Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Logfile of random's system information tool 1.10 (written by random/random)
- Run by Alpha at 2016-06-02 09:32:45
- Microsoft Windows 8
- System drive C: has 62 GB (20%) free of 307 GB
- Total RAM: 4094 MB (70% free)
- Logfile of Trend Micro HijackThis v2.0.4
- Scan saved at 09:32:49, on 2016-06-02
- Platform: Unknown Windows (WinNT 6.02.1008)
- MSIE: Internet Explorer v10.0 (10.00.9200.17568)
- Boot mode: Normal
- Running processes:
- D:\Mozilla Firefox 45.0.2\firefox.exe
- C:\Program Files\trend micro\Alpha.exe
- R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
- R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
- R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
- R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
- R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
- R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
- O2 - BHO: (no name) - AutorunsDisabled - (no file)
- O4 - HKCU\..\Run: [CCleaner Monitoring] "D:\CCleaner 5.17.5590\CCleaner64.exe" /MONITOR
- O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
- O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
- O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
- O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
- O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
- O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
- O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
- O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
- O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Users\Public\temp\TeamViewer\TeamViewer_Service.exe
- O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
- O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
- O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
- O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
- O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
- O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
- --
- End of file - 3831 bytes
- ======Listing Processes======
- \SystemRoot\System32\smss.exe
- %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
- wininit.exe
- %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
- winlogon.exe
- C:\Windows\system32\services.exe
- C:\Windows\system32\lsass.exe
- C:\Windows\system32\svchost.exe -k DcomLaunch
- C:\Windows\system32\svchost.exe -k RPCSS
- C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
- C:\Windows\system32\svchost.exe -k netsvcs
- "dwm.exe"
- C:\Windows\system32\svchost.exe -k LocalService
- C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
- C:\Windows\system32\svchost.exe -k NetworkService
- C:\Windows\System32\spoolsv.exe
- C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
- taskhostex.exe
- dashost.exe {4b43d508-573d-436d-a116d3b224be9e7a}
- C:\Windows\slsvc.exe
- C:\Windows\PersonalizeEnabler.exe
- C:\Windows\system32\svchost.exe -k imgsvc
- "C:\Users\Public\temp\TeamViewer\TeamViewer_Service.exe"
- C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
- C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
- C:\Windows\system32\SearchIndexer.exe /Embedding
- "D:\CCleaner 5.17.5590\CCleaner.exe" /MONITOR /uac
- C:\Windows\explorer.exe
- "D:\Mozilla Firefox 45.0.2\firefox.exe"
- C:\Windows\system32\wbem\wmiprvse.exe
- "D:\TeamSpeak-Client-64bit-3-0-17-64-bit\ts3client_win64.exe"
- "C:\Windows\system32\NOTEPAD.EXE" C:\Users\Alpha\Desktop\Nowy dokument tekstowy.txt
- C:\Windows\servicing\TrustedInstaller.exe
- C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.17516_none_6276a5b950d43361\TiWorker.exe -Embedding
- "C:\Users\Alpha\Downloads\RSITx64.exe"
- "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
- "C:\Windows\system32\SearchFilterHost.exe" 0 380 556 568 65536 564
- C:\Windows\system32\wbem\wmiprvse.exe
- ======Scheduled tasks folder======
- C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
- C:\Windows\tasks\Uninstaller_SkipUac_Alpha.job - D:\IObit Uninstaller 5.3\IObitUninstaler.exe /UninstallExplorer
- =========Mozilla firefox=========
- ProfilePath - C:\Users\Alpha\AppData\Roaming\Mozilla\Firefox\Profiles\m4aaxh58.default
- prefs.js - "browser.startup.homepage" - "google.pl"
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
- "Description"=Adobe® Flash® Player 21.0.0.242 Plugin
- "Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.91.2]
- "Description"=Java™ Deployment Toolkit
- "Path"=C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.91.2]
- "Description"=Oracle® Next Generation Java™ Plug-In
- "Path"=C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
- "Description"=NVIDIA stereo images plugin for Mozilla browsers
- "Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
- "Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
- "Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
- "Description"=Google Update
- "Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
- "Description"=Google Update
- "Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
- "Description"=Adobe® Flash® Player 21.0.0.242 Plugin
- "Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_242.dll
- [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
- "Description"=VLC Multimedia Plugin
- "Path"=D:\VLC media player 2.2.3\npvlc.dll
- ======Registry dump======
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]
- [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "CCleaner Monitoring"=D:\CCleaner 5.17.5590\CCleaner64.exe [2016-04-15 8698584]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
- d:\ccleaner 5.17.5590\ccleaner64.exe [2016-04-15 8698584]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
- "PromptOnSecureDesktop"=0
- "ConsentPromptBehaviorAdmin"=0
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
- "NoDrives"=0
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
- "NoDrives"=0
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
- "msacm.l3acm"=C:\Windows\System32\l3codeca.acm
- "vidc.yuy2"=msyuv.dll
- "vidc.i420"=iyuv_32.dll
- "msacm.msgsm610"=msgsm32.acm
- "msacm.msg711"=msg711.acm
- "vidc.yvyu"=msyuv.dll
- "vidc.yvu9"=tsbyuv.dll
- "wavemapper"=msacm32.drv
- "midimapper"=midimap.dll
- "vidc.uyvy"=msyuv.dll
- "vidc.iyuv"=iyuv_32.dll
- "vidc.mrle"=msrle32.dll
- "msacm.imaadpcm"=imaadp32.acm
- "msacm.msadpcm"=msadp32.acm
- "vidc.msvc"=msvidc32.dll
- "wave"=wdmaud.drv
- "midi"=wdmaud.drv
- "mixer"=wdmaud.drv
- "aux"=wdmaud.drv
- "wave1"=wdmaud.drv
- "midi1"=wdmaud.drv
- "mixer1"=wdmaud.drv
- "wave2"=wdmaud.drv
- "mixer2"=wdmaud.drv
- "VIDC.FICV"=ficvdec_x64.dll
- "wave3"=wdmaud.drv
- "midi2"=wdmaud.drv
- "mixer3"=wdmaud.drv
- ======File associations======
- .js - edit - C:\Windows\System32\Notepad.exe %1
- ======List of files/folders created in the last 1 month======
- 2016-06-02 09:32:45 ----D---- C:\rsit
- 2016-06-02 09:32:45 ----D---- C:\Program Files\trend micro
- 2016-06-02 09:24:43 ----D---- C:\Windows\temp
- 2016-06-02 09:24:42 ----A---- C:\ComboFix.txt
- 2016-06-02 09:21:39 ----SHD---- C:\$RECYCLE.BIN
- 2016-06-02 09:14:44 ----A---- C:\Windows\zip.exe
- 2016-06-02 09:14:44 ----A---- C:\Windows\SWXCACLS.exe
- 2016-06-02 09:14:44 ----A---- C:\Windows\SWSC.exe
- 2016-06-02 09:14:44 ----A---- C:\Windows\SWREG.exe
- 2016-06-02 09:14:44 ----A---- C:\Windows\sed.exe
- 2016-06-02 09:14:44 ----A---- C:\Windows\PEV.exe
- 2016-06-02 09:14:44 ----A---- C:\Windows\NIRCMD.exe
- 2016-06-02 09:14:44 ----A---- C:\Windows\MBR.exe
- 2016-06-02 09:14:44 ----A---- C:\Windows\grep.exe
- 2016-06-02 09:14:39 ----D---- C:\Qoobox
- 2016-06-02 09:14:29 ----D---- C:\Windows\erdnt
- 2016-06-01 13:49:35 ----A---- C:\Windows\system32\FNTCACHE.DAT
- 2016-05-31 20:50:40 ----D---- C:\Program Files (x86)\Mirillis
- 2016-05-31 16:19:50 ----D---- C:\Users\Alpha\AppData\Roaming\vlc
- 2016-05-26 19:11:41 ----D---- C:\Users\Alpha\AppData\Roaming\.minecraft
- 2016-05-26 14:41:19 ----A---- C:\Windows\SYSWOW64\CmdLineExt.dll
- 2016-05-24 16:25:57 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
- 2016-05-23 23:03:22 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
- 2016-05-23 23:03:22 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
- 2016-05-23 23:03:22 ----A---- C:\Windows\system32\nvspcap64.dll
- 2016-05-23 23:03:22 ----A---- C:\Windows\system32\nvspbridge64.dll
- 2016-05-23 23:02:44 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
- 2016-05-23 23:02:41 ----D---- C:\Program Files (x86)\NVIDIA Corporation
- 2016-05-17 21:42:27 ----D---- C:\Users\Alpha\AppData\Roaming\Skype
- 2016-05-17 21:42:17 ----RD---- C:\Program Files (x86)\Skype
- 2016-05-17 21:42:12 ----D---- C:\ProgramData\Skype
- 2016-05-16 11:35:35 ----D---- C:\Users\Alpha\AppData\Roaming\Audacity
- 2016-05-09 12:59:52 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
- 2016-05-09 12:59:52 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
- 2016-05-09 12:59:52 ----A---- C:\Windows\system32\XAudio2_7.dll
- 2016-05-09 12:59:52 ----A---- C:\Windows\system32\XAPOFX1_5.dll
- 2016-05-09 12:59:51 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
- 2016-05-09 12:59:51 ----A---- C:\Windows\system32\xactengine3_7.dll
- 2016-05-09 12:59:50 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
- 2016-05-09 12:59:50 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
- 2016-05-09 12:59:50 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
- 2016-05-09 12:59:50 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
- 2016-05-09 12:59:50 ----A---- C:\Windows\system32\XAudio2_6.dll
- 2016-05-09 12:59:50 ----A---- C:\Windows\system32\XAPOFX1_4.dll
- 2016-05-09 12:59:50 ----A---- C:\Windows\system32\d3dcsx_43.dll
- 2016-05-09 12:59:50 ----A---- C:\Windows\system32\D3DCompiler_43.dll
- 2016-05-09 12:59:49 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
- 2016-05-09 12:59:49 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
- 2016-05-09 12:59:49 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
- 2016-05-09 12:59:49 ----A---- C:\Windows\system32\XAudio2_5.dll
- 2016-05-09 12:59:49 ----A---- C:\Windows\system32\xactengine3_6.dll
- 2016-05-09 12:59:49 ----A---- C:\Windows\system32\X3DAudio1_7.dll
- 2016-05-09 12:59:48 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
- 2016-05-09 12:59:48 ----A---- C:\Windows\system32\xactengine3_5.dll
- 2016-05-09 12:59:47 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
- 2016-05-09 12:59:47 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
- 2016-05-09 12:59:47 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
- 2016-05-09 12:59:47 ----A---- C:\Windows\system32\d3dx11_42.dll
- 2016-05-09 12:59:47 ----A---- C:\Windows\system32\d3dcsx_42.dll
- 2016-05-09 12:59:47 ----A---- C:\Windows\system32\D3DCompiler_42.dll
- 2016-05-09 12:59:46 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
- 2016-05-09 12:59:46 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
- 2016-05-09 12:59:46 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
- 2016-05-09 12:59:46 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
- 2016-05-09 12:59:46 ----A---- C:\Windows\system32\D3DX9_42.dll
- 2016-05-09 12:59:46 ----A---- C:\Windows\system32\d3dx10_42.dll
- 2016-05-09 12:59:46 ----A---- C:\Windows\system32\d3dx10_41.dll
- 2016-05-09 12:59:46 ----A---- C:\Windows\system32\D3DCompiler_41.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\system32\XAudio2_4.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\system32\XAPOFX1_3.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\system32\xactengine3_4.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\system32\X3DAudio1_6.dll
- 2016-05-09 12:59:45 ----A---- C:\Windows\system32\D3DX9_41.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\system32\XAudio2_3.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\system32\XAPOFX1_2.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\system32\D3DX9_40.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\system32\d3dx10_40.dll
- 2016-05-09 12:59:44 ----A---- C:\Windows\system32\D3DCompiler_40.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\system32\XAudio2_2.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\system32\XAPOFX1_1.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\system32\xactengine3_3.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\system32\xactengine3_2.dll
- 2016-05-09 12:59:43 ----A---- C:\Windows\system32\X3DAudio1_5.dll
- 2016-05-09 12:59:42 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
- 2016-05-09 12:59:42 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
- 2016-05-09 12:59:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
- 2016-05-09 12:59:42 ----A---- C:\Windows\system32\D3DX9_39.dll
- 2016-05-09 12:59:42 ----A---- C:\Windows\system32\d3dx10_39.dll
- 2016-05-09 12:59:42 ----A---- C:\Windows\system32\D3DCompiler_39.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\system32\XAudio2_1.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\system32\XAPOFX1_0.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\system32\xactengine3_1.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\system32\X3DAudio1_4.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\system32\d3dx10_38.dll
- 2016-05-09 12:59:41 ----A---- C:\Windows\system32\D3DCompiler_38.dll
- 2016-05-09 12:59:40 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
- 2016-05-09 12:59:40 ----A---- C:\Windows\system32\D3DX9_38.dll
- 2016-05-09 12:58:05 ----D---- C:\Windows\SYSWOW64\directx
- 2016-05-09 00:00:32 ----D---- C:\Windows\Hearts of Iron 2 Platynowa Edycja
- 2016-05-07 14:50:32 ----D---- C:\Program Files\WinPcap
- 2016-05-07 14:50:25 ----D---- C:\ProgramData\Freemake
- 2016-05-07 14:44:40 ----D---- C:\Program Files (x86)\FreeCodecPack
- 2016-05-07 14:43:25 ----D---- C:\Users\Alpha\AppData\Roaming\DVDVideoSoft
- 2016-05-07 14:14:43 ----D---- C:\Program Files\CPUID
- 2016-05-06 20:18:05 ----A---- C:\Windows\SpeederXP.INI
- ======List of files/folders modified in the last 1 month======
- 2016-06-02 09:32:45 ----RD---- C:\Program Files
- 2016-06-02 09:26:15 ----D---- C:\Users\Alpha\AppData\Roaming\TS3Client
- 2016-06-02 09:25:48 ----RD---- C:\Windows\System32
- 2016-06-02 09:25:48 ----D---- C:\Windows\Inf
- 2016-06-02 09:25:48 ----A---- C:\Windows\system32\PerfStringBackup.INI
- 2016-06-02 09:25:15 ----D---- C:\Windows\Prefetch
- 2016-06-02 09:24:44 ----D---- C:\Windows\system32\Drivers
- 2016-06-02 09:24:43 ----D---- C:\Windows
- 2016-06-02 09:21:36 ----A---- C:\Windows\system.ini
- 2016-06-02 09:21:32 ----D---- C:\Windows\system32\drivers\etc
- 2016-06-02 09:20:06 ----D---- C:\Windows\system32\config
- 2016-06-02 09:19:34 ----D---- C:\Windows\SysWOW64
- 2016-06-02 09:18:11 ----D---- C:\Windows\SYSWOW64\drivers
- 2016-06-02 09:18:11 ----D---- C:\Windows\apppatch
- 2016-06-02 09:18:10 ----D---- C:\Program Files (x86)\Common Files
- 2016-06-02 09:15:00 ----SHD---- C:\System Volume Information
- 2016-06-02 09:02:00 ----D---- C:\Windows\system32\sru
- 2016-06-01 22:34:36 ----D---- C:\Windows\Microsoft.NET
- 2016-06-01 22:03:19 ----D---- C:\Users\Alpha\AppData\Roaming\foobar2000
- 2016-06-01 21:05:37 ----D---- C:\Windows\Logs
- 2016-06-01 21:02:06 ----D---- C:\Windows\Tasks
- 2016-06-01 21:02:06 ----D---- C:\Windows\system32\Tasks
- 2016-06-01 19:50:23 ----RSD---- C:\Windows\Fonts
- 2016-05-31 20:50:40 ----RD---- C:\Program Files (x86)
- 2016-05-31 00:21:05 ----D---- C:\Windows\SoftwareDistribution
- 2016-05-30 19:57:51 ----D---- C:\Action!
- 2016-05-30 19:04:27 ----D---- C:\Users\Alpha\AppData\Roaming\TeamViewer
- 2016-05-24 14:45:20 ----D---- C:\ProgramData\NVIDIA
- 2016-05-23 23:04:49 ----D---- C:\ProgramData\NVIDIA Corporation
- 2016-05-23 23:03:23 ----D---- C:\Windows\system32\DriverStore
- 2016-05-23 23:03:23 ----D---- C:\Program Files\NVIDIA Corporation
- 2016-05-23 23:03:09 ----D---- C:\Windows\system32\catroot2
- 2016-05-17 21:43:34 ----SD---- C:\Users\Alpha\AppData\Roaming\Microsoft
- 2016-05-17 21:42:27 ----SHD---- C:\Windows\Installer
- 2016-05-17 21:42:12 ----D---- C:\ProgramData
- 2016-05-16 12:20:43 ----D---- C:\Users\Alpha\AppData\Roaming\Sony
- 2016-05-07 14:53:33 ----D---- C:\Program Files (x86)\Google
- 2016-05-04 15:04:35 ----D---- C:\Windows\system32\NDF
- 2016-05-04 14:10:36 ----D---- C:\ProgramData\IObit
- ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
- R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2012-07-26 64000]
- R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2016-01-29 12911160]
- R3 nvvad_WaveExtensible;@oem5.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2016-01-29 38032]
- R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Sterownik Realtek 8168 NT; C:\Windows\system32\DRIVERS\Rt630x64.sys [2012-06-02 589824]
- R3 VBAudioVACMME;@oem9.inf,%DeviceName% (WDM);VB-Audio Virtual Cable (WDM); C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [2014-09-02 41192]
- S3 athur;@oem7.inf,%ATHR.Service.DispName%;Atheros AR9271 Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athurx.sys [2010-01-05 1847296]
- S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
- S3 dg_ssudbus;@oem11.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2016-04-25 129152]
- S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2016-03-10 27008]
- S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2016-03-10 65408]
- S3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-01-29 19600]
- S3 tap0901;@oem10.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2014-11-05 27136]
- S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2012-07-26 57344]
- S3 WUDFWpdFs;WUDFWpdFs; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 198656]
- S3 WUDFWpdMtp;WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 198656]
- ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
- R2 slsvc;Software Licensing Service; C:\Windows\slsvc.exe [2012-09-25 10240]
- R2 TeamViewer;TeamViewer 11; C:\Users\Public\temp\TeamViewer\TeamViewer_Service.exe [2016-05-12 7032080]
- S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-06 43616]
- S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-12 269504]
- S4 DigitalWave.Update.Service;Digital Wave Update Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe []
- S4 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-01-29 1148560]
- S4 gupdate;Usługa Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-07 154440]
- S4 gupdatem;Usługa Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-07 154440]
- S4 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2016-01-15 2945312]
- S4 MBAMService;MBAMService; D:\Malwarebytes Anti-Malware\mbamservice.exe [2016-03-10 1136608]
- S4 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-01-29 1706128]
- S4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2016-01-29 21833360]
- S4 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2016-01-29 932728]
- S4 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2016-03-10 37504]
- S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-03-23 327808]
- S4 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2016-01-29 426040]
- -----------------EOF-----------------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement