 37.0.2\extensions\\Components: D:\Mozilla Firefox\components
- FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 37.0.2\extensions\\Plugins: D:\Mozilla Firefox\plugins
- [2015-01-29 21:43:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\Extensions
- [2015-05-04 07:37:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\Firefox\Profiles\dq88e3gy.default\extension-data
- [2015-05-01 15:41:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\Firefox\Profiles\dq88e3gy.default\extensions
- [2015-04-20 11:18:13 | 004,024,752 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\firefox@mega.co.nz.xpi
- [2015-01-29 21:51:23 | 000,667,234 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\jid1-cwbvBTE216jjpg@jetpack.xpi
- [2015-04-13 09:43:36 | 000,671,591 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi
- [2015-01-29 23:46:29 | 000,014,061 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\minoru-kun@inbox.ru.xpi
- [2015-05-01 15:41:58 | 003,720,915 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\{2b10c1c8-a11f-4bad-fe9c-1c11e82cac42}.xpi
- [2015-04-10 10:42:21 | 000,202,627 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
- [2015-04-10 10:43:50 | 000,151,038 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\{5C655500-E712-41e7-9349-CE462F844B19}.xpi
- [2015-05-01 15:41:40 | 000,123,476 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi
- [2015-01-29 21:51:49 | 000,005,490 | ---- | M] () (No name found) -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\extensions\{ab4b5718-3998-4a2c-91ae-18a7c2db513e}.xpi
- [2015-03-03 21:09:26 | 000,008,105 | ---- | M] () -- C:\Users\Piechoo\AppData\Roaming\mozilla\firefox\profiles\dq88e3gy.default\searchplugins\tumacz-google.xml
- O1 HOSTS File: ([2015-04-15 01:01:56 | 000,003,718 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
- O1 - Hosts: 127.0.0.1 localhost
- O1 - Hosts: 127.0.0.1 localhost
- O1 - Hosts: 127.0.0.1 rad.msn.com
- O1 - Hosts: 127.0.0.1 live.rads.msn.com
- O1 - Hosts: 127.0.0.1 ads1.msn.com
- O1 - Hosts: 127.0.0.1 rad.msn.com
- O1 - Hosts: 127.0.0.1 live.rads.msn.com
- O1 - Hosts: 127.0.0.1 ads1.msn.com
- O2:[b]64bit:[/b] - BHO: (no name) - AutorunsDisabled - No CLSID value found.
- O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll (Oracle Corporation)
- O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll (Oracle Corporation)
- O2 - BHO: (no name) - AutorunsDisabled - No CLSID value found.
- O4:[b]64bit:[/b] - HKLM..\Run: [Energy Management] C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo (Beijing) Limited)
- O4:[b]64bit:[/b] - HKLM..\Run: [EnergyUtility] C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe (Lenovo(beijing) Limited)
- O4:[b]64bit:[/b] - HKLM..\Run: [InstallerLauncher] "C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\Installer.exe" File not found
- O4:[b]64bit:[/b] - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
- O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
- O4:[b]64bit:[/b] - HKLM..\Run: [ShadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation)
- O4 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001..\Run: [Adguard] C:\Program Files (x86)\Adguard\Adguard.exe (Insoft LLC)
- O4 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001..\Run: [AirDroid 3] D:\AirDroid\AirDroid.exe (Sand Studio)
- O4 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001..\Run: [CCleaner Monitoring] D:\CCleaner\CCleaner64.exe (Piriform Ltd)
- O4 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001..\Run: [Clavier+] C:\Users\Piechoo\AppData\Local\Clavier+\Clavier.exe (Guillaume Ryder (http://utilfr42.free.fr))
- O4 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001..\Run: [f.lux] C:\Users\Piechoo\AppData\Local\FluxSoftware\Flux\flux.exe (Flux Software LLC)
- O4 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001..\Run: [Spotify] C:\Users\Piechoo\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd)
- O4 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001..\Run: [Spotify Web Helper] C:\Users\Piechoo\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Spotify Ltd)
- O4 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001..\Run: [Unified Remote v2] C:\Program Files (x86)\Unified Remote\RemoteServer.exe (Unified Intents AB)
- O4 - Startup: C:\Users\Piechoo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\789630000-GT5GT5GT5V.part21.rar.lnk = File not found
- O4 - Startup: C:\Users\Piechoo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\789630000-GT5GT5GT5V.part29.rar.lnk = File not found
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
- O8:[b]64bit:[/b] - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
- O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
- O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
- O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
- O13[b]64bit:[/b] - gopher Prefix: missing
- O13 - gopher Prefix: missing
- O15 - HKU\S-1-5-21-4108140768-390481658-3030472916-1001\..Trusted Domains: blank ([]about in Trusted sites)
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.204.152.34 194.204.159.1 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{887D2211-BF52-40B6-9396-E562559CE40E}: DhcpNameServer = 194.204.152.34 194.204.159.1 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F6652891-9C3B-48E3-8021-02DCBFBACAF6}: DhcpNameServer = 192.168.43.1
- O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
- O18:[b]64bit:[/b] - Protocol\Filter\AutorunsDisabled - No CLSID value found
- O18 - Protocol\Filter\AutorunsDisabled - No CLSID value found
- O20:[b]64bit:[/b] - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
- O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
- O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
- O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O32 - HKLM CDRom: AutoRun - 1
- O33 - MountPoints2\{2a63eb3d-bb92-11e4-8284-208984e1cef6}\Shell - "" = AutoRun
- O33 - MountPoints2\{2a63eb3d-bb92-11e4-8284-208984e1cef6}\Shell\AutoRun\command - "" = "G:\LG_PC_Programs.exe"
- O34 - HKLM BootExecute: (autocheck autochk *)
- O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
- O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
- O35 - HKLM\..comfile [open] -- "%1" %*
- O35 - HKLM\..exefile [open] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
- O37 - HKLM\...com [@ = comfile] -- "%1" %*
- O37 - HKLM\...exe [@ = exefile] -- "%1" %*
- O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
- O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
- [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
- [2015-05-02 17:33:02 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\AppData\Roaming\HD Tune Pro
- [2015-05-02 17:32:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune Pro
- [2015-04-25 11:13:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
- [2015-04-24 21:04:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Update2343200959509
- [2015-04-24 18:52:25 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\AppData\Roaming\WinRAR
- [2015-04-24 18:49:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rockstar Games
- [2015-04-24 18:49:41 | 000,000,000 | ---D | C] -- C:\Program Files\Rockstar Games
- [2015-04-24 18:48:06 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\AppData\Local\Rockstar Games
- [2015-04-24 18:47:37 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\Documents\Rockstar Games
- [2015-04-24 16:20:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SystemDefend
- [2015-04-24 16:08:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TrimModule
- [2015-04-24 16:07:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Find My Bookmarks
- [2015-04-24 16:07:23 | 000,000,000 | ---D | C] -- C:\ProgramData\11775426682165639525
- [2015-04-21 17:42:52 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\Documents\Square Enix
- [2015-04-21 15:58:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
- [2015-04-21 15:51:31 | 000,098,216 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
- [2015-04-21 15:51:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
- [2015-04-17 14:55:39 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\Documents\Rayman Legends
- [2015-04-16 10:42:27 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\AppData\Roaming\Unity
- [2015-04-16 10:38:06 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\AppData\Local\Unity
- [2015-04-15 21:44:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Otchlan 1.3 Beta
- [2015-04-15 21:44:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Otchlan 1.3 Beta
- [2015-04-15 01:15:11 | 007,476,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
- [2015-04-15 01:15:10 | 001,733,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
- [2015-04-15 01:15:10 | 000,950,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
- [2015-04-15 01:15:10 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsm.dll
- [2015-04-15 01:15:10 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
- [2015-04-15 01:15:10 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tracerpt.exe
- [2015-04-15 01:15:10 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tracerpt.exe
- [2015-04-15 01:15:10 | 000,360,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sechost.dll
- [2015-04-15 01:15:10 | 000,285,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
- [2015-04-15 01:15:10 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\microsoft-windows-system-events.dll
- [2015-04-15 01:15:10 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
- [2015-04-15 01:15:04 | 006,025,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
- [2015-04-15 01:15:02 | 000,720,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
- [2015-04-15 01:15:02 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
- [2015-04-15 01:15:01 | 000,816,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
- [2015-04-15 01:15:01 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
- [2015-04-15 01:15:01 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
- [2015-04-15 01:15:01 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
- [2015-04-15 01:15:01 | 000,664,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
- [2015-04-15 01:15:01 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
- [2015-04-15 01:14:36 | 000,377,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\clfs.sys
- [2015-04-15 01:14:36 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clfsw32.dll
- [2015-04-15 01:14:36 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clfsw32.dll
- [2015-04-14 20:33:00 | 002,373,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
- [2015-04-14 20:33:00 | 000,891,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
- [2015-04-14 20:33:00 | 000,721,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
- [2015-04-14 20:33:00 | 000,408,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUSettingsProvider.dll
- [2015-04-14 20:33:00 | 000,267,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSetupUI.dll
- [2015-04-14 20:33:00 | 000,133,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
- [2015-04-14 20:32:59 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\storewuauth.dll
- [2015-04-14 20:32:59 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
- [2015-04-14 20:32:59 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
- [2015-04-14 20:32:59 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
- [2015-04-14 20:32:59 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
- [2015-04-14 20:32:59 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
- [2015-04-14 20:32:59 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
- [2015-04-14 20:32:59 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
- [2015-04-14 20:32:59 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
- [2015-04-14 20:32:59 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
- [2015-04-14 20:32:59 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wu.upgrade.ps.dll
- [2015-04-13 19:23:15 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\NV
- [2015-04-13 19:23:15 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\NV
- [2015-04-13 19:22:07 | 031,570,064 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll
- [2015-04-13 19:22:07 | 030,397,072 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll
- [2015-04-13 19:22:07 | 025,375,048 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
- [2015-04-13 19:22:07 | 024,053,576 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
- [2015-04-13 19:22:07 | 017,176,128 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll
- [2015-04-13 19:22:07 | 015,818,528 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll
- [2015-04-13 19:22:07 | 015,716,232 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvopencl.dll
- [2015-04-13 19:22:07 | 014,617,288 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
- [2015-04-13 19:22:07 | 014,006,752 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll
- [2015-04-13 19:22:07 | 012,852,784 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvopencl.dll
- [2015-04-13 19:22:07 | 011,380,728 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
- [2015-04-13 19:22:07 | 002,935,416 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
- [2015-04-13 19:22:07 | 002,896,528 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll
- [2015-04-13 19:22:07 | 002,573,456 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
- [2015-04-13 19:22:07 | 001,895,568 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco6435012.dll
- [2015-04-13 19:22:07 | 001,557,648 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispgenco6435012.dll
- [2015-04-13 19:22:07 | 001,047,368 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFR64.dll
- [2015-04-13 19:22:07 | 001,037,640 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvFBC64.dll
- [2015-04-13 19:22:07 | 000,970,568 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFR.dll
- [2015-04-13 19:22:07 | 000,962,192 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvFBC.dll
- [2015-04-13 19:22:07 | 000,499,344 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvEncodeAPI64.dll
- [2015-04-13 19:22:07 | 000,402,576 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvEncodeAPI.dll
- [2015-04-13 19:22:07 | 000,390,472 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFROpenGL.dll
- [2015-04-13 19:22:07 | 000,346,256 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFROpenGL.dll
- [2015-04-13 19:22:07 | 000,150,648 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglshim64.dll
- [2015-04-13 19:22:07 | 000,128,512 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglshim32.dll
- [2015-04-13 19:22:07 | 000,031,376 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvpciflt.sys
- [2015-04-12 21:16:43 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\AppData\Roaming\Talisman
- [2015-04-10 13:04:48 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\AppData\Local\Spotify
- [2015-04-10 13:00:50 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\AppData\Roaming\Spotify
- [2015-04-07 21:45:01 | 032,878,768 | ---- | C] (Maxthon International ltd.) -- C:\Users\Piechoo\Desktop\mxnitro1.0.1.2000_21fe3831d8588fd27048056263a4a045.exe
- [2015-04-04 19:26:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
- [2015-04-04 15:27:19 | 000,000,000 | ---D | C] -- C:\Users\Piechoo\Desktop\t_pliki
- [1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
- [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
- [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
- [2015-05-04 07:36:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
- [2015-05-04 07:33:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
- [2015-05-04 00:17:00 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4108140768-390481658-3030472916-1001UA1d0602576d94cdd.job
- [2015-05-04 00:15:06 | 000,865,450 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
- [2015-05-04 00:15:06 | 000,723,514 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
- [2015-05-04 00:15:06 | 000,136,128 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
- [2015-05-04 00:15:06 | 000,013,484 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
- [2015-05-04 00:15:06 | 000,004,226 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
- [2015-05-03 21:17:00 | 000,001,042 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4108140768-390481658-3030472916-1001Core1d0602576193248.job
- [2015-05-03 04:06:00 | 000,000,408 | ---- | M] () -- C:\Windows\tasks\Bidaily Synchronize Task.job
- [2015-05-01 16:20:52 | 000,003,041 | ---- | M] () -- C:\Users\Piechoo\Desktop\Intugame VR.lnk
- [2015-04-29 13:39:44 | 000,353,195 | ---- | M] () -- C:\Users\Piechoo\Desktop\44-fiza-1.pdf
- [2015-04-26 11:29:17 | 000,000,680 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.ics
- [2015-04-26 11:29:08 | 016,777,216 | -HS- | M] () -- C:\swapfile.sys
- [2015-04-26 11:29:04 | 2495,066,111 | -HS- | M] () -- C:\hiberfil.sys
- [2015-04-25 11:13:29 | 000,000,520 | ---- | M] () -- C:\Users\Public\Desktop\Fraps.lnk
- [2015-04-24 16:19:49 | 000,002,097 | ---- | M] () -- C:\Users\Piechoo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\789630000-GT5GT5GT5V.part21.rar.lnk
- [2015-04-24 16:07:07 | 000,002,097 | ---- | M] () -- C:\Users\Piechoo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\789630000-GT5GT5GT5V.part29.rar.lnk
- [2015-04-21 15:58:15 | 000,098,216 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
- [2015-04-20 11:23:26 | 000,157,633 | ---- | M] () -- C:\Users\Piechoo\Desktop\Bez_nazwy (21).wma
- [2015-04-19 18:13:39 | 2091,909,123 | ---- | M] () -- C:\Users\Piechoo\Desktop\789630000-GT5GT5GT5V.part21.rar
- [2015-04-15 20:08:10 | 000,273,520 | ---- | M] () -- C:\ProgramData\1429121208.bdinstall.bin
- [2015-04-15 01:01:56 | 000,003,718 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
- [2015-04-14 01:24:21 | 000,792,056 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
- [2015-04-14 01:24:21 | 000,178,168 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
- [2015-04-12 17:11:03 | 000,084,365 | ---- | M] () -- C:\Users\Piechoo\Desktop\a3882752086_2.jpg
- [2015-04-12 17:08:35 | 000,603,414 | ---- | M] () -- C:\Users\Piechoo\Desktop\redirect.jpg
- [2015-04-12 17:06:40 | 000,040,554 | ---- | M] () -- C:\Users\Piechoo\Desktop\4324255.jpg
- [2015-04-10 13:04:47 | 000,001,823 | ---- | M] () -- C:\Users\Piechoo\Desktop\Spotify.lnk
- [2015-04-09 02:58:18 | 031,570,064 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll
- [2015-04-09 02:58:18 | 030,397,072 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll
- [2015-04-09 02:58:18 | 025,375,048 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
- [2015-04-09 02:58:18 | 024,053,576 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
- [2015-04-09 02:58:18 | 017,176,128 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll
- [2015-04-09 02:58:18 | 015,818,528 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll
- [2015-04-09 02:58:18 | 015,716,232 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvopencl.dll
- [2015-04-09 02:58:18 | 014,617,288 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
- [2015-04-09 02:58:18 | 014,006,752 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll
- [2015-04-09 02:58:18 | 012,852,784 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvopencl.dll
- [2015-04-09 02:58:18 | 012,689,592 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvd3dum.dll
- [2015-04-09 02:58:18 | 011,380,728 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
- [2015-04-09 02:58:18 | 003,317,344 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvapi64.dll
- [2015-04-09 02:58:18 | 002,935,416 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
- [2015-04-09 02:58:18 | 002,896,528 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll
- [2015-04-09 02:58:18 | 002,573,456 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
- [2015-04-09 02:58:18 | 001,895,568 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco6435012.dll
- [2015-04-09 02:58:18 | 001,557,648 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispgenco6435012.dll
- [2015-04-09 02:58:18 | 001,086,424 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvumdshimx.dll
- [2015-04-09 02:58:18 | 001,047,368 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFR64.dll
- [2015-04-09 02:58:18 | 001,037,640 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\NvFBC64.dll
- [2015-04-09 02:58:18 | 000,970,568 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFR.dll
- [2015-04-09 02:58:18 | 000,962,192 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvFBC.dll
- [2015-04-09 02:58:18 | 000,927,440 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvumdshim.dll
- [2015-04-09 02:58:18 | 000,499,344 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvEncodeAPI64.dll
- [2015-04-09 02:58:18 | 000,402,576 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvEncodeAPI.dll
- [2015-04-09 02:58:18 | 000,390,472 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFROpenGL.dll
- [2015-04-09 02:58:18 | 000,346,256 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFROpenGL.dll
- [2015-04-09 02:58:18 | 000,175,880 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvinitx.dll
- [2015-04-09 02:58:18 | 000,154,256 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvinit.dll
- [2015-04-09 02:58:18 | 000,150,648 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglshim64.dll
- [2015-04-09 02:58:18 | 000,128,512 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglshim32.dll
- [2015-04-09 02:58:18 | 000,031,376 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvpciflt.sys
- [2015-04-09 02:58:18 | 000,029,329 | ---- | M] () -- C:\Windows\SysNative\nvinfo.pb
- [2015-04-08 23:30:18 | 006,841,488 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcpl.dll
- [2015-04-08 23:30:18 | 003,478,344 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvc64.dll
- [2015-04-08 23:30:14 | 002,558,608 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvcr.dll
- [2015-04-08 23:30:14 | 001,047,696 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nv3dappshext.dll
- [2015-04-08 23:30:14 | 000,569,160 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\oemdspif.dll
- [2015-04-08 23:30:14 | 000,075,080 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nv3dappshextr.dll
- [2015-04-08 23:30:14 | 000,062,608 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvshext.dll
- [2015-04-08 23:30:13 | 000,385,168 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvmctray.dll
- [2015-04-08 19:52:00 | 004,336,074 | ---- | M] () -- C:\Windows\SysNative\nvcoproc.bin
- [2015-04-07 21:46:17 | 000,000,929 | ---- | M] () -- C:\Users\Piechoo\Desktop\Maxthon Nitro.lnk
- [2015-04-07 21:45:44 | 032,878,768 | ---- | M] (Maxthon International ltd.) -- C:\Users\Piechoo\Desktop\mxnitro1.0.1.2000_21fe3831d8588fd27048056263a4a045.exe
- [2015-04-04 15:27:21 | 000,126,514 | ---- | M] () -- C:\Users\Piechoo\Desktop\t.htm
- [1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
- [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
- [color=#E56717]========== Files Created - No Company Name ==========[/color]
- [2015-05-01 16:20:52 | 000,003,041 | ---- | C] () -- C:\Users\Piechoo\Desktop\Intugame VR.lnk
- [2015-05-01 16:20:52 | 000,003,001 | ---- | C] () -- C:\Users\Piechoo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Intugame VR.lnk
- [2015-04-29 13:39:42 | 000,353,195 | ---- | C] () -- C:\Users\Piechoo\Desktop\44-fiza-1.pdf
- [2015-04-25 11:13:29 | 000,000,520 | ---- | C] () -- C:\Users\Public\Desktop\Fraps.lnk
- [2015-04-24 17:31:01 | 2091,909,123 | ---- | C] () -- C:\Users\Piechoo\Desktop\789630000-GT5GT5GT5V.part21.rar
- [2015-04-24 16:19:49 | 000,002,097 | ---- | C] () -- C:\Users\Piechoo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\789630000-GT5GT5GT5V.part21.rar.lnk
- [2015-04-24 16:06:24 | 000,002,097 | ---- | C] () -- C:\Users\Piechoo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\789630000-GT5GT5GT5V.part29.rar.lnk
- [2015-04-24 16:06:24 | 000,000,408 | ---- | C] () -- C:\Windows\tasks\Bidaily Synchronize Task.job
- [2015-04-21 16:10:22 | 000,000,690 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk
- [2015-04-21 16:10:22 | 000,000,659 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Uninstaller.lnk
- [2015-04-21 16:10:22 | 000,000,625 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk
- [2015-04-20 11:23:26 | 000,157,633 | ---- | C] () -- C:\Users\Piechoo\Desktop\Bez_nazwy (21).wma
- [2015-04-15 20:08:10 | 000,273,520 | ---- | C] () -- C:\ProgramData\1429121208.bdinstall.bin
- [2015-04-15 01:15:01 | 000,016,303 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
- [2015-04-15 01:15:01 | 000,016,303 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
- [2015-04-12 17:11:03 | 000,084,365 | ---- | C] () -- C:\Users\Piechoo\Desktop\a3882752086_2.jpg
- [2015-04-12 17:08:35 | 000,603,414 | ---- | C] () -- C:\Users\Piechoo\Desktop\redirect.jpg
- [2015-04-12 17:06:40 | 000,040,554 | ---- | C] () -- C:\Users\Piechoo\Desktop\4324255.jpg
- [2015-04-10 13:04:47 | 000,001,823 | ---- | C] () -- C:\Users\Piechoo\Desktop\Spotify.lnk
- [2015-04-10 13:04:47 | 000,001,809 | ---- | C] () -- C:\Users\Piechoo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
- [2015-04-07 21:46:17 | 000,000,929 | ---- | C] () -- C:\Users\Piechoo\Desktop\Maxthon Nitro.lnk
- [2015-04-04 15:27:19 | 000,126,514 | ---- | C] () -- C:\Users\Piechoo\Desktop\t.htm
- [2015-03-21 09:09:44 | 000,303,104 | ---- | C] () -- C:\Windows\Uninstall_tkexe.exe
- [2015-03-16 16:02:24 | 000,000,132 | ---- | C] () -- C:\Users\Piechoo\AppData\Roaming\Preferencje formatu BMP CS6 firmy Adobe
- [2015-02-26 21:01:22 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\CommonDL.dll
- [2015-02-26 21:01:22 | 000,002,411 | ---- | C] () -- C:\Windows\SysWow64\lgAxconfig.ini
- [2015-02-26 13:37:19 | 000,184,832 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
- [2015-02-26 13:37:19 | 000,143,872 | ---- | C] () -- C:\Windows\SysWow64\igdail32.dll
- [2015-01-11 19:10:50 | 000,151,552 | ---- | C] () -- C:\Windows\KMService.exe
- [2015-01-11 19:10:50 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\srvany.exe
- [2015-01-08 21:58:16 | 000,000,016 | ---- | C] () -- C:\Users\Piechoo\AppData\Roaming\msregsvv.dll
- [2015-01-08 21:58:16 | 000,000,016 | ---- | C] () -- C:\ProgramData\autobk.inc
- [2014-12-29 22:02:59 | 000,002,125 | ---- | C] () -- C:\Windows\SysWow64\finsslaysirony.bin
- [2014-12-29 22:02:59 | 000,000,008 | ---- | C] () -- C:\ProgramData\-
- [2014-12-28 22:08:37 | 000,007,605 | ---- | C] () -- C:\Users\Piechoo\AppData\Local\Resmon.ResmonCfg
- [2014-12-28 18:58:45 | 001,852,054 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
- [2014-12-25 00:03:28 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
- [2014-12-24 23:53:40 | 000,000,261 | ---- | C] () -- C:\Windows\SysWow64\drivers\vwifikerneldrv.sys
- [2014-12-24 23:53:40 | 000,000,261 | ---- | C] () -- C:\ProgramData\fontcacheev1.dat
- [2014-12-06 22:38:33 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\soirsilkedify.dll
- [2014-11-21 06:59:43 | 000,046,080 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
- [2014-11-21 06:58:35 | 000,107,008 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll
- [2014-11-21 06:46:35 | 000,002,255 | ---- | C] () -- C:\Windows\SysWow64\WimBootCompress.ini
- [2013-08-22 17:36:43 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
- [2013-08-22 17:36:42 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
- [2013-08-22 16:46:23 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
- [2013-08-22 09:01:23 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
- [2013-08-22 01:55:20 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
- [2013-08-22 01:52:39 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
- [2013-05-11 18:17:52 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll
- [color=#E56717]========== ZeroAccess Check ==========[/color]
- [2014-12-26 16:15:45 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
- [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
- [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
- [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
- "" = C:\Windows\SysNative\shell32.dll -- [2015-02-12 19:40:58 | 022,291,584 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- "" = %SystemRoot%\system32\shell32.dll -- [2015-02-12 19:34:06 | 019,731,824 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
- "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2014-11-21 06:58:46 | 001,013,760 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
- "" = %systemroot%\system32\wbem\fastprox.dll -- [2014-11-21 06:59:28 | 000,786,944 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
- "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2014-11-21 06:58:46 | 000,512,512 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Both
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
- [color=#E56717]========== LOP Check ==========[/color]
- [2015-03-04 20:39:07 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\Bitdefender
- [2014-12-29 23:33:30 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\.minecraft
- [2015-02-26 22:08:30 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\AdbDriverInstaller
- [2015-01-04 12:39:28 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Color Profile Keeper
- [2015-03-20 18:35:56 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\EurekaLog
- [2015-04-04 19:24:19 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\GHISLER
- [2015-05-02 17:33:11 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\HD Tune Pro
- [2014-12-24 23:53:41 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Insoft LLC
- [2014-12-29 22:08:34 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\java
- [2015-04-10 16:46:08 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\mxnitro
- [2014-12-28 18:29:45 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\NapiProjekt
- [2015-03-14 13:10:30 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\OBS
- [2015-04-04 19:24:54 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\OnLive App
- [2015-01-15 00:13:26 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Opera
- [2015-01-15 00:11:42 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Opera Software
- [2015-01-20 20:53:36 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Origin
- [2014-12-27 14:02:47 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\qBittorrent
- [2015-01-20 00:59:18 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\QuickScan
- [2015-04-01 21:07:27 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\redsn0w
- [2014-12-29 21:05:17 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\rockbox.org
- [2015-04-10 13:05:06 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Spotify
- [2015-03-16 15:53:30 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
- [2015-01-11 14:26:30 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\SumatraPDF
- [2015-04-13 11:03:34 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Talisman
- [2015-03-02 00:47:47 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\TuneUp Software
- [2015-02-16 15:37:16 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Unified Remote
- [2015-04-16 10:42:27 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\Unity
- [2014-12-24 23:13:05 | 000,000,000 | ---D | M] -- C:\Users\Piechoo\AppData\Roaming\WinBatch
- [color=#E56717]========== Purity Check ==========[/color]
- [color=#E56717]========== Files - Unicode (All) ==========[/color]
- [2015-01-30 00:27:56 | 000,231,703 | ---- | M] ()(C:\Users\Piechoo\Desktop\zdje?cie 5-1.JPG) -- C:\Users\Piechoo\Desktop\zdjęcie 5-1.JPG
- [2015-01-30 00:27:56 | 000,231,703 | ---- | C] ()(C:\Users\Piechoo\Desktop\zdje?cie 5-1.JPG) -- C:\Users\Piechoo\Desktop\zdjęcie 5-1.JPG
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement