Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL logfile created on: 2015-07-19 11:59:35 - Run 2
- OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Kucyk\Desktop
- 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
- Internet Explorer (Version = 9.11.9600.17914)
- Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
- 3,89 Gb Total Physical Memory | 1,86 Gb Available Physical Memory | 47,71% Memory free
- 7,79 Gb Paging File | 5,17 Gb Available in Paging File | 66,44% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
- Drive C: | 465,42 Gb Total Space | 339,14 Gb Free Space | 72,87% Space Free | Partition Type: NTFS
- Computer Name: KUCYK-KOMPUTER | User Name: Kucyk | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
- Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Processes (SafeList) ==========[/color]
- PRC - [2015-07-19 11:57:40 | 000,707,240 | ---- | M] (DTools LIMITED) -- C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
- PRC - [2015-07-19 10:22:49 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Kucyk\Desktop\OTL.exe
- PRC - [2015-07-19 09:47:40 | 000,165,376 | ---- | M] () -- C:\Program Files (x86)\03AA02FC-1437292032-05AC-A006-640700080009\hnso581F.tmp
- PRC - [2015-07-19 09:47:33 | 000,199,168 | ---- | M] () -- C:\Program Files (x86)\03AA02FC-1437292032-05AC-A006-640700080009\jnsy38AB.tmp
- PRC - [2015-07-19 09:22:24 | 000,613,888 | ---- | M] () -- C:\Program Files (x86)\03AA02FC-1437292032-05AC-A006-640700080009\knso12ED.tmpfs
- PRC - [2015-07-17 11:57:06 | 003,286,672 | ---- | M] () -- C:\Users\Kucyk\AppData\Local\gmsd_pl_005010034\upgmsd_pl_005010034.exe
- PRC - [2015-07-17 11:57:00 | 003,981,968 | ---- | M] () -- C:\Program Files (x86)\gmsd_pl_005010034\gmsd_pl_005010034.exe
- PRC - [2015-07-16 05:23:52 | 000,673,976 | ---- | M] (XTab system) -- C:\Program Files (x86)\MiuiTab\HPNotify.exe
- PRC - [2015-07-16 05:23:52 | 000,125,112 | ---- | M] (XTab system) -- C:\Program Files (x86)\MiuiTab\ProtectService.exe
- PRC - [2015-07-16 05:23:50 | 000,031,928 | ---- | M] (SearchProtect) -- C:\Program Files (x86)\MiuiTab\cmdshell.exe
- PRC - [2015-07-04 14:04:14 | 000,377,000 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
- PRC - [2015-06-18 20:43:48 | 001,994,592 | ---- | M] (BitTorrent Inc.) -- C:\Users\Kucyk\AppData\Roaming\uTorrent\uTorrent.exe
- PRC - [2015-06-18 20:29:04 | 000,568,904 | ---- | M] () -- C:\Program Files (x86)\puush\puush.exe
- PRC - [2015-04-30 13:45:34 | 001,058,352 | ---- | M] (Oracle Corporation) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
- PRC - [2015-02-17 13:00:10 | 000,270,368 | ---- | M] (SoftBrain Technologies Ltd.) -- C:\Users\Kucyk\AppData\Local\SmartWeb\SmartWebHelper.exe
- PRC - [2015-02-17 13:00:06 | 000,557,088 | ---- | M] (SoftBrain Technologies Ltd.) -- C:\Users\Kucyk\AppData\Local\SmartWeb\SmartWebApp.exe
- PRC - [2014-03-20 11:43:04 | 000,398,296 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- PRC - [2014-03-20 11:43:02 | 000,154,584 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- PRC - [2014-02-21 07:56:54 | 000,292,848 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
- PRC - [2013-10-24 00:39:14 | 001,017,224 | ---- | M] (Flux Software LLC) -- C:\Users\Kucyk\AppData\Local\FluxSoftware\Flux\flux.exe
- PRC - [2010-01-21 04:34:06 | 016,405,736 | ---- | M] (BioWare) -- C:\Program Files (x86)\Mass Effect 2\Binaries\MassEffect2.exe
- [color=#E56717]========== Modules (No Company Name) ==========[/color]
- MOD - [2015-07-17 11:57:06 | 003,286,672 | ---- | M] () -- C:\Users\Kucyk\AppData\Local\gmsd_pl_005010034\upgmsd_pl_005010034.exe
- MOD - [2015-07-17 11:57:00 | 003,981,968 | ---- | M] () -- C:\Program Files (x86)\gmsd_pl_005010034\gmsd_pl_005010034.exe
- MOD - [2015-06-18 20:29:04 | 000,568,904 | ---- | M] () -- C:\Program Files (x86)\puush\puush.exe
- MOD - [2015-06-18 19:54:42 | 012,438,016 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6949c4470a81970ec3de0a575d93babc\System.Windows.Forms.ni.dll
- MOD - [2015-06-18 19:54:38 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5a401fd2a7689ff13fb54182953f9c40\System.Drawing.ni.dll
- MOD - [2015-06-18 19:54:37 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\007fc007edc388d9806dff94ee04f129\System.Configuration.ni.dll
- MOD - [2015-06-18 15:28:01 | 000,774,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\0967cf5c31691f38d013263304d2dacb\System.Runtime.Remoting.ni.dll
- MOD - [2015-06-18 15:27:41 | 005,467,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
- MOD - [2015-06-18 15:27:38 | 007,991,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
- MOD - [2015-06-18 15:27:35 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
- MOD - [2015-04-17 20:26:21 | 000,311,296 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll
- MOD - [2009-10-29 15:07:34 | 000,197,912 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common\physxcudart_20.dll
- MOD - [2009-08-25 17:34:48 | 000,166,992 | ---- | M] () -- C:\Program Files (x86)\Mass Effect 2\Binaries\PhysXExtensions.dll
- MOD - [2008-08-20 10:28:46 | 000,167,936 | ---- | M] () -- C:\Program Files (x86)\Mass Effect 2\Binaries\cudart.dll
- [color=#E56717]========== Services (SafeList) ==========[/color]
- SRV:[b]64bit:[/b] - [2015-07-09 13:26:22 | 000,376,832 | ---- | M] (DownChecker) [Auto | Running] -- C:\Program Files\DownChecker\dchecker.exe -- (DownChecker)
- SRV:[b]64bit:[/b] - [2015-06-20 21:34:46 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
- SRV:[b]64bit:[/b] - [2015-06-18 14:57:18 | 001,268,568 | ---- | M] (Disc Soft Ltd) [On_Demand | Running] -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe -- (Disc Soft Lite Bus Service)
- SRV:[b]64bit:[/b] - [2015-05-25 20:19:13 | 001,255,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
- SRV:[b]64bit:[/b] - [2015-04-17 20:36:41 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
- SRV:[b]64bit:[/b] - [2014-11-21 04:12:40 | 000,244,736 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
- SRV:[b]64bit:[/b] - [2013-08-27 14:32:30 | 000,828,376 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
- SRV:[b]64bit:[/b] - [2013-08-27 14:32:14 | 000,747,520 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
- SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
- SRV:[b]64bit:[/b] - [2000-01-01 02:00:00 | 000,328,296 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService1.0.0.0)
- SRV - [2015-07-19 11:57:40 | 000,707,240 | ---- | M] (DTools LIMITED) [Auto | Running] -- C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -- (WindowsMangerProtect)
- SRV - [2015-07-19 09:47:40 | 000,165,376 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\03AA02FC-1437292032-05AC-A006-640700080009\hnso581F.tmp -- (vicoqudu)
- SRV - [2015-07-19 09:47:33 | 000,199,168 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\03AA02FC-1437292032-05AC-A006-640700080009\jnsy38AB.tmp -- (zejytose)
- SRV - [2015-07-19 09:22:24 | 000,613,888 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\03AA02FC-1437292032-05AC-A006-640700080009\knso12ED.tmpfs -- (gefokowe)
- SRV - [2015-07-16 05:23:52 | 000,125,112 | ---- | M] (XTab system) [Auto | Running] -- C:\Program Files (x86)\MiuiTab\ProtectService.exe -- (IHProtect Service)
- SRV - [2015-07-15 07:06:29 | 000,268,976 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
- SRV - [2015-07-04 14:04:14 | 000,148,136 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
- SRV - [2015-04-17 20:43:43 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
- SRV - [2014-03-20 11:43:04 | 000,398,296 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
- SRV - [2014-03-20 11:43:02 | 000,154,584 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
- SRV - [2012-07-09 00:40:10 | 000,104,912 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
- SRV - [2000-01-01 02:00:00 | 000,279,144 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
- [color=#E56717]========== Driver Services (SafeList) ==========[/color]
- DRV:[b]64bit:[/b] - [2015-06-19 16:09:51 | 000,030,264 | ---- | M] (Disc Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtlitescsibus.sys -- (dtlitescsibus)
- DRV:[b]64bit:[/b] - [2015-04-17 21:00:29 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
- DRV:[b]64bit:[/b] - [2015-04-17 21:00:29 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
- DRV:[b]64bit:[/b] - [2015-04-17 20:34:59 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
- DRV:[b]64bit:[/b] - [2015-04-17 20:34:59 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
- DRV:[b]64bit:[/b] - [2015-04-17 20:27:28 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
- DRV:[b]64bit:[/b] - [2015-04-17 20:25:45 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
- DRV:[b]64bit:[/b] - [2015-04-17 20:25:45 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
- DRV:[b]64bit:[/b] - [2014-12-21 05:37:40 | 000,094,720 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
- DRV:[b]64bit:[/b] - [2014-11-21 04:40:00 | 018,959,360 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
- DRV:[b]64bit:[/b] - [2014-11-21 04:08:54 | 000,589,312 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
- DRV:[b]64bit:[/b] - [2014-06-17 14:13:54 | 000,941,272 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
- DRV:[b]64bit:[/b] - [2014-03-20 11:43:02 | 000,118,272 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
- DRV:[b]64bit:[/b] - [2014-02-21 07:56:18 | 000,020,464 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
- DRV:[b]64bit:[/b] - [2014-02-21 07:56:14 | 000,791,024 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
- DRV:[b]64bit:[/b] - [2014-02-21 07:56:14 | 000,370,672 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
- DRV:[b]64bit:[/b] - [2012-09-01 01:00:02 | 000,032,400 | ---- | M] (Realtek Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtVlan620.sys -- (RTVLANPT)
- DRV:[b]64bit:[/b] - [2012-07-03 14:32:00 | 000,058,512 | ---- | M] (Realtek Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtTeam620.sys -- (RTTEAMPT)
- DRV:[b]64bit:[/b] - [2011-06-15 15:11:20 | 000,032,544 | ---- | M] (Realtek ) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\RtNdPt60.sys -- (RtNdPt60)
- DRV:[b]64bit:[/b] - [2010-11-21 05:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
- DRV:[b]64bit:[/b] - [2010-11-21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
- DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
- DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
- DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
- DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
- DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
- DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
- DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
- DRV:[b]64bit:[/b] - [2000-01-01 02:00:00 | 004,761,016 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
- DRV:[b]64bit:[/b] - [2000-01-01 02:00:00 | 000,455,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
- DRV:[b]64bit:[/b] - [2000-01-01 02:00:00 | 000,031,472 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys -- (SmbDrvI)
- DRV:[b]64bit:[/b] - [2000-01-01 02:00:00 | 000,010,368 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\whfltr2k.sys -- (whfltr2k)
- DRV - [2010-03-31 00:00:00 | 000,026,784 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 -- (EverestDriver)
- DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
- [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
- [color=#E56717]========== Internet Explorer ==========[/color]
- IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM
- IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&q={searchTerms}
- IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&q={searchTerms}
- IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&q={searchTerms}
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&q={searchTerms}
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM
- IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pl-PL
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = F5 B8 A2 BC 34 AC D0 01 [binary data]
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\..\SearchScopes,DefaultScope = {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.istartsurf.com/web/?utm_source=b&utm_medium=face&utm_campaign=install_ie&utm_content=ds&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&ts=1437299870&type=default&q={searchTerms}
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\..\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}: "URL" = http://www.istartsurf.com/web/?utm_source=b&utm_medium=face&utm_campaign=install_ie&utm_content=ds&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&ts=1437299870&type=default&q={searchTerms}
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.istartsurf.com/web/?utm_source=b&utm_medium=face&utm_campaign=install_ie&utm_content=ds&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&ts=1437299870&type=default&q={searchTerms}
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\..\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}: "URL" = http://www.istartsurf.com/web/?utm_source=b&utm_medium=face&utm_campaign=install_ie&utm_content=ds&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&ts=1437299870&type=default&q={searchTerms}
- IE - HKU\S-1-5-21-414230462-2627049162-3180225127-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- [color=#E56717]========== FireFox ==========[/color]
- FF - prefs.js..browser.search.countryCode: "PL"
- FF - prefs.js..browser.search.defaultenginename: "istartsurf"
- FF - prefs.js..browser.search.region: "PL"
- FF - prefs.js..browser.search.searchengine.alias: "istartsurf"
- FF - prefs.js..browser.search.searchengine.desc: "this is my first firefox searchEngine"
- FF - prefs.js..browser.search.searchengine.iconURL: "http://www.istartsurf.com/favicon.ico"
- FF - prefs.js..browser.search.searchengine.name: "istartsurf"
- FF - prefs.js..browser.search.searchengine.ptid: "face"
- FF - prefs.js..browser.search.searchengine.uid: "ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM"
- FF - prefs.js..browser.search.searchengine.url: "http://www.istartsurf.com/web/?type=ds&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM&q={searchTerms}"
- FF - prefs.js..browser.search.selectedEngine: "istartsurf"
- FF - prefs.js..browser.search.useDBForOrder: true
- FF - prefs.js..browser.startup.homepage: "http://www.istartsurf.com/?type=hp&ts=1437299826&z=f89d1ac5401380eefc81787g5z0ccmao9t3t0m9tab&from=face&uid=ST500DM002-1BD142_Z6EARCHMXXXXZ6EARCHM"
- FF - prefs.js..extensions.enabledAddons: defsearchp%40gmail.com:1.0.0.1039
- FF - prefs.js..extensions.enabledAddons: deskCutv2%40gmail.com:0.0.10
- FF - prefs.js..extensions.enabledAddons: magit%40magit.com:1.0
- FF - prefs.js..extensions.enabledAddons: veggy%40veggyAddon.com:2.107529
- FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:39.0
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll File not found
- FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll ()
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.45.2: C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
- FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2: C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll (Oracle Corporation)
- FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\defsearchp@gmail.com: C:\Users\Kucyk\AppData\Roaming\Mozilla\Firefox\Profiles\1bd1gq3y.default\extensions\defsearchp@gmail.com [2015-07-19 09:54:18 | 000,000,000 | ---D | M]
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\deskCutv2@gmail.com: C:\Users\Kucyk\AppData\Roaming\Mozilla\Firefox\Profiles\1bd1gq3y.default\extensions\deskCutv2@gmail.com [2015-07-19 09:54:26 | 000,000,000 | ---D | M]
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 39.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 39.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
- FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 39.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
- FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 39.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
- [2015-06-18 16:57:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kucyk\AppData\Roaming\mozilla\Extensions
- [2015-07-19 11:57:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kucyk\AppData\Roaming\mozilla\Firefox\Profiles\1bd1gq3y.default\extensions
- [2015-07-19 09:54:18 | 000,000,000 | ---D | M] (Default SearchProtected) -- C:\Users\Kucyk\AppData\Roaming\mozilla\Firefox\Profiles\1bd1gq3y.default\extensions\defsearchp@gmail.com
- [2015-07-19 09:54:26 | 000,000,000 | ---D | M] ("deskCut") -- C:\Users\Kucyk\AppData\Roaming\mozilla\Firefox\Profiles\1bd1gq3y.default\extensions\deskCutv2@gmail.com
- [2015-07-19 10:06:07 | 000,000,000 | ---D | M] ("Magnify It") -- C:\Users\Kucyk\AppData\Roaming\mozilla\Firefox\Profiles\1bd1gq3y.default\extensions\magit@magit.com
- [2015-07-19 11:57:08 | 000,000,000 | ---D | M] ("Mozilla Firefox Hotfixer") -- C:\Users\Kucyk\AppData\Roaming\mozilla\Firefox\Profiles\1bd1gq3y.default\extensions\veggy@veggyAddon.com
- [2015-07-14 16:01:04 | 005,858,186 | ---- | M] () (No name found) -- C:\Users\Kucyk\AppData\Roaming\mozilla\firefox\profiles\1bd1gq3y.default\extensions\firefox@mega.co.nz.xpi
- [2015-07-08 05:28:58 | 000,083,484 | ---- | M] () (No name found) -- C:\Users\Kucyk\AppData\Roaming\mozilla\firefox\profiles\1bd1gq3y.default\extensions\jid1-7NbXi2AqS1oUFw@jetpack.xpi
- [2015-06-18 20:30:11 | 000,946,636 | ---- | M] () (No name found) -- C:\Users\Kucyk\AppData\Roaming\mozilla\firefox\profiles\1bd1gq3y.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
- [2015-06-21 20:19:38 | 000,067,226 | ---- | M] () (No name found) -- C:\Users\Kucyk\AppData\Roaming\mozilla\firefox\profiles\1bd1gq3y.default\extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi
- [2015-07-19 11:57:12 | 000,002,124 | ---- | M] () -- C:\Users\Kucyk\AppData\Roaming\mozilla\firefox\profiles\1bd1gq3y.default\searchplugins\istartsurf.xml
- [2015-07-19 11:27:00 | 000,005,816 | ---- | M] () -- C:\Users\Kucyk\AppData\Roaming\mozilla\firefox\profiles\1bd1gq3y.default\searchplugins\webssearches.xml
- [2015-07-04 14:04:09 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
- [2015-07-04 14:04:14 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- O1 HOSTS File: ([2015-07-19 10:38:56 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
- O2 - BHO: (GoodTab Class) - {1F91A9A1-01BA-4c81-863D-3BA0751E1419} - C:\Program Files (x86)\MiuiTab\SupTab.dll (Thinkgood Co. Limited)
- O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll (Oracle Corporation)
- O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll (Oracle Corporation)
- O4:[b]64bit:[/b] - HKLM..\Run: [cpuminer] C:\Windows\system32\cpuminer-gw64.exe File not found
- O4:[b]64bit:[/b] - HKLM..\Run: [gpuminer] C:\Users\Kucyk\AppData\Roaming\cpuminer\sgminer\sgminer.cmd File not found
- O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
- O4 - HKLM..\Run: [gmsd_pl_005010034] C:\Program Files (x86)\gmsd_pl_005010034\gmsd_pl_005010034.exe ()
- O4 - HKLM..\Run: [SmartWeb] C:\Users\Kucyk\AppData\Local\SmartWeb\SmartWebHelper.exe (SoftBrain Technologies Ltd.)
- O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe (Advanced Micro Devices, Inc.)
- O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
- O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
- O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
- O4 - HKU\S-1-5-21-414230462-2627049162-3180225127-1000..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
- O4 - HKU\S-1-5-21-414230462-2627049162-3180225127-1000..\Run: [DAEMON Tools Lite Automount] C:\Program Files\DAEMON Tools Lite\DTAgent.exe (Disc Soft Ltd)
- O4 - HKU\S-1-5-21-414230462-2627049162-3180225127-1000..\Run: [f.lux] C:\Users\Kucyk\AppData\Local\FluxSoftware\Flux\flux.exe (Flux Software LLC)
- O4 - HKU\S-1-5-21-414230462-2627049162-3180225127-1000..\Run: [puush] C:\Program Files (x86)\puush\puush.exe ()
- O4 - HKU\S-1-5-21-414230462-2627049162-3180225127-1000..\Run: [uTorrent] C:\Users\Kucyk\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
- O4 - HKLM..\RunOnce: [upgmsd_pl_005010034.exe] C:\Users\Kucyk\AppData\Local\gmsd_pl_005010034\upgmsd_pl_005010034.exe ()
- O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
- O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
- O4 - Startup: C:\Users\Kucyk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk = C:\Users\Kucyk\AppData\Local\SmartWeb\SmartWebHelper.exe (SoftBrain Technologies Ltd.)
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
- O13[b]64bit:[/b] - gopher Prefix: missing
- O13 - gopher Prefix: missing
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{50F6A89F-EE10-4BFA-9ED5-D62DDD80B2C9}: DhcpNameServer = 192.168.1.1 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{50F6A89F-EE10-4BFA-9ED5-D62DDD80B2C9}: NameServer = 52.18.92.32,8.8.8.8
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{846ee342-7039-11de-9d20-806e6f6e6963}: NameServer = 52.18.92.32,8.8.8.8
- O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
- O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O32 - HKLM CDRom: AutoRun - 1
- O33 - MountPoints2\{c91d2034-15f4-11e5-aedb-fcaa14aca064}\Shell - "" = AutoRun
- O33 - MountPoints2\{c91d2034-15f4-11e5-aedb-fcaa14aca064}\Shell\AutoRun\command - "" = D:\Setup.exe
- O33 - MountPoints2\D\Shell - "" = AutoRun
- O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\Setup.exe
- O34 - HKLM BootExecute: (autocheck autochk *)
- O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
- O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
- O35 - HKLM\..comfile [open] -- "%1" %*
- O35 - HKLM\..exefile [open] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
- O37 - HKLM\...com [@ = comfile] -- "%1" %*
- O37 - HKLM\...exe [@ = exefile] -- "%1" %*
- O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
- O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
- O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
- [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
- [2015-07-19 11:59:17 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
- [2015-07-19 11:58:21 | 000,000,000 | -HSD | C] -- C:\Users\Kucyk\AppData\Roaming\AnyProtectEx
- [2015-07-19 11:58:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AnyProtectEx
- [2015-07-19 11:57:51 | 000,000,000 | ---D | C] -- C:\ProgramData\IHProtectUpDate
- [2015-07-19 11:57:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MiuiTab
- [2015-07-19 11:57:40 | 000,000,000 | ---D | C] -- C:\ProgramData\WindowsMangerProtect
- [2015-07-19 11:57:38 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\gmsd_pl_005010034
- [2015-07-19 11:57:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\gmsd_pl_005010034
- [2015-07-19 11:57:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP
- [2015-07-19 11:57:07 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\istartsurf
- [2015-07-19 11:57:00 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\SmartWeb
- [2015-07-19 11:22:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FriendlyError
- [2015-07-19 10:38:25 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\Desktop\MBR Regenerator v4.5
- [2015-07-19 10:24:22 | 000,000,000 | ---D | C] -- C:\AdwCleaner
- [2015-07-19 10:22:48 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Kucyk\Desktop\OTL.exe
- [2015-07-19 10:18:39 | 000,000,000 | ---D | C] -- C:\Program Files\DownChecker
- [2015-07-19 10:18:18 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\Chromium
- [2015-07-19 10:12:58 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Quick Access
- [2015-07-19 10:12:15 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Flash
- [2015-07-19 10:11:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
- [2015-07-19 10:11:26 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
- [2015-07-19 09:47:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\03AA02FC-1437292032-05AC-A006-640700080009
- [2015-07-19 09:46:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Loader
- [2015-07-15 03:18:14 | 000,254,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cewmdm.dll
- [2015-07-15 03:18:14 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cewmdm.dll
- [2015-07-15 03:18:14 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
- [2015-07-15 03:18:14 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
- [2015-07-15 03:18:14 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
- [2015-07-15 03:18:14 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
- [2015-07-15 03:18:13 | 003,154,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
- [2015-07-15 03:18:13 | 000,696,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
- [2015-07-15 03:18:13 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
- [2015-07-15 03:18:13 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
- [2015-07-15 03:18:13 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
- [2015-07-15 03:18:13 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
- [2015-07-15 03:18:13 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSetupUI.dll
- [2015-07-15 03:18:13 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
- [2015-07-15 03:18:13 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
- [2015-07-15 03:18:13 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
- [2015-07-15 03:18:13 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wu.upgrade.ps.dll
- [2015-07-15 03:18:05 | 003,180,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
- [2015-07-15 03:18:05 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RdpGroupPolicyExtension.dll
- [2015-07-15 03:18:03 | 005,923,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
- [2015-07-15 03:18:03 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
- [2015-07-15 03:18:03 | 000,404,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
- [2015-07-15 03:18:02 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
- [2015-07-15 03:17:52 | 000,479,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
- [2015-07-15 03:17:51 | 000,615,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
- [2015-07-15 03:16:28 | 000,720,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
- [2015-07-15 03:16:28 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
- [2015-07-15 03:16:28 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
- [2015-07-15 03:16:28 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
- [2015-07-15 03:16:28 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
- [2015-07-15 03:16:28 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
- [2015-07-15 03:16:28 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
- [2015-07-15 03:16:28 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
- [2015-07-15 03:16:28 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
- [2015-07-15 03:16:28 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
- [2015-07-15 03:16:27 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
- [2015-07-15 03:16:27 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
- [2015-07-15 03:16:27 | 000,664,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
- [2015-07-15 03:16:27 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
- [2015-07-15 03:16:27 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
- [2015-07-15 03:16:26 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
- [2015-07-15 03:16:26 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
- [2015-07-15 03:16:26 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
- [2015-07-15 03:16:26 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
- [2015-07-15 03:16:26 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
- [2015-07-15 03:16:26 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
- [2015-07-15 03:16:26 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
- [2015-07-15 03:16:25 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
- [2015-07-15 03:16:25 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
- [2015-07-15 03:16:25 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
- [2015-07-15 03:16:25 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
- [2015-07-15 03:16:25 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
- [2015-07-15 03:16:25 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
- [2015-07-15 03:16:24 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
- [2015-07-15 03:16:24 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
- [2015-07-15 03:16:24 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
- [2015-07-15 03:16:23 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
- [2015-07-15 03:16:23 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
- [2015-07-15 03:16:23 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
- [2015-07-15 03:14:11 | 007,077,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
- [2015-07-15 03:14:11 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
- [2015-07-15 03:14:10 | 006,131,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
- [2015-07-15 03:14:10 | 001,057,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdvidcrl.dll
- [2015-07-15 03:14:10 | 000,856,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvidcrl.dll
- [2015-07-15 03:14:10 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
- [2015-07-15 03:14:10 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
- [2015-07-15 03:14:09 | 002,087,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ole32.dll
- [2015-07-15 03:14:07 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
- [2015-07-15 03:14:07 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
- [2015-07-15 03:14:07 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
- [2015-07-15 03:13:55 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
- [2015-07-15 03:13:55 | 001,216,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
- [2015-07-15 03:13:54 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
- [2015-07-15 03:13:54 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
- [2015-07-15 03:13:54 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
- [2015-07-15 03:13:54 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
- [2015-07-15 03:13:54 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
- [2015-07-15 03:13:54 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
- [2015-07-15 03:13:54 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
- [2015-07-15 03:13:54 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
- [2015-07-15 03:13:54 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
- [2015-07-15 03:13:54 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
- [2015-07-15 03:13:54 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptbase.dll
- [2015-07-15 03:13:54 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
- [2015-07-15 03:13:54 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
- [2015-07-15 03:13:39 | 003,242,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
- [2015-07-15 03:13:39 | 001,941,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
- [2015-07-15 03:13:39 | 001,805,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
- [2015-07-15 03:13:39 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msihnd.dll
- [2015-07-15 03:13:39 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
- [2015-07-15 03:13:39 | 000,112,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
- [2015-07-15 03:13:39 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msimsg.dll
- [2015-07-15 03:13:39 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msimsg.dll
- [2015-07-15 03:13:27 | 001,085,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
- [2015-07-15 03:13:26 | 001,145,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
- [2015-07-15 03:13:26 | 000,765,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
- [2015-07-15 03:13:26 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
- [2015-07-15 03:13:26 | 000,433,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
- [2015-07-15 03:13:26 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
- [2015-07-15 03:13:26 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acmigration.dll
- [2015-07-15 03:13:26 | 000,017,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CompatTelRunner.exe
- [2015-07-15 03:13:25 | 000,372,224 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
- [2015-07-15 03:13:25 | 000,299,008 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
- [2015-07-15 03:13:25 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
- [2015-07-15 03:13:25 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
- [2015-07-15 03:13:25 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
- [2015-07-15 03:13:25 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
- [2015-07-15 03:13:25 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
- [2015-07-15 03:13:25 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
- [2015-07-09 21:06:29 | 018,524,336 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
- [2015-07-09 06:29:30 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\Opera Software
- [2015-07-09 06:29:30 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\Opera Software
- [2015-07-09 06:28:42 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\CDisplayEx
- [2015-07-09 06:28:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
- [2015-07-09 06:28:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDisplayEx
- [2015-07-09 06:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\CDisplayEx
- [2015-07-09 06:24:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDisplay
- [2015-07-09 06:24:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CDisplay
- [2015-07-09 05:30:54 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\Desktop\manga
- [2015-07-09 05:20:44 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MangaRipper
- [2015-07-09 05:20:32 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\Deployment
- [2015-07-09 05:20:32 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\Apps
- [2015-07-04 17:11:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation
- [2015-07-04 17:11:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
- [2015-07-04 17:11:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
- [2015-07-04 17:10:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\BioWare
- [2015-07-04 16:56:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mass Effect 2
- [2015-07-04 14:04:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
- [2015-07-03 13:11:20 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
- [2015-06-27 19:31:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy GIF Animator
- [2015-06-27 19:31:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Easy GIF Animator
- [2015-06-27 19:28:32 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\gtk-2.0
- [2015-06-27 19:27:42 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\.thumbnails
- [2015-06-27 19:25:12 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\fontconfig
- [2015-06-27 19:25:11 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\gegl-0.2
- [2015-06-27 19:25:11 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\.gimp-2.8
- [2015-06-27 19:21:38 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP 2
- [2015-06-24 13:14:04 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\Desktop\PIKERS-ŚPIESZ SIĘ MNIE KOCHAĆ MIXTAPE 2015
- [2015-06-21 17:03:10 | 000,778,416 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
- [2015-06-21 17:03:10 | 000,142,512 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
- [2015-06-21 17:01:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
- [2015-06-21 17:01:09 | 000,097,888 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
- [2015-06-21 17:00:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
- [2015-06-21 17:00:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
- [2015-06-21 17:00:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
- [2015-06-21 16:52:26 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
- [2015-06-21 04:02:48 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt
- [2015-06-20 03:19:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Damian Pasternak
- [2015-06-19 22:10:48 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\TS3Client
- [2015-06-19 22:10:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
- [2015-06-19 22:10:46 | 000,000,000 | ---D | C] -- C:\Program Files\TeamSpeak 3 Client
- [2015-06-19 18:30:09 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\livestreamer
- [2015-06-19 18:30:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Livestreamer
- [2015-06-19 17:35:33 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\LolClient
- [2015-06-19 16:50:49 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\vlc
- [2015-06-19 16:49:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
- [2015-06-19 16:49:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
- [2015-06-19 16:26:12 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\Documents\BioWare
- [2015-06-19 16:25:27 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx
- [2015-06-19 16:25:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mass Effect
- [2015-06-19 16:13:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGB-GT
- [2015-06-19 16:13:34 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Local\Disc_Soft_Ltd
- [2015-06-19 16:13:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
- [2015-06-19 16:09:51 | 000,030,264 | ---- | C] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtlitescsibus.sys
- [2015-06-19 16:09:51 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\DAEMON Tools Lite
- [2015-06-19 16:09:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
- [2015-06-19 16:09:49 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
- [2015-06-19 16:09:27 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
- [2015-06-19 14:57:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Riot Games
- [2015-06-19 14:42:14 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_39.dll
- [2015-06-19 14:42:14 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_39.dll
- [2015-06-19 14:42:11 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_39.dll
- [2015-06-19 14:41:39 | 000,000,000 | ---D | C] -- C:\Riot Games
- [2015-06-19 14:38:42 | 000,000,000 | ---D | C] -- C:\Users\Kucyk\AppData\Roaming\Riot Games
- [2 C:\Users\Kucyk\AppData\Local\*.tmp files -> C:\Users\Kucyk\AppData\Local\*.tmp -> ]
- [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
- [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
- [2015-07-19 11:59:27 | 000,000,376 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP3.job
- [2015-07-19 11:59:26 | 000,000,378 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP1.job
- [2015-07-19 11:59:26 | 000,000,376 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP2.job
- [2015-07-19 11:59:17 | 000,001,045 | ---- | M] () -- C:\Users\Kucyk\Desktop\AnyProtect.lnk
- [2015-07-19 11:57:07 | 000,001,276 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
- [2015-07-19 11:57:07 | 000,001,265 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
- [2015-07-19 11:57:00 | 000,001,058 | ---- | M] () -- C:\Users\Kucyk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk
- [2015-07-19 11:25:57 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
- [2015-07-19 11:25:52 | 3135,516,672 | -HS- | M] () -- C:\hiberfil.sys
- [2015-07-19 11:25:24 | 000,016,656 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- [2015-07-19 11:25:24 | 000,016,656 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- [2015-07-19 11:24:30 | 002,248,704 | ---- | M] () -- C:\Users\Kucyk\Desktop\adwcleaner_4.208.exe
- [2015-07-19 11:23:06 | 000,000,000 | ---- | M] () -- C:\Windows\prleth.sys
- [2015-07-19 11:23:06 | 000,000,000 | ---- | M] () -- C:\Windows\hgfs.sys
- [2015-07-19 11:05:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
- [2015-07-19 10:38:56 | 000,000,824 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
- [2015-07-19 10:38:20 | 001,046,170 | ---- | M] () -- C:\Users\Kucyk\Desktop\MBR Regenerator v4.5.rar
- [2015-07-19 10:25:59 | 000,000,352 | ---- | M] () -- C:\Windows\tasks\Bidaily Synchronize Task[973b].job
- [2015-07-19 10:22:49 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Kucyk\Desktop\OTL.exe
- [2015-07-19 10:17:51 | 000,000,004 | ---- | M] () -- C:\Windows\SysWow64\029B560A371F4E00AB32838EBC01B9E7
- [2015-07-19 10:11:27 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
- [2015-07-16 12:49:57 | 057,078,416 | ---- | M] () -- C:\Users\Kucyk\Desktop\2012-02-11_-331782835.rar
- [2015-07-16 03:24:28 | 000,267,360 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
- [2015-07-15 07:06:29 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
- [2015-07-15 07:06:29 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
- [2015-07-15 07:06:25 | 018,524,336 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
- [2015-07-13 05:31:29 | 000,000,880 | ---- | M] () -- C:\Users\Kucyk\Desktop\CDisplayEx.lnk
- [2015-07-12 14:39:32 | 000,002,920 | ---- | M] () -- C:\Users\Kucyk\AppData\Local\recently-used.xbel
- [2015-07-09 19:59:59 | 000,017,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\CompatTelRunner.exe
- [2015-07-09 19:58:56 | 000,192,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
- [2015-07-09 19:58:56 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
- [2015-07-09 19:58:56 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
- [2015-07-09 19:58:55 | 003,154,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
- [2015-07-09 19:58:55 | 000,696,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
- [2015-07-09 19:58:55 | 000,098,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
- [2015-07-09 19:58:41 | 000,726,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
- [2015-07-09 19:58:34 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WinSetupUI.dll
- [2015-07-09 19:58:31 | 000,765,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
- [2015-07-09 19:58:26 | 000,433,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
- [2015-07-09 19:58:25 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wu.upgrade.ps.dll
- [2015-07-09 19:58:24 | 001,085,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
- [2015-07-09 19:58:23 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
- [2015-07-09 19:58:23 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\acmigration.dll
- [2015-07-09 19:58:20 | 000,139,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
- [2015-07-09 19:58:20 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
- [2015-07-09 19:50:11 | 001,145,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
- [2015-07-09 19:43:25 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
- [2015-07-09 19:43:25 | 000,093,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
- [2015-07-09 19:43:25 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
- [2015-07-09 19:43:24 | 000,566,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
- [2015-07-09 19:42:47 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
- [2015-07-09 09:27:30 | 001,669,190 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
- [2015-07-09 09:27:30 | 000,740,098 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
- [2015-07-09 09:27:30 | 000,653,930 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
- [2015-07-09 09:27:30 | 000,155,672 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
- [2015-07-09 09:27:30 | 000,121,802 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
- [2015-07-09 06:24:52 | 000,000,943 | ---- | M] () -- C:\Users\Kucyk\Desktop\CDisplay.lnk
- [2015-07-09 05:20:44 | 000,000,352 | ---- | M] () -- C:\Users\Kucyk\Desktop\MangaRipper.appref-ms
- [2015-07-09 05:20:29 | 000,002,246 | ---- | M] () -- C:\Users\Kucyk\Desktop\MangaRipper.application
- [2015-07-04 20:07:11 | 002,087,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ole32.dll
- [2015-07-04 17:11:21 | 000,001,097 | ---- | M] () -- C:\Users\Kucyk\Desktop\Mass Effect 2.lnk
- [2015-07-03 20:05:54 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
- [2015-07-03 20:05:43 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
- [2015-07-03 20:05:34 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
- [2015-07-03 20:05:26 | 000,046,080 | ---- | M] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
- [2015-07-03 19:56:59 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
- [2015-07-03 19:56:52 | 000,034,304 | ---- | M] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
- [2015-07-03 18:52:31 | 000,372,224 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
- [2015-07-03 18:42:38 | 000,299,008 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
- [2015-07-03 04:07:51 | 000,469,156 | ---- | M] () -- C:\Users\Kucyk\Desktop\1434930028407862101.webm
- [2015-07-02 22:46:34 | 000,479,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
- [2015-07-02 22:12:26 | 000,615,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
- [2015-07-01 22:49:45 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
- [2015-07-01 22:49:45 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
- [2015-07-01 22:49:42 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
- [2015-07-01 22:49:41 | 001,216,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
- [2015-07-01 22:49:23 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
- [2015-07-01 22:49:11 | 001,461,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
- [2015-07-01 22:48:34 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\cryptbase.dll
- [2015-07-01 22:47:18 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
- [2015-07-01 22:43:51 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
- [2015-07-01 22:43:37 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
- [2015-07-01 22:39:24 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
- [2015-07-01 22:29:46 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
- [2015-07-01 22:27:04 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
- [2015-07-01 22:26:52 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
- [2015-07-01 22:24:59 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
- [2015-06-27 19:31:47 | 000,001,051 | ---- | M] () -- C:\Users\Kucyk\Desktop\Easy GIF Animator.lnk
- [2015-06-27 04:47:11 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
- [2015-06-27 04:43:26 | 005,923,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
- [2015-06-27 03:58:17 | 000,620,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
- [2015-06-21 17:44:08 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
- [2015-06-21 17:00:56 | 000,097,888 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
- [2015-06-20 22:06:50 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
- [2015-06-20 21:50:10 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
- [2015-06-20 21:49:17 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
- [2015-06-20 21:49:09 | 000,417,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
- [2015-06-20 21:49:08 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
- [2015-06-20 21:48:29 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
- [2015-06-20 21:39:43 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
- [2015-06-20 21:34:46 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
- [2015-06-20 21:34:45 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
- [2015-06-20 21:34:42 | 000,816,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
- [2015-06-20 21:25:28 | 000,968,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
- [2015-06-20 21:21:39 | 000,490,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
- [2015-06-20 21:13:07 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
- [2015-06-20 21:08:16 | 000,199,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
- [2015-06-20 21:07:37 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
- [2015-06-20 21:05:03 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
- [2015-06-20 20:48:40 | 000,720,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
- [2015-06-20 20:48:26 | 000,801,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
- [2015-06-20 20:46:53 | 001,359,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
- [2015-06-20 20:46:48 | 002,125,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
- [2015-06-20 20:02:50 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
- [2015-06-20 03:19:01 | 000,001,192 | ---- | M] () -- C:\Users\Public\Desktop\CWK.lnk
- [2015-06-20 03:12:41 | 001,640,180 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
- [2015-06-19 22:10:46 | 000,000,967 | ---- | M] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
- [2015-06-19 20:25:35 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
- [2015-06-19 20:24:43 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
- [2015-06-19 20:24:27 | 000,341,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
- [2015-06-19 20:23:26 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
- [2015-06-19 20:16:51 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
- [2015-06-19 20:13:15 | 000,664,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
- [2015-06-19 20:13:10 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
- [2015-06-19 19:57:45 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
- [2015-06-19 19:53:49 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
- [2015-06-19 19:52:57 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
- [2015-06-19 19:40:04 | 002,052,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
- [2015-06-19 19:39:13 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
- [2015-06-19 19:11:02 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
- [2015-06-19 16:49:13 | 000,001,066 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
- [2015-06-19 16:25:27 | 000,001,318 | ---- | M] () -- C:\Users\Public\Desktop\Mass Effect.lnk
- [2015-06-19 16:09:51 | 000,030,264 | ---- | M] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtlitescsibus.sys
- [2015-06-19 16:09:51 | 000,001,773 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
- [2015-06-19 14:41:39 | 000,001,613 | ---- | M] () -- C:\Users\Public\Desktop\League of Legends.lnk
- [2 C:\Users\Kucyk\AppData\Local\*.tmp files -> C:\Users\Kucyk\AppData\Local\*.tmp -> ]
- [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
- [color=#E56717]========== Files Created - No Company Name ==========[/color]
- [2015-07-19 11:59:19 | 000,000,376 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP3.job
- [2015-07-19 11:59:18 | 000,000,378 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP1.job
- [2015-07-19 11:59:18 | 000,000,376 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP2.job
- [2015-07-19 11:59:17 | 000,001,045 | ---- | C] () -- C:\Users\Kucyk\Desktop\AnyProtect.lnk
- [2015-07-19 11:57:00 | 000,001,058 | ---- | C] () -- C:\Users\Kucyk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk
- [2015-07-19 11:24:30 | 002,248,704 | ---- | C] () -- C:\Users\Kucyk\Desktop\adwcleaner_4.208.exe
- [2015-07-19 11:23:06 | 000,000,000 | ---- | C] () -- C:\Windows\prleth.sys
- [2015-07-19 11:23:06 | 000,000,000 | ---- | C] () -- C:\Windows\hgfs.sys
- [2015-07-19 10:38:20 | 001,046,170 | ---- | C] () -- C:\Users\Kucyk\Desktop\MBR Regenerator v4.5.rar
- [2015-07-19 10:19:05 | 000,000,352 | ---- | C] () -- C:\Windows\tasks\Bidaily Synchronize Task[973b].job
- [2015-07-19 10:11:27 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
- [2015-07-19 10:08:23 | 000,001,277 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
- [2015-07-19 10:08:23 | 000,001,265 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
- [2015-07-19 09:52:02 | 000,000,004 | ---- | C] () -- C:\Windows\SysWow64\029B560A371F4E00AB32838EBC01B9E7
- [2015-07-16 12:04:09 | 057,078,416 | ---- | C] () -- C:\Users\Kucyk\Desktop\2012-02-11_-331782835.rar
- [2015-07-12 14:39:32 | 000,002,920 | ---- | C] () -- C:\Users\Kucyk\AppData\Local\recently-used.xbel
- [2015-07-09 06:29:28 | 000,001,288 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
- [2015-07-09 06:29:28 | 000,001,276 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
- [2015-07-09 06:28:36 | 000,000,880 | ---- | C] () -- C:\Users\Kucyk\Desktop\CDisplayEx.lnk
- [2015-07-09 06:24:52 | 000,000,943 | ---- | C] () -- C:\Users\Kucyk\Desktop\CDisplay.lnk
- [2015-07-09 05:20:44 | 000,000,352 | ---- | C] () -- C:\Users\Kucyk\Desktop\MangaRipper.appref-ms
- [2015-07-09 05:20:29 | 000,002,246 | ---- | C] () -- C:\Users\Kucyk\Desktop\MangaRipper.application
- [2015-07-04 17:11:21 | 000,001,097 | ---- | C] () -- C:\Users\Kucyk\Desktop\Mass Effect 2.lnk
- [2015-07-03 04:07:51 | 000,469,156 | ---- | C] () -- C:\Users\Kucyk\Desktop\1434930028407862101.webm
- [2015-06-27 19:31:47 | 000,001,051 | ---- | C] () -- C:\Users\Kucyk\Desktop\Easy GIF Animator.lnk
- [2015-06-27 19:21:59 | 000,000,894 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
- [2015-06-21 17:44:08 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
- [2015-06-21 17:03:10 | 000,000,930 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
- [2015-06-20 03:19:01 | 000,001,204 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CWK.lnk
- [2015-06-20 03:19:01 | 000,001,192 | ---- | C] () -- C:\Users\Public\Desktop\CWK.lnk
- [2015-06-19 22:10:46 | 000,000,967 | ---- | C] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
- [2015-06-19 16:49:13 | 000,001,066 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
- [2015-06-19 16:25:27 | 000,001,318 | ---- | C] () -- C:\Users\Public\Desktop\Mass Effect.lnk
- [2015-06-19 16:09:51 | 000,001,773 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
- [2015-06-19 14:41:39 | 000,001,613 | ---- | C] () -- C:\Users\Public\Desktop\League of Legends.lnk
- [2015-06-18 17:37:24 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
- [2015-06-18 17:35:23 | 000,186,368 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
- [2015-06-18 17:35:22 | 016,646,824 | ---- | C] () -- C:\Windows\SysWow64\igd11dxva32.dll
- [2015-06-18 17:26:47 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
- [2015-06-18 17:07:40 | 001,640,180 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
- [2014-11-21 04:33:08 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
- [2014-11-21 04:33:08 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
- [2014-11-21 04:16:24 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
- [2014-11-21 04:16:24 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
- [2014-11-20 21:35:00 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
- [2013-08-27 14:00:08 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll
- [color=#E56717]========== ZeroAccess Check ==========[/color]
- [2009-07-14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
- [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
- [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
- [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
- "" = C:\Windows\SysNative\shell32.dll -- [2015-04-17 20:58:35 | 014,177,280 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- "" = %SystemRoot%\system32\shell32.dll -- [2015-04-17 20:58:36 | 012,875,264 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
- "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
- "" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
- "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Both
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
- [color=#E56717]========== LOP Check ==========[/color]
- [2015-07-19 11:58:21 | 000,000,000 | -HSD | M] -- C:\Users\Kucyk\AppData\Roaming\AnyProtectEx
- [2015-07-09 09:23:16 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\CDisplayEx
- [2015-07-19 10:11:58 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\DAEMON Tools Lite
- [2015-07-19 11:57:07 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\istartsurf
- [2015-06-18 17:15:13 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\library_dir
- [2015-06-19 18:31:08 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\livestreamer
- [2015-06-19 17:35:33 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\LolClient
- [2015-06-18 23:43:18 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\MPC-HC
- [2015-07-09 06:29:30 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\Opera Software
- [2015-06-18 20:28:46 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\puush
- [2015-06-19 14:42:26 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\Riot Games
- [2015-07-19 10:11:58 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\TS3Client
- [2015-07-19 12:03:00 | 000,000,000 | ---D | M] -- C:\Users\Kucyk\AppData\Roaming\uTorrent
- [color=#E56717]========== Purity Check ==========[/color]
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement