• Ogłoszenie:

Za duże zużycie ram

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Za duże zużycie ram

Postprzez Lijke 02 Lis 2014, 11:08

reklama
Witam,
tak jak w temacie mam problem z pamięcią RAM przy samym systemie zużycie ich dochodzi do 80%-70% ramy to ddr3 2 gb, więc myślę, że to o wiele za dużo.
Logi:
OTL:
Kod: Zaznacz wszystko
OTL Extras logfile created on: 2014-11-02 10:01:52 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Lodzia\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,93 Gb Total Physical Memory | 2,48 Gb Available Physical Memory | 63,01% Memory free
7,86 Gb Paging File | 6,20 Gb Available in Paging File | 78,94% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 274,26 Gb Total Space | 125,72 Gb Free Space | 45,84% Space Free | Partition Type: NTFS
Drive D: | 191,41 Gb Total Space | 80,96 Gb Free Space | 42,30% Space Free | Partition Type: NTFS

Computer Name: LODZIA-PC | User Name: Lodzia | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_USERS\S-1-5-21-4023732623-2383126382-2284746582-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( )
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( )
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{08EB8C3E-7A50-450B-999A-EB0DFDBF9AEA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{09F41C59-F788-4AA9-9548-9614A5F45B41}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{1322B647-515C-4D0E-B296-B544EEE3B1FD}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{17796B1C-C225-4BAF-8C92-B5ED28134854}" = rport=10243 | protocol=6 | dir=out | app=system |
"{1CC42263-E906-44F1-B806-F29431BCBBF5}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{215E11EB-BD60-42A8-8936-09B8057B176B}" = rport=137 | protocol=17 | dir=out | app=system |
"{38606B43-868A-4BB2-8378-092BD9E9122F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{5287347A-6129-4B07-B9A1-05832B3958D0}" = lport=10243 | protocol=6 | dir=in | app=system |
"{615BDC3B-00BA-4D16-A43B-A9A196023C86}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{6AD69133-704D-4979-81AA-DA6B0B2EEDC7}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{755AFFFF-7B15-4847-8B7B-5E2E01C9FA47}" = lport=137 | protocol=17 | dir=in | app=system |
"{75AC7C58-DB59-4578-9464-9FFE51E99474}" = rport=445 | protocol=6 | dir=out | app=system |
"{77712F0A-242E-447C-9410-9EAD15C4B816}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8A26A31C-7DF7-44D7-AD4F-F140912B2F6D}" = lport=138 | protocol=17 | dir=in | app=system |
"{C223CE59-37F9-440C-82EA-0DDA99B227BA}" = lport=8317 | protocol=6 | dir=in | name=techsmith camtasia studio |
"{D12AF4C1-D204-49B9-BE1C-479BF84006FD}" = rport=138 | protocol=17 | dir=out | app=system |
"{D2A70735-F3DF-41D7-A7A3-A767E7F59FEC}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{D322D716-14AD-466F-A7F2-D1719FD92652}" = lport=445 | protocol=6 | dir=in | app=system |
"{D6EEB665-BDC5-415D-BCD6-EAC117243305}" = lport=139 | protocol=6 | dir=in | app=system |
"{E4EF4D7E-9242-4DB8-8A69-8F9FC48C8E3E}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F03EAA1A-9A09-4DEF-92CC-1774D8FBC69C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F8FE7295-4909-41BC-8416-D6115262845A}" = rport=139 | protocol=6 | dir=out | app=system |
"{FECE53D2-9858-4AAB-B98C-390DA84D29E5}" = lport=2869 | protocol=6 | dir=in | app=system |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0362404F-8128-42D7-A360-B74B55B72B92}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{059AB793-63CA-4E18-B282-BF2FAE7C1247}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3147\agent.exe |
"{0A7518E6-13C1-412D-8468-15FFD3FAE374}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{0F92944D-77AA-4013-8206-6B73C08900DD}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3182\agent.exe |
"{182AE6C4-FC3D-48DC-9E70-9A79602C2F10}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{195357F0-265F-4219-9E69-346F4A53B2DB}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\fifa world\fifaworld.exe |
"{19F63E2C-691E-40CD-89C6-CE706677A355}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{21A997D1-81E4-495E-8369-7ED7AEDFBE36}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3109\agent.exe |
"{266C2069-8EAD-4D5B-A6B3-EB84B8449D87}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{29606717-7CF0-4105-BCE6-9AC620AB0111}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\lord of the rings online\turbineinvoker.exe |
"{2AECDE3C-9F08-4847-9250-9C9F1DD1CBFE}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{2B06FECB-7008-486F-A71C-452F87009768}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3023\agent.exe |
"{32CC46D4-1E41-42B3-BD57-C3358EAFEA9C}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\dota 2 beta\dota.exe |
"{3BF98484-0D47-42E7-AFBA-66ADABE57C29}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\arma2oa.exe |
"{3E1E08FB-5640-4D1C-ADAF-76BF33C510C0}" = protocol=17 | dir=in | app=c:\users\lodzia\appdata\roaming\utorrent\utorrent.exe |
"{3EB1CABB-0736-421A-8A06-AC65221FC152}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{48E9E965-9CAA-481B-AE69-0F3D4F90CEAF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\arma2oa_be.exe |
"{4B52DE31-8951-4A9B-B2F3-10D85171C7B8}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\dota 2 beta\dota.exe |
"{539473E9-5560-4D17-850B-D654F8A92F16}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{53CA6E72-BD5F-41C1-A892-41ED480622D6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\arma2oa.exe |
"{55413D08-C6BA-4B4F-8520-698DD91EA3FC}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{5C919408-7237-4625-A337-715B2A6911E2}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3109\agent.exe |
"{5CC16D09-9432-411E-9336-0BBC6EF4FE44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{5E7091AA-ACC3-4DEA-9A74-A1600FAEF7D2}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{62316273-2548-4C34-937B-5BEA0F674CA8}" = protocol=17 | dir=in | app=d:\diablo iii\diablo iii.exe |
"{646ED9BD-26BC-4531-8029-486917FBF6E7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\lord of the rings online\turbineinvoker.exe |
"{64B18532-E3EE-4FE8-B4A9-7DBB6FE05600}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{72303FE9-FB53-4303-AD2B-65D13A07F8F6}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{82C45EF6-8C99-48F4-B664-3661FF5D17F4}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{879F7091-B6FC-4200-887D-831D5DEE47B6}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{8B8552FC-C78D-4FD5-B437-E1895BB4FB80}" = protocol=6 | dir=in | app=d:\watchdogs\bin\watch_dogs.exe |
"{8DDE3794-235E-44C3-B509-FBDA1BBC2181}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{93C2F822-A4E3-48E9-AE56-FC668107D132}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3147\agent.exe |
"{972899D3-7E44-453A-B729-32C5874EFA8A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{98441B18-0424-418C-B114-8E6BEA4F42E1}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\fifa world\fifaworld.exe |
"{A073EB26-EF07-4487-A32C-B7DD64A4DF53}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{A0AA8FC7-7D33-4E61-8696-549121C863A2}" = protocol=6 | dir=in | app=d:\hearthstone\hearthstone.exe |
"{A4B558D3-D660-4FC9-B978-AEE94B96BF1B}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{AA6E0E22-A634-4D44-BF76-8C676FCC2BB0}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{B2013AAA-C637-4D2F-8CD2-F1D4AABB5FF5}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{B6E1B639-7D17-4CFD-BC2B-29169A19DD27}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{BB4B6C43-2BDF-4AC8-A43C-CE46F3E0A14B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3182\agent.exe |
"{BC43046C-A215-415B-A975-D40FFA1C8F4B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\arma2oa_be.exe |
"{C0645691-AAFA-4CF0-B4EA-436C391E6DA2}" = protocol=6 | dir=in | app=d:\diablo iii\diablo iii.exe |
"{C34B73AA-B4B2-4F0A-A62B-FB99B1CD95B6}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe |
"{C415DA4A-67DB-4421-A361-6576199DE259}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C5A1F1E1-0424-4445-9C0F-C7A2AD4B5E77}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C6899528-81E5-4FB1-B56B-7CA0E630A719}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{D1D7000A-79FB-4889-BB8D-A6ABA8BC17F9}" = protocol=17 | dir=in | app=d:\watchdogs\bin\watch_dogs.exe |
"{D25A3384-FB3A-4AB1-B47E-36108AFD54F3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{DC100B77-8912-4044-A73B-AEAA0E9FC64A}" = protocol=6 | dir=in | app=c:\users\lodzia\appdata\roaming\utorrent\utorrent.exe |
"{E1C22B44-3940-4FB8-8461-152B4AE9067F}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3023\agent.exe |
"{E1C66E52-5D04-440C-B9A6-52C141D28955}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{E4B5CC54-565D-4F5F-8D98-BB1B917F06E6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{E6B56B4A-EA5E-4706-990F-BCDAEC619668}" = protocol=17 | dir=in | app=d:\hearthstone\hearthstone.exe |
"{EBDDD83B-A2B4-46B7-84C5-9681F82F5D07}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{F4B79392-FCF3-41A6-A01E-AAD859CD6421}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F54FBA39-AF99-4917-8F85-3A1090060EEB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe |
"{F597637F-8E4D-4D79-BC88-4375D2DB2DD4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{F8591123-EEED-4CCD-9825-F6A8715915F5}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FA7F153A-05D5-4F85-8FD5-EE60260FB931}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{FBC8B77A-A928-42CD-9E5D-A22DE6F5B1A1}" = protocol=6 | dir=in | app=d:\gameforgelive\gfl_client.exe |
"{FE7D23C1-3BE1-4720-85ED-454031E63DF5}" = protocol=6 | dir=out | app=system |
"{FFFF4B83-B07A-4087-B64E-9A239E8DFC05}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"TCP Query User{7E50F80F-1E10-4505-B7D3-50261A0BD334}C:\users\lodzia\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\lodzia\appdata\roaming\spotify\spotify.exe |
"TCP Query User{839C94A0-F2DD-4E3D-9997-3238D4F05E63}D:\cs\hl.exe" = protocol=6 | dir=in | app=d:\cs\hl.exe |
"TCP Query User{8C9E4596-E354-419A-8B5C-9800994A30EF}C:\program files (x86)\steam\steamapps\common\lord of the rings online\lotroclient.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\lord of the rings online\lotroclient.exe |
"TCP Query User{8E6419BB-859C-4B25-A724-F6EE99B4288C}C:\users\lodzia\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\lodzia\appdata\roaming\spotify\spotify.exe |
"TCP Query User{9019E30D-BFD8-423D-BC30-D3EC1089CCAE}C:\programdata\battle.net\agent\agent.3286\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3286\agent.exe |
"TCP Query User{A24378DA-D06B-476A-83EA-B78078783E0E}C:\users\lodzia\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\lodzia\appdata\local\akamai\netsession_win.exe |
"TCP Query User{B2F9F3AE-AD33-4183-AA63-97781C769901}D:\gameforgelive\games\pol_pol\aion\nclauncher.exe" = protocol=6 | dir=in | app=d:\gameforgelive\games\pol_pol\aion\nclauncher.exe |
"TCP Query User{DD3584E4-3E7B-49B0-932D-6C95D5EE5A9C}C:\users\lodzia\downloads\utorrent.exe" = protocol=6 | dir=in | app=c:\users\lodzia\downloads\utorrent.exe |
"TCP Query User{EC9DEAD6-17B7-4E38-A06F-ECC0B8A8BA41}C:\program files (x86)\lolreplay\lolreplay.exe" = protocol=6 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe |
"TCP Query User{F5F1F635-FB2D-4C02-844C-851CD37DC0BF}C:\program files (x86)\dayzlauncher\dayzlauncher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\dayzlauncher\dayzlauncher.exe |
"TCP Query User{F668E6B0-5ACB-49E6-B993-FA80ECDCC6F4}C:\users\lodzia\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\lodzia\appdata\local\akamai\netsession_win.exe |
"TCP Query User{FC591BA2-5EEB-4655-A059-6EB64C53CCE4}C:\program files (x86)\hi-rez studios\hirezgames\hirezgames\smite\binaries\win32\smite.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hi-rez studios\hirezgames\hirezgames\smite\binaries\win32\smite.exe |
"UDP Query User{14C324AD-869D-4F33-907A-68B5C63DC54B}C:\users\lodzia\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\lodzia\appdata\local\akamai\netsession_win.exe |
"UDP Query User{63AA8441-DBBA-40D1-8F25-25AD16EB7668}C:\users\lodzia\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\lodzia\appdata\roaming\spotify\spotify.exe |
"UDP Query User{7DFC4BD5-03A3-4C36-9CC2-2D114BF4F91B}C:\program files (x86)\dayzlauncher\dayzlauncher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\dayzlauncher\dayzlauncher.exe |
"UDP Query User{894C6213-6E11-4568-A3CD-E99AC721606C}C:\programdata\battle.net\agent\agent.3286\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3286\agent.exe |
"UDP Query User{8972D612-0CBB-48C6-A6A9-441125615FB1}C:\users\lodzia\downloads\utorrent.exe" = protocol=17 | dir=in | app=c:\users\lodzia\downloads\utorrent.exe |
"UDP Query User{90BF2995-582A-4053-B054-3FA5D11F4D19}C:\program files (x86)\lolreplay\lolreplay.exe" = protocol=17 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe |
"UDP Query User{98CA4747-BC8E-4560-AFDD-4198D20B2724}C:\program files (x86)\steam\steamapps\common\lord of the rings online\lotroclient.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\lord of the rings online\lotroclient.exe |
"UDP Query User{B8FA39A7-200E-42DA-8ECB-59154A7A98DD}D:\gameforgelive\games\pol_pol\aion\nclauncher.exe" = protocol=17 | dir=in | app=d:\gameforgelive\games\pol_pol\aion\nclauncher.exe |
"UDP Query User{C9367452-587A-4E16-8101-375E6DE200AB}C:\program files (x86)\hi-rez studios\hirezgames\hirezgames\smite\binaries\win32\smite.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hi-rez studios\hirezgames\hirezgames\smite\binaries\win32\smite.exe |
"UDP Query User{D2D74B81-9B8E-442A-8228-53CB95B43135}D:\cs\hl.exe" = protocol=17 | dir=in | app=d:\cs\hl.exe |
"UDP Query User{DAE8DF2D-DF1A-44A7-A349-A1A2F2132A00}C:\users\lodzia\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\lodzia\appdata\roaming\spotify\spotify.exe |
"UDP Query User{DD4CFD88-090C-4344-AF5C-936B713716EF}C:\users\lodzia\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\lodzia\appdata\local\akamai\netsession_win.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1" = Core Temp 1.0 RC6
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{26784146-6E05-3FF9-9335-786C7C0FB5BE}" = Microsoft .NET Framework 4.5.2
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.2
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Driver 320.63
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 320.63
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 320.63
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 320.49
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.13.0604
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 4.11.9
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD Audio Driver 1.3.24.2
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B5E06417-A4AC-4225-B36E-7E34C91616E7}" = Intel® Trusted Connect Service Client
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"WinRAR archiver" = WinRAR 5.10 (64-bitowy)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver
"{249B1212-3779-404F-80FC-F3B80FE265ED}" = G3 Mouse Driver
"{3282FBE1-35FC-48D8-98CA-115A5EF1F9B4}" = NVIDIA PhysX
"{4EE345FA-2E00-461C-9DE9-961D1A6F1ED3}" = Tibiacast
"{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends
"{608E1B9B-A2E8-4A1F-8BAB-874EB0DD25E3}" = Intel(R) Update Manager
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{6A6D86CD-B004-46b7-8951-7BB75A776F8C}" = Intel(R) Small Business Advantage
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{765AD29A-7EF5-4456-8F6F-83467E52AB52}" = Camtasia Studio 8
"{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1" = VGA Boost
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}" = EA Sports FIFA World
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1" = Gameforge Live 2.0.4
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{B798AB02-C334-44AE-872B-A988677CB957}_is1" = XenoBot Apophis [10.61] by Tibia-Bot.pl
"{c1f1efe6-a68e-4db9-b886-ce9f30e3a3e6}" = osu!
"{C7B52FAF-58D8-438C-B810-F78C3C927504}" = ChomikBox
"{E31045B4-9DB5-44DF-9EBD-BD4CFDE640FD}_is1" = DayZLauncher version 0.0.0.7
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin
"Battle.net" = Battle.net
"CWK" = CWK (Czasowy Wyłącznik Komputera)
"DAEMON Tools Lite" = DAEMON Tools Lite
"Diablo III" = Diablo III
"ESET Online Scanner" = ESET Online Scanner v3
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"FileZilla Client" = FileZilla Client 3.9.0.3
"foobar2000" = foobar2000 v1.3.4
"Fraps" = Fraps (remove only)
"Google Chrome" = Google Chrome
"Hearthstone" = Hearthstone
"League of Legends 3.0.1" = League of Legends
"LOLReplay" = LOLReplay
"Middle Earth Shadow of Mordor_is1" = Middle Earth Shadow of Mordor
"Mozilla Firefox 33.0.2 (x86 pl)" = Mozilla Firefox 33.0.2 (x86 pl)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Notepad++" = Notepad++
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Open Broadcaster Software" = Open Broadcaster Software
"Origin" = Origin
"PunkBusterSvc" = PunkBuster Services
"SpeedFan" = SpeedFan (remove only)
"Steam" = Steam
"Steam App 212500" = The Lord of the Rings Online™
"Steam App 33910" = Arma 2
"Steam App 33930" = Arma 2: Operation Arrowhead
"Steam App 42710" = Call of Duty: Black Ops - Multiplayer
"Steam App 50130" = Mafia II
"Steam App 570" = Dota 2
"Steam App 730" = Counter-Strike: Global Offensive
"Strife" = Strife
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"Tibia_is1" = Tibia
"Uplay" = Uplay
"Uplay Install 274" = WATCH_DOGS

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-4023732623-2383126382-2284746582-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Counter-Strike 1.6 NonSteam v52" = Counter-Strike 1.6 NonSteam
"Spotify" = Spotify
"uTorrent" = µTorrent

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-4023732623-2383126382-2284746582-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2014-10-28 10:06:19 | Computer Name = Lodzia-PC | Source = WinMgmt | ID = 10
Description =

Error - 2014-10-29 03:20:03 | Computer Name = Lodzia-PC | Source = WinMgmt | ID = 10
Description =

Error - 2014-10-29 03:47:29 | Computer Name = Lodzia-PC | Source = SideBySide | ID = 16842832
Description = Activation context generation failed for "c:\program files (x86)\ESET\eset
online scanner\ESETSmartInstaller.exe".Error in manifest or policy file "" on line
.  A component version required by the application conflicts with another component
version already active.  Conflicting components are:.  Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2014-10-30 03:11:54 | Computer Name = Lodzia-PC | Source = SideBySide | ID = 16842832
Description = Activation context generation failed for "c:\program files (x86)\ESET\eset
online scanner\ESETSmartInstaller.exe".Error in manifest or policy file "" on line
.  A component version required by the application conflicts with another component
version already active.  Conflicting components are:.  Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2014-10-31 03:02:07 | Computer Name = Lodzia-PC | Source = SideBySide | ID = 16842832
Description = Activation context generation failed for "c:\program files (x86)\ESET\eset
online scanner\ESETSmartInstaller.exe".Error in manifest or policy file "" on line
.  A component version required by the application conflicts with another component
version already active.  Conflicting components are:.  Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2014-10-31 09:33:33 | Computer Name = Lodzia-PC | Source = WinMgmt | ID = 10
Description =

Error - 2014-11-01 04:37:03 | Computer Name = Lodzia-PC | Source = WinMgmt | ID = 10
Description =

Error - 2014-11-01 15:02:00 | Computer Name = Lodzia-PC | Source = SideBySide | ID = 16842832
Description = Activation context generation failed for "c:\program files (x86)\ESET\eset
online scanner\ESETSmartInstaller.exe".Error in manifest or policy file "" on line
.  A component version required by the application conflicts with another component
version already active.  Conflicting components are:.  Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2014-11-02 04:53:21 | Computer Name = Lodzia-PC | Source = SideBySide | ID = 16842832
Description = Activation context generation failed for "C:\Users\Lodzia\Downloads\esetsmartinstaller_plk.exe".Error
in manifest or policy file "" on line .  A component version required by the application
conflicts with another component version already active.  Conflicting components
are:.  Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2014-11-02 05:00:03 | Computer Name = Lodzia-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 2014-11-02 04:16:17 | Computer Name = Lodzia-PC | Source = DCOM | ID = 10016
Description =

Error - 2014-11-02 04:26:17 | Computer Name = Lodzia-PC | Source = DCOM | ID = 10016
Description =

Error - 2014-11-02 04:36:17 | Computer Name = Lodzia-PC | Source = DCOM | ID = 10016
Description =

Error - 2014-11-02 04:46:17 | Computer Name = Lodzia-PC | Source = DCOM | ID = 10016
Description =

Error - 2014-11-02 04:56:17 | Computer Name = Lodzia-PC | Source = DCOM | ID = 10016
Description =

Error - 2014-11-02 04:58:17 | Computer Name = Lodzia-PC | Source = Microsoft-Windows-DNS-Client | ID = 1012
Description = There was an error while attempting to read the local hosts file.

Error - 2014-11-02 04:58:19 | Computer Name = Lodzia-PC | Source = Microsoft-Windows-DNS-Client | ID = 1012
Description = There was an error while attempting to read the local hosts file.

Error - 2014-11-02 04:58:37 | Computer Name = Lodzia-PC | Source = Microsoft-Windows-DNS-Client | ID = 1012
Description = There was an error while attempting to read the local hosts file.

Error - 2014-11-02 04:58:38 | Computer Name = Lodzia-PC | Source = Microsoft-Windows-DNS-Client | ID = 1012
Description = There was an error while attempting to read the local hosts file.

Error - 2014-11-02 04:59:18 | Computer Name = Lodzia-PC | Source = DCOM | ID = 10016
Description =


< End of report >

Kod: Zaznacz wszystko
OTL logfile created on: 2014-11-02 10:01:52 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Lodzia\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,93 Gb Total Physical Memory | 2,48 Gb Available Physical Memory | 63,01% Memory free
7,86 Gb Paging File | 6,20 Gb Available in Paging File | 78,94% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 274,26 Gb Total Space | 125,72 Gb Free Space | 45,84% Space Free | Partition Type: NTFS
Drive D: | 191,41 Gb Total Space | 80,96 Gb Free Space | 42,30% Space Free | Partition Type: NTFS

Computer Name: LODZIA-PC | User Name: Lodzia | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2014-11-02 09:53:57 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Lodzia\Downloads\OTL.exe
PRC - [2014-10-30 16:47:58 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe
PRC - [2014-10-28 18:38:40 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe
PRC - [2014-10-22 05:05:02 | 000,854,344 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014-10-08 21:55:56 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe
PRC - [2014-09-30 17:02:52 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe
PRC - [2014-09-25 00:19:46 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe
PRC - [2014-09-17 17:27:22 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe
PRC - [2014-09-17 12:42:04 | 001,245,752 | ---- | M] (Spotify Ltd) -- C:\Users\Lodzia\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
PRC - [2014-07-05 09:46:35 | 000,076,152 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2013-10-07 17:15:14 | 000,495,616 | ---- | M] () -- C:\Program Files (x86)\Gaming Mouse\G3 Mouse\G2Monitor.exe
PRC - [2013-09-26 12:39:36 | 000,030,240 | ---- | M] (MICRO-STAR INTERNATIONAL CO., LTD.) -- C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
PRC - [2013-09-16 20:19:26 | 000,390,616 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2013-09-16 20:19:22 | 000,169,432 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
PRC - [2013-07-10 07:02:54 | 000,413,472 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2013-05-16 15:38:39 | 001,826,592 | R--- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2013-04-26 03:25:54 | 000,292,848 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2014-10-30 16:47:58 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe
MOD - [2014-10-28 18:38:40 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe
MOD - [2014-10-22 05:04:57 | 008,910,664 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll
MOD - [2014-10-22 05:04:51 | 001,042,760 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
MOD - [2014-10-22 05:04:49 | 000,211,272 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libegl.dll
MOD - [2014-10-22 05:04:48 | 001,681,224 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll
MOD - [2014-10-08 21:55:56 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe
MOD - [2014-09-30 17:02:52 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe
MOD - [2014-09-25 00:19:46 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe
MOD - [2014-09-17 17:27:22 | 000,990,208 | ---- | M] () -- C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe
MOD - [2014-08-13 15:09:24 | 000,035,328 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
MOD - [2014-05-24 17:41:24 | 000,892,416 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\libstdc++-6.dll
MOD - [2014-05-24 17:41:24 | 000,091,648 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\libgcc_s_sjlj-1.dll
MOD - [2013-10-07 17:15:14 | 000,495,616 | ---- | M] () -- C:\Program Files (x86)\Gaming Mouse\G3 Mouse\G2Monitor.exe
MOD - [2013-02-20 13:17:42 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Gaming Mouse\G3 Mouse\hiddriver.dll
MOD - [2012-06-09 06:38:52 | 000,057,344 | ---- | M] () -- C:\Program Files (x86)\Gaming Mouse\G3 Mouse\lan.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2013-08-27 13:32:30 | 000,828,376 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013-08-27 13:32:14 | 000,747,520 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013-07-25 14:17:42 | 000,054,976 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe -- (intelsba)
SRV:[b]64bit:[/b] - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2014-10-29 23:20:43 | 000,114,288 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014-10-27 13:37:27 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014-10-21 20:22:40 | 000,833,728 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2014-09-17 14:56:53 | 000,448,384 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\BattlEye\BEService.exe -- (BEService)
SRV - [2014-07-05 09:46:35 | 000,076,152 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2014-04-11 22:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013-09-26 12:39:36 | 000,030,240 | ---- | M] (MICRO-STAR INTERNATIONAL CO., LTD.) [Auto | Running] -- C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe -- (MSI_Trigger_Service)
SRV - [2013-09-16 20:19:26 | 000,390,616 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2013-09-16 20:19:22 | 000,169,432 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
SRV - [2013-07-10 07:02:54 | 000,413,472 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2013-05-16 15:38:39 | 001,826,592 | R--- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2014-10-05 11:25:21 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:[b]64bit:[/b] - [2013-09-16 20:19:22 | 000,099,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2013-04-26 03:24:58 | 000,020,464 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
DRV:[b]64bit:[/b] - [2013-04-26 03:24:56 | 000,786,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
DRV:[b]64bit:[/b] - [2013-04-26 03:24:56 | 000,368,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
DRV:[b]64bit:[/b] - [2013-04-10 04:09:24 | 000,849,992 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2013-02-25 06:27:45 | 000,194,848 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:[b]64bit:[/b] - [2010-11-21 04:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 02:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 01:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp
IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pl
IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 76 BF 97 F3 82 EB CF 01  [binary data]
IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

IE - HKU\S-1-5-21-4023732623-2383126382-2284746582-1003\..\SearchScopes,DefaultScope =

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:33.0.2
FF - user.js - File not found

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 33.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 33.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 33.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 33.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2014-07-04 13:17:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lodzia\AppData\Roaming\Mozilla\Extensions
[2014-09-11 19:54:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lodzia\AppData\Roaming\Mozilla\Firefox\Profiles\lg9h5jcx.default\extensions
[2014-10-20 13:33:31 | 000,003,329 | ---- | M] () (No name found) -- C:\Users\Lodzia\AppData\Roaming\Mozilla\Firefox\Profiles\lg9h5jcx.default\bookmarkbackups\bookmarks-2014-11-01_26_XpilZ8s3IWwq3LXZO2sVzA==.jsonlz4
[2014-09-11 19:54:20 | 000,201,149 | ---- | M] () (No name found) -- C:\Users\Lodzia\AppData\Roaming\Mozilla\Firefox\Profiles\lg9h5jcx.default\extensions\feca4b87-3be4-43da-a1b1-137c24220968@jetpack.xpi
[2014-10-29 23:20:37 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014-10-29 23:20:43 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

[color=#E56717]========== Chrome  ==========[/color]

CHR - default_search_provider:  (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll
CHR - plugin: Intel® Identity Protection Technology (Enabled) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
CHR - plugin: Intel® Identity Protection Technology (Enabled) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.7_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.13_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd\3.1.65_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki\4.0.6_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeiimoikalhhgfhfkfhngehekefpiaag\3.7.18_0\
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeiimoikalhhgfhfkfhngehekefpiaag\3.7.18_0\~
CHR - Extension: No name found = C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

Hosts file not found
O2:[b]64bit:[/b] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:[b]64bit:[/b] - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg64.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:[b]64bit:[/b] - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [G3 mouse] C:\Program Files (x86)\Gaming Mouse\G3 Mouse\G2Monitor.exe ()
O4 - HKLM..\Run: [IMSS] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (Intel Corporation)
O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [Akamai NetSession Interface] "C:\Users\Lodzia\AppData\Local\Akamai\netsession_win.exe" File not found
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [dllstack.exe] C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe ()
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [dovehd.exe] C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe ()
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [GoogleChromeAutoLaunch_19B9F9630692E10ED0F223A422453499] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [hiser.exe] C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe ()
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [mspcvsc.exe] C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe ()
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [rebedll.exe] C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe ()
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [Spotify Web Helper] C:\Users\Lodzia\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1000..\Run: [xexlc.exe] C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe ()
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1003..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-4023732623-2383126382-2284746582-1003..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 91.232.90.18 91.232.90.19 91.232.90.18 91.232.90.19 91.232.90.18 91.232.90.19
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6E4CD675-C3A1-48DF-AE78-6D7E55EB8A18}: DhcpNameServer = 91.232.90.18 91.232.90.19 91.232.90.18 91.232.90.19 91.232.90.18 91.232.90.19
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2014-11-02 09:59:43 | 000,000,000 | ---D | C] -- C:\FRST
[2014-11-02 09:58:48 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\Desktop\logi
[2014-10-29 23:20:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014-10-27 16:07:01 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\Desktop\asdasd
[2014-10-27 13:37:31 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2014-10-27 13:36:56 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Local\Adobe
[2014-10-26 17:24:41 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2014-10-26 17:24:41 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2014-10-26 17:24:41 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll
[2014-10-26 17:24:41 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_7.dll
[2014-10-26 17:24:41 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2014-10-26 17:24:41 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2014-10-26 17:24:40 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2014-10-26 17:24:40 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2014-10-26 17:24:40 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_43.dll
[2014-10-26 17:24:40 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll
[2014-10-26 17:24:40 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2014-10-26 17:24:40 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2014-10-26 17:24:39 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
[2014-10-26 17:24:39 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2014-10-26 17:24:37 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
[2014-10-26 17:24:37 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2014-10-26 17:24:36 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_6.dll
[2014-10-26 17:24:36 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_6.dll
[2014-10-26 17:24:36 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_6.dll
[2014-10-26 17:24:36 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_6.dll
[2014-10-26 17:24:36 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_4.dll
[2014-10-26 17:24:36 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_4.dll
[2014-10-26 17:24:35 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_5.dll
[2014-10-26 17:24:35 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll
[2014-10-26 17:24:35 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_7.dll
[2014-10-26 17:24:35 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_7.dll
[2014-10-26 17:24:34 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_42.dll
[2014-10-26 17:24:34 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_42.dll
[2014-10-26 17:24:34 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_5.dll
[2014-10-26 17:24:34 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_5.dll
[2014-10-26 17:24:32 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_42.dll
[2014-10-26 17:24:32 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_42.dll
[2014-10-26 17:24:31 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
[2014-10-26 17:24:31 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
[2014-10-26 17:24:31 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_42.dll
[2014-10-26 17:24:31 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_42.dll
[2014-10-26 17:24:30 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_42.dll
[2014-10-26 17:24:30 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2014-10-26 17:24:28 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_41.dll
[2014-10-26 17:24:28 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_41.dll
[2014-10-26 17:24:28 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_41.dll
[2014-10-26 17:24:28 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_41.dll
[2014-10-26 17:24:26 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_41.dll
[2014-10-26 17:24:26 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_41.dll
[2014-10-26 17:24:25 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_4.dll
[2014-10-26 17:24:25 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_4.dll
[2014-10-26 17:24:25 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_3.dll
[2014-10-26 17:24:25 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
[2014-10-26 17:24:24 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_4.dll
[2014-10-26 17:24:24 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_4.dll
[2014-10-26 17:24:24 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_6.dll
[2014-10-26 17:24:24 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_6.dll
[2014-10-26 17:24:23 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll
[2014-10-26 17:24:23 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll
[2014-10-26 17:24:23 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll
[2014-10-26 17:24:23 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll
[2014-10-26 17:24:21 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll
[2014-10-26 17:24:21 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll
[2014-10-26 17:24:21 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_3.dll
[2014-10-26 17:24:21 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll
[2014-10-26 17:24:21 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_2.dll
[2014-10-26 17:24:21 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll
[2014-10-26 17:24:20 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_2.dll
[2014-10-26 17:24:20 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_2.dll
[2014-10-26 17:24:20 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll
[2014-10-26 17:24:20 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_3.dll
[2014-10-26 17:24:20 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_1.dll
[2014-10-26 17:24:20 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_1.dll
[2014-10-26 17:24:20 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_5.dll
[2014-10-26 17:24:20 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll
[2014-10-26 17:24:19 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_2.dll
[2014-10-26 17:24:19 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_2.dll
[2014-10-26 17:24:18 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_39.dll
[2014-10-26 17:24:18 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_39.dll
[2014-10-26 17:24:16 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_39.dll
[2014-10-26 17:24:16 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_1.dll
[2014-10-26 17:24:16 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_1.dll
[2014-10-26 17:24:16 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_0.dll
[2014-10-26 17:24:16 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_0.dll
[2014-10-26 17:24:15 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_1.dll
[2014-10-26 17:24:15 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_1.dll
[2014-10-26 17:24:15 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_4.dll
[2014-10-26 17:24:15 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_4.dll
[2014-10-26 17:24:14 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_38.dll
[2014-10-26 17:24:14 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_38.dll
[2014-10-26 17:24:14 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_38.dll
[2014-10-26 17:24:14 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_38.dll
[2014-10-26 17:24:11 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_38.dll
[2014-10-26 17:24:11 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_38.dll
[2014-10-26 17:24:11 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_0.dll
[2014-10-26 17:24:11 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_0.dll
[2014-10-26 17:24:10 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_0.dll
[2014-10-26 17:24:10 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_0.dll
[2014-10-26 17:24:10 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_3.dll
[2014-10-26 17:24:10 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_3.dll
[2014-10-26 17:24:09 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_37.dll
[2014-10-26 17:24:09 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_37.dll
[2014-10-26 17:24:09 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_37.dll
[2014-10-26 17:24:09 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_37.dll
[2014-10-26 17:24:07 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_37.dll
[2014-10-26 17:24:07 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_37.dll
[2014-10-26 17:24:06 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_10.dll
[2014-10-26 17:24:06 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_10.dll
[2014-10-26 17:24:05 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_36.dll
[2014-10-26 17:24:05 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_36.dll
[2014-10-26 17:24:05 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_36.dll
[2014-10-26 17:24:05 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_36.dll
[2014-10-26 17:24:04 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_36.dll
[2014-10-26 17:24:04 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_36.dll
[2014-10-26 17:24:03 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_9.dll
[2014-10-26 17:24:03 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll
[2014-10-26 17:24:02 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_35.dll
[2014-10-26 17:24:02 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll
[2014-10-26 17:24:02 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_35.dll
[2014-10-26 17:24:02 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll
[2014-10-26 17:24:00 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll
[2014-10-26 17:24:00 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll
[2014-10-26 17:23:59 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_8.dll
[2014-10-26 17:23:59 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll
[2014-10-26 17:23:59 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_2.dll
[2014-10-26 17:23:59 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_2.dll
[2014-10-26 17:23:58 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_34.dll
[2014-10-26 17:23:58 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll
[2014-10-26 17:23:58 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_34.dll
[2014-10-26 17:23:58 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll
[2014-10-26 17:23:56 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_34.dll
[2014-10-26 17:23:56 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll
[2014-10-26 17:23:56 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_7.dll
[2014-10-26 17:23:56 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll
[2014-10-26 17:23:56 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_3.dll
[2014-10-26 17:23:55 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_33.dll
[2014-10-26 17:23:55 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll
[2014-10-26 17:23:55 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_33.dll
[2014-10-26 17:23:55 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll
[2014-10-26 17:23:52 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_33.dll
[2014-10-26 17:23:52 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll
[2014-10-26 17:23:52 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_6.dll
[2014-10-26 17:23:52 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll
[2014-10-26 17:23:51 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10.dll
[2014-10-26 17:23:51 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll
[2014-10-26 17:23:51 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_5.dll
[2014-10-26 17:23:51 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll
[2014-10-26 17:23:50 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2014-10-26 17:23:50 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2014-10-26 17:23:49 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_4.dll
[2014-10-26 17:23:49 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll
[2014-10-26 17:23:49 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_1.dll
[2014-10-26 17:23:49 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll
[2014-10-26 17:23:48 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_31.dll
[2014-10-26 17:23:48 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2014-10-26 17:23:48 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_3.dll
[2014-10-26 17:23:48 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll
[2014-10-26 17:23:48 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_2.dll
[2014-10-26 17:23:48 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll
[2014-10-26 17:23:47 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll
[2014-10-26 17:23:47 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
[2014-10-26 17:23:47 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll
[2014-10-26 17:23:47 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
[2014-10-26 17:23:46 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll
[2014-10-26 17:23:46 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
[2014-10-26 17:23:39 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll
[2014-10-26 17:23:39 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2014-10-26 17:23:38 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll
[2014-10-26 17:23:38 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
[2014-10-26 17:23:38 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll
[2014-10-26 17:23:38 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
[2014-10-26 17:23:37 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll
[2014-10-26 17:23:37 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
[2014-10-26 17:23:36 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll
[2014-10-26 17:23:36 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2014-10-26 17:23:35 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll
[2014-10-26 17:23:35 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
[2014-10-26 17:23:34 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll
[2014-10-26 17:23:34 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
[2014-10-26 17:23:32 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_25.dll
[2014-10-26 17:23:32 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll
[2014-10-26 17:23:30 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_24.dll
[2014-10-26 17:23:30 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
[2014-10-25 22:20:28 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Roaming\foobar2000
[2014-10-25 22:20:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\foobar2000
[2014-10-19 10:57:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2014-10-13 13:53:02 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Local\Diagnostics
[2014-10-07 15:17:41 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\Documents\WB Games
[2014-10-07 15:17:40 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Roaming\Steam
[2014-10-07 15:16:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Middle Earth Shadow of Mordor
[2014-10-07 14:57:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Middle Earth Shadow of Mordor
[2014-10-05 13:26:02 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\Windows\SysWow64\sqlite3.dll
[2014-10-05 13:24:26 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014-10-05 12:24:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Orbit
[2014-10-05 11:53:10 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
[2014-10-05 11:53:07 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Local\Ubisoft Game Launcher
[2014-10-05 11:53:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ubisoft
[2014-10-05 11:25:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2014-10-05 11:25:21 | 000,283,064 | ---- | C] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2014-10-05 11:25:19 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Roaming\DAEMON Tools Lite
[2014-10-05 11:25:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2014-10-05 11:25:03 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2014-10-04 22:07:31 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Local\CrashDumps
[2014-10-04 18:04:52 | 000,000,000 | ---D | C] -- C:\Users\Lodzia\AppData\Local\ElevatedDiagnostics
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2014-11-02 09:58:21 | 000,001,044 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014-11-02 09:58:13 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014-11-02 09:58:09 | 3164,659,712 | -HS- | M] () -- C:\hiberfil.sys
[2014-11-02 09:17:00 | 000,001,048 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014-11-02 09:14:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014-11-01 18:25:52 | 000,781,298 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014-11-01 18:25:52 | 000,653,526 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014-11-01 18:25:52 | 000,121,398 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014-11-01 16:29:28 | 001,235,238 | ---- | M] () -- C:\Users\Lodzia\Desktop\tata.png
[2014-11-01 09:42:44 | 000,021,264 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014-11-01 09:42:44 | 000,021,264 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014-10-30 18:27:21 | 000,001,096 | ---- | M] () -- C:\Users\Public\Desktop\XenoSuite Launcher.lnk
[2014-10-28 14:18:26 | 000,002,189 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014-10-27 13:37:27 | 000,701,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014-10-27 13:37:27 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014-10-26 10:47:21 | 000,118,025 | ---- | M] () -- C:\Users\Lodzia\Documents\dsadsa.xps
[2014-10-25 22:20:01 | 000,001,035 | ---- | M] () -- C:\Users\Public\Desktop\foobar2000.lnk
[2014-10-25 20:09:21 | 000,000,219 | ---- | M] () -- C:\Users\Lodzia\Desktop\Dota 2.url
[2014-10-21 16:12:44 | 000,132,157 | ---- | M] () -- C:\Users\Lodzia\Documents\360fx360f21.png
[2014-10-18 22:57:09 | 000,023,850 | ---- | M] () -- C:\Users\Lodzia\Documents\10735809_552168081550697_926634028_n.jpg
[2014-10-14 18:27:35 | 002,578,182 | ---- | M] () -- C:\Users\Lodzia\Documents\321.png
[2014-10-14 18:10:15 | 002,635,570 | ---- | M] () -- C:\Users\Lodzia\Documents\123.png
[2014-10-13 16:28:41 | 000,091,334 | ---- | M] () -- C:\Users\Lodzia\Documents\Pirates4JackSparrowPosterCropped.jpg
[2014-10-07 15:16:46 | 000,001,278 | ---- | M] () -- C:\Users\Lodzia\Desktop\Middle Earth Shadow of Mordor.lnk
[2014-10-05 11:25:21 | 000,283,064 | ---- | M] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2014-11-01 16:28:43 | 001,235,238 | ---- | C] () -- C:\Users\Lodzia\Desktop\tata.png
[2014-10-26 10:46:41 | 000,118,025 | ---- | C] () -- C:\Users\Lodzia\Documents\dsadsa.xps
[2014-10-25 22:20:02 | 000,001,117 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk
[2014-10-25 22:20:01 | 000,001,035 | ---- | C] () -- C:\Users\Public\Desktop\foobar2000.lnk
[2014-10-25 20:09:21 | 000,000,219 | ---- | C] () -- C:\Users\Lodzia\Desktop\Dota 2.url
[2014-10-25 16:00:51 | 001,528,835 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-glow@2x.png
[2014-10-25 16:00:51 | 001,368,275 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-bottom@2x.png
[2014-10-25 16:00:51 | 001,018,612 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-top@2x.png
[2014-10-25 16:00:51 | 000,376,956 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-glow.png
[2014-10-25 16:00:51 | 000,309,536 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinnerbonus.wav
[2014-10-25 16:00:51 | 000,276,956 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-normal-hitfinish.wav
[2014-10-25 16:00:51 | 000,275,892 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-top.png
[2014-10-25 16:00:51 | 000,260,617 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-flower-group@x2.png
[2014-10-25 16:00:51 | 000,243,580 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-normal-hitwhistle.wav
[2014-10-25 16:00:51 | 000,208,300 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-normal-hitnormal.wav
[2014-10-25 16:00:51 | 000,171,044 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-soft-hitfinish.wav
[2014-10-25 16:00:51 | 000,164,948 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-soft-hitwhistle.wav
[2014-10-25 16:00:51 | 000,147,829 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-middle@2x.png
[2014-10-25 16:00:51 | 000,141,234 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-Slider-fail@2x.png
[2014-10-25 16:00:51 | 000,140,016 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-normal-hitclap.wav
[2014-10-25 16:00:51 | 000,133,012 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-soft-hitclap.wav
[2014-10-25 16:00:51 | 000,128,226 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit100k@2x.png
[2014-10-25 16:00:51 | 000,127,176 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-Slider@2x.png
[2014-10-25 16:00:51 | 000,121,471 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit100@2x.png
[2014-10-25 16:00:51 | 000,120,934 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit300k@2x.png
[2014-10-25 16:00:51 | 000,120,682 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit300g@2x.png
[2014-10-25 16:00:51 | 000,110,135 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-flower-group.png
[2014-10-25 16:00:51 | 000,104,694 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit300@2x.png
[2014-10-25 16:00:51 | 000,076,640 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-soft-hitnormal.wav
[2014-10-25 16:00:51 | 000,074,543 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-spin@2x.png
[2014-10-25 16:00:51 | 000,061,294 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit100k.png
[2014-10-25 16:00:51 | 000,060,375 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-clear@2x.png
[2014-10-25 16:00:51 | 000,060,254 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit0@2x.png
[2014-10-25 16:00:51 | 000,060,059 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit300k.png
[2014-10-25 16:00:51 | 000,059,628 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit300g.png
[2014-10-25 16:00:51 | 000,058,739 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-Slider-fail.png
[2014-10-25 16:00:51 | 000,056,896 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-middle.png
[2014-10-25 16:00:51 | 000,051,953 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-Slider.png
[2014-10-25 16:00:51 | 000,050,965 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit100.png
[2014-10-25 16:00:51 | 000,047,818 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit300.png
[2014-10-25 16:00:51 | 000,036,868 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinnerspin.wav
[2014-10-25 16:00:51 | 000,033,718 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-hit0.png
[2014-10-25 16:00:51 | 000,030,064 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-spin.png
[2014-10-25 16:00:51 | 000,029,548 | ---- | C] () -- C:\Users\Lodzia\Desktop\taikobigcircleoverlay@2x.png
[2014-10-25 16:00:51 | 000,028,414 | ---- | C] () -- C:\Users\Lodzia\Desktop\taikohitcircleoverlay@2x.png
[2014-10-25 16:00:51 | 000,024,792 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-clear.png
[2014-10-25 16:00:51 | 000,018,585 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-osu.png
[2014-10-25 16:00:51 | 000,011,985 | ---- | C] () -- C:\Users\Lodzia\Desktop\taikobigcircleoverlay.png
[2014-10-25 16:00:51 | 000,011,467 | ---- | C] () -- C:\Users\Lodzia\Desktop\taikohitcircleoverlay.png
[2014-10-25 16:00:51 | 000,011,457 | ---- | C] () -- C:\Users\Lodzia\Desktop\star@2x.png
[2014-10-25 16:00:51 | 000,008,485 | ---- | C] () -- C:\Users\Lodzia\Desktop\star2@2x.png
[2014-10-25 16:00:51 | 000,006,365 | ---- | C] () -- C:\Users\Lodzia\Desktop\star.png
[2014-10-25 16:00:51 | 000,004,814 | ---- | C] () -- C:\Users\Lodzia\Desktop\taikohitcircle@2x.png
[2014-10-25 16:00:51 | 000,004,791 | ---- | C] () -- C:\Users\Lodzia\Desktop\taikobigcircle@2x.png
[2014-10-25 16:00:51 | 000,004,627 | ---- | C] () -- C:\Users\Lodzia\Desktop\star2.png
[2014-10-25 16:00:51 | 000,004,600 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-roll-end@2x.png
[2014-10-25 16:00:51 | 000,003,637 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-middle2@2x.png
[2014-10-25 16:00:51 | 000,003,059 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-middle2.png
[2014-10-25 16:00:51 | 000,002,798 | ---- | C] () -- C:\Users\Lodzia\Desktop\taikobigcircle.png
[2014-10-25 16:00:51 | 000,002,797 | ---- | C] () -- C:\Users\Lodzia\Desktop\taikohitcircle.png
[2014-10-25 16:00:51 | 000,002,323 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-bar-right-glow.png
[2014-10-25 16:00:51 | 000,002,036 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-bar-right.png
[2014-10-25 16:00:51 | 000,001,774 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-roll-end.png
[2014-10-25 16:00:51 | 000,000,309 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-roll-middle.png
[2014-10-25 16:00:51 | 000,000,306 | ---- | C] () -- C:\Users\Lodzia\Desktop\taiko-roll-middle@2x.png
[2014-10-25 16:00:50 | 001,025,549 | ---- | C] () -- C:\Users\Lodzia\Desktop\menu-background@2x.png
[2014-10-25 16:00:50 | 000,402,392 | ---- | C] () -- C:\Users\Lodzia\Desktop\soft-hitfinish.wav
[2014-10-25 16:00:50 | 000,358,702 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-bottom.png
[2014-10-25 16:00:50 | 000,300,336 | ---- | C] () -- C:\Users\Lodzia\Desktop\normal-hitfinish.wav
[2014-10-25 16:00:50 | 000,260,671 | ---- | C] () -- C:\Users\Lodzia\Desktop\menu-background.png
[2014-10-25 16:00:50 | 000,223,744 | ---- | C] () -- C:\Users\Lodzia\Desktop\normal-sliderslide.wav
[2014-10-25 16:00:50 | 000,213,964 | ---- | C] () -- C:\Users\Lodzia\Desktop\normal-hitwhistle.wav
[2014-10-25 16:00:50 | 000,201,380 | ---- | C] () -- C:\Users\Lodzia\Desktop\normal-hitnormal.wav
[2014-10-25 16:00:50 | 000,190,611 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-perfect@2x.png
[2014-10-25 16:00:50 | 000,170,660 | ---- | C] () -- C:\Users\Lodzia\Desktop\menuhit.wav
[2014-10-25 16:00:50 | 000,148,668 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-B@2x.png
[2014-10-25 16:00:50 | 000,146,104 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-A@2x.png
[2014-10-25 16:00:50 | 000,146,083 | ---- | C] () -- C:\Users\Lodzia\Desktop\ready@2x.png
[2014-10-25 16:00:50 | 000,145,548 | ---- | C] () -- C:\Users\Lodzia\Desktop\soft-hitwhistle.wav
[2014-10-25 16:00:50 | 000,145,508 | ---- | C] () -- C:\Users\Lodzia\Desktop\soft-hitnormal.wav
[2014-10-25 16:00:50 | 000,143,812 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-X@2x.png
[2014-10-25 16:00:50 | 000,142,785 | ---- | C] () -- C:\Users\Lodzia\Desktop\scorebar-bg@2x.png
[2014-10-25 16:00:50 | 000,132,064 | ---- | C] () -- C:\Users\Lodzia\Desktop\menuback.wav
[2014-10-25 16:00:50 | 000,126,879 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-XH@2x.png
[2014-10-25 16:00:50 | 000,117,804 | ---- | C] () -- C:\Users\Lodzia\Desktop\soft-slidertick.wav
[2014-10-25 16:00:50 | 000,115,531 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-D@2x.png
[2014-10-25 16:00:50 | 000,114,684 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-S@2x.png
[2014-10-25 16:00:50 | 000,103,760 | ---- | C] () -- C:\Users\Lodzia\Desktop\soft-sliderslide.wav
[2014-10-25 16:00:50 | 000,096,863 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-SH@2x.png
[2014-10-25 16:00:50 | 000,096,475 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-C@2x.png
[2014-10-25 16:00:50 | 000,094,284 | ---- | C] () -- C:\Users\Lodzia\Desktop\normal-slidertick.wav
[2014-10-25 16:00:50 | 000,093,980 | ---- | C] () -- C:\Users\Lodzia\Desktop\menuclick.wav
[2014-10-25 16:00:50 | 000,084,800 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-osu@2x.png
[2014-10-25 16:00:50 | 000,084,728 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear6.png
[2014-10-25 16:00:50 | 000,083,291 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonkiai0.png
[2014-10-25 16:00:50 | 000,082,357 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear7.png
[2014-10-25 16:00:50 | 000,082,357 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear5.png
[2014-10-25 16:00:50 | 000,080,549 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonkiai1.png
[2014-10-25 16:00:50 | 000,078,937 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonfail2.png
[2014-10-25 16:00:50 | 000,078,630 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear2.png
[2014-10-25 16:00:50 | 000,078,038 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear0.png
[2014-10-25 16:00:50 | 000,076,536 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear8.png
[2014-10-25 16:00:50 | 000,076,536 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear4.png
[2014-10-25 16:00:50 | 000,074,597 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderfollowcircle@2x.png
[2014-10-25 16:00:50 | 000,073,926 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonidle0.png
[2014-10-25 16:00:50 | 000,073,810 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonfail1.png
[2014-10-25 16:00:50 | 000,073,471 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonfail0.png
[2014-10-25 16:00:50 | 000,069,641 | ---- | C] () -- C:\Users\Lodzia\Desktop\play-warningarrow@2x.png
[2014-10-25 16:00:50 | 000,067,256 | ---- | C] () -- C:\Users\Lodzia\Desktop\normal-sliderwhistle.wav
[2014-10-25 16:00:50 | 000,064,466 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonidle1.png
[2014-10-25 16:00:50 | 000,064,060 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-B.png
[2014-10-25 16:00:50 | 000,063,126 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-A.png
[2014-10-25 16:00:50 | 000,062,428 | ---- | C] () -- C:\Users\Lodzia\Desktop\pause-replay@2x.png
[2014-10-25 16:00:50 | 000,062,423 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-X.png
[2014-10-25 16:00:50 | 000,061,713 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-title@2x.png
[2014-10-25 16:00:50 | 000,060,795 | ---- | C] () -- C:\Users\Lodzia\Desktop\pause-back@2x.png
[2014-10-25 16:00:50 | 000,060,149 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-taiko@2x.png
[2014-10-25 16:00:50 | 000,059,505 | ---- | C] () -- C:\Users\Lodzia\Desktop\ready.png
[2014-10-25 16:00:50 | 000,059,381 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-panel@2x.png
[2014-10-25 16:00:50 | 000,055,537 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-perfect.png
[2014-10-25 16:00:50 | 000,055,344 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-approachcircle@2x.png
[2014-10-25 16:00:50 | 000,052,366 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-XH.png
[2014-10-25 16:00:50 | 000,049,879 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-D.png
[2014-10-25 16:00:50 | 000,049,852 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-S.png
[2014-10-25 16:00:50 | 000,048,385 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-mania@2x.png
[2014-10-25 16:00:50 | 000,047,580 | ---- | C] () -- C:\Users\Lodzia\Desktop\soft-sliderwhistle.wav
[2014-10-25 16:00:50 | 000,046,422 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-fruits@2x.png
[2014-10-25 16:00:50 | 000,043,891 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear1.png
[2014-10-25 16:00:50 | 000,043,585 | ---- | C] () -- C:\Users\Lodzia\Desktop\pause-continue@2x.png
[2014-10-25 16:00:50 | 000,041,907 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-C.png
[2014-10-25 16:00:50 | 000,040,920 | ---- | C] () -- C:\Users\Lodzia\Desktop\section-fail@2x.png
[2014-10-25 16:00:50 | 000,040,346 | ---- | C] () -- C:\Users\Lodzia\Desktop\pause-retry@2x.png
[2014-10-25 16:00:50 | 000,040,135 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-SH.png
[2014-10-25 16:00:50 | 000,039,792 | ---- | C] () -- C:\Users\Lodzia\Desktop\readys.wav
[2014-10-25 16:00:50 | 000,038,429 | ---- | C] () -- C:\Users\Lodzia\Desktop\scorebar-bg.png
[2014-10-25 16:00:50 | 000,038,291 | ---- | C] () -- C:\Users\Lodzia\Desktop\pippidonclear3.png
[2014-10-25 16:00:50 | 000,036,986 | ---- | C] () -- C:\Users\Lodzia\Desktop\play-skip@2x.png
[2014-10-25 16:00:50 | 000,031,382 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-osu.png
[2014-10-25 16:00:50 | 000,029,981 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderfollowcircle.png
[2014-10-25 16:00:50 | 000,029,397 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-osu-med@2x.png
[2014-10-25 16:00:50 | 000,027,253 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-title.png
[2014-10-25 16:00:50 | 000,027,144 | ---- | C] () -- C:\Users\Lodzia\Desktop\sectionpass.mp3
[2014-10-25 16:00:50 | 000,026,976 | ---- | C] () -- C:\Users\Lodzia\Desktop\section-pass@2x.png
[2014-10-25 16:00:50 | 000,025,578 | ---- | C] () -- C:\Users\Lodzia\Desktop\sectionfail.mp3
[2014-10-25 16:00:50 | 000,025,424 | ---- | C] () -- C:\Users\Lodzia\Desktop\spinner-approachcircle.png
[2014-10-25 16:00:50 | 000,025,384 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-panel.png
[2014-10-25 16:00:50 | 000,024,693 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-target@2x.png
[2014-10-25 16:00:50 | 000,024,285 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-accuracy@2x.png
[2014-10-25 16:00:50 | 000,023,383 | ---- | C] () -- C:\Users\Lodzia\Desktop\pause-replay.png
[2014-10-25 16:00:50 | 000,022,729 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-taiko.png
[2014-10-25 16:00:50 | 000,022,293 | ---- | C] () -- C:\Users\Lodzia\Desktop\pause-back.png
[2014-10-25 16:00:50 | 000,022,224 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-taiko-med@2x.png
[2014-10-25 16:00:50 | 000,022,080 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-options@2x.png
[2014-10-25 16:00:50 | 000,021,988 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-options-over@2x.png
[2014-10-25 16:00:50 | 000,021,258 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-selectoptions@2x.png
[2014-10-25 16:00:50 | 000,020,921 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-selectoptions-over@2x.png
[2014-10-25 16:00:50 | 000,020,107 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-maxcombo@2x.png
[2014-10-25 16:00:50 | 000,020,010 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-graph@2x.png
[2014-10-25 16:00:50 | 000,019,476 | ---- | C] () -- C:\Users\Lodzia\Desktop\soft-hitclap.wav
[2014-10-25 16:00:50 | 000,019,467 | ---- | C] () -- C:\Users\Lodzia\Desktop\menu-button-background@2x.png
[2014-10-25 16:00:50 | 000,019,407 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-hidden@2x.png
[2014-10-25 16:00:50 | 000,019,139 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-mania-med@2x.png
[2014-10-25 16:00:50 | 000,019,115 | ---- | C] () -- C:\Users\Lodzia\Desktop\play-warningarrow.png
[2014-10-25 16:00:50 | 000,018,738 | ---- | C] () -- C:\Users\Lodzia\Desktop\section-fail.png
[2014-10-25 16:00:50 | 000,018,637 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-nofail@2x.png
[2014-10-25 16:00:50 | 000,018,508 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-fruits-med@2x.png
[2014-10-25 16:00:50 | 000,018,368 | ---- | C] () -- C:\Users\Lodzia\Desktop\normal-hitclap.wav
[2014-10-25 16:00:50 | 000,018,367 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-mania.png
[2014-10-25 16:00:50 | 000,018,268 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb2@2x.png
[2014-10-25 16:00:50 | 000,018,182 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb3@2x.png
[2014-10-25 16:00:50 | 000,018,079 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-fruits.png
[2014-10-25 16:00:50 | 000,018,062 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb4@2x.png
[2014-10-25 16:00:50 | 000,017,884 | ---- | C] () -- C:\Users\Lodzia\Desktop\play-unranked@2x.png
[2014-10-25 16:00:50 | 000,017,792 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb1@2x.png
[2014-10-25 16:00:50 | 000,017,500 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-doubletime@2x.png
[2014-10-25 16:00:50 | 000,017,139 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb7@2x.png
[2014-10-25 16:00:50 | 000,017,084 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb8@2x.png
[2014-10-25 16:00:50 | 000,017,067 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb9@2x.png
[2014-10-25 16:00:50 | 000,017,053 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb0@2x.png
[2014-10-25 16:00:50 | 000,016,895 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb5@2x.png
[2014-10-25 16:00:50 | 000,016,702 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb6@2x.png
[2014-10-25 16:00:50 | 000,016,276 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-random@2x.png
[2014-10-25 16:00:50 | 000,016,016 | ---- | C] () -- C:\Users\Lodzia\Desktop\pause-continue.png
[2014-10-25 16:00:50 | 000,015,592 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-suddendeath@2x.png
[2014-10-25 16:00:50 | 000,015,569 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-spunout@2x.png
[2014-10-25 16:00:50 | 000,015,564 | ---- | C] () -- C:\Users\Lodzia\Desktop\pause-retry.png
[2014-10-25 16:00:50 | 000,015,498 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-cinema@2x.png
[2014-10-25 16:00:50 | 000,015,312 | ---- | C] () -- C:\Users\Lodzia\Desktop\play-skip.png
[2014-10-25 16:00:50 | 000,015,026 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-hardrock@2x.png
[2014-10-25 16:00:50 | 000,014,408 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mods-over@2x.png
[2014-10-25 16:00:50 | 000,014,227 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-nightcore@2x.png
[2014-10-25 16:00:50 | 000,014,165 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-random-over@2x.png
[2014-10-25 16:00:50 | 000,014,077 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mode-over@2x.png
[2014-10-25 16:00:50 | 000,013,516 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-random@2x.png
[2014-10-25 16:00:50 | 000,013,437 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-relax2@2x.png
[2014-10-25 16:00:50 | 000,013,126 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-fadein@2x.png
[2014-10-25 16:00:50 | 000,012,937 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-perfect@2x.png
[2014-10-25 16:00:50 | 000,012,555 | ---- | C] () -- C:\Users\Lodzia\Desktop\section-pass.png
[2014-10-25 16:00:50 | 000,012,205 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-halftime@2x.png
[2014-10-25 16:00:50 | 000,012,138 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-osu-med.png
[2014-10-25 16:00:50 | 000,011,910 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key8@2x.png
[2014-10-25 16:00:50 | 000,011,859 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-accuracy.png
[2014-10-25 16:00:50 | 000,011,749 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mods@2x.png
[2014-10-25 16:00:50 | 000,011,653 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mode@2x.png
[2014-10-25 16:00:50 | 000,010,894 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-autoplay@2x.png
[2014-10-25 16:00:50 | 000,010,763 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key7@2x.png
[2014-10-25 16:00:50 | 000,010,523 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-graph.png
[2014-10-25 16:00:50 | 000,010,105 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key6@2x.png
[2014-10-25 16:00:50 | 000,009,970 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-options-over.png
[2014-10-25 16:00:50 | 000,009,917 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-target.png
[2014-10-25 16:00:50 | 000,009,887 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-easy@2x.png
[2014-10-25 16:00:50 | 000,009,878 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-maxcombo.png
[2014-10-25 16:00:50 | 000,009,850 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-relax@2x.png
[2014-10-25 16:00:50 | 000,009,760 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-taiko-med.png
[2014-10-25 16:00:50 | 000,009,752 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-options.png
[2014-10-25 16:00:50 | 000,009,618 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-flashlight@2x.png
[2014-10-25 16:00:50 | 000,009,603 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-selectoptions-over.png
[2014-10-25 16:00:50 | 000,009,327 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-selectoptions.png
[2014-10-25 16:00:50 | 000,009,030 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-percent@2x.png
[2014-10-25 16:00:50 | 000,008,905 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key5@2x.png
[2014-10-25 16:00:50 | 000,008,813 | ---- | C] () -- C:\Users\Lodzia\Desktop\play-unranked.png
[2014-10-25 16:00:50 | 000,008,730 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-mania-med.png
[2014-10-25 16:00:50 | 000,008,694 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-X-small@2x.png
[2014-10-25 16:00:50 | 000,008,440 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-B-small@2x.png
[2014-10-25 16:00:50 | 000,008,438 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-fruits-med.png
[2014-10-25 16:00:50 | 000,008,299 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb2.png
[2014-10-25 16:00:50 | 000,008,276 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb3.png
[2014-10-25 16:00:50 | 000,008,270 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb4.png
[2014-10-25 16:00:50 | 000,008,196 | ---- | C] () -- C:\Users\Lodzia\Desktop\menu-button-background.png
[2014-10-25 16:00:50 | 000,008,126 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb1.png
[2014-10-25 16:00:50 | 000,008,072 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb5.png
[2014-10-25 16:00:50 | 000,008,045 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb0.png
[2014-10-25 16:00:50 | 000,007,998 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-nofail.png
[2014-10-25 16:00:50 | 000,007,936 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-8@2x.png
[2014-10-25 16:00:50 | 000,007,926 | ---- | C] () -- C:\Users\Lodzia\Desktop\reversearrow@2x.png
[2014-10-25 16:00:50 | 000,007,919 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-A-small@2x.png
[2014-10-25 16:00:50 | 000,007,900 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb6.png
[2014-10-25 16:00:50 | 000,007,856 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb9.png
[2014-10-25 16:00:50 | 000,007,842 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-hidden.png
[2014-10-25 16:00:50 | 000,007,830 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb7.png
[2014-10-25 16:00:50 | 000,007,797 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderb8.png
[2014-10-25 16:00:50 | 000,007,698 | ---- | C] () -- C:\Users\Lodzia\Desktop\menu-back@2x.png
[2014-10-25 16:00:50 | 000,007,675 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-XH-small@2x.png
[2014-10-25 16:00:50 | 000,007,637 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key4@2x.png
[2014-10-25 16:00:50 | 000,007,384 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-hardrock.png
[2014-10-25 16:00:50 | 000,007,350 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-suddendeath.png
[2014-10-25 16:00:50 | 000,007,265 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-doubletime.png
[2014-10-25 16:00:50 | 000,007,247 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-S-small@2x.png
[2014-10-25 16:00:50 | 000,007,191 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-x@2x.png
[2014-10-25 16:00:50 | 000,007,142 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-random.png
[2014-10-25 16:00:50 | 000,007,101 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-D-small@2x.png
[2014-10-25 16:00:50 | 000,007,061 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-random-over.png
[2014-10-25 16:00:50 | 000,007,053 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mods-over.png
[2014-10-25 16:00:50 | 000,006,959 | ---- | C] () -- C:\Users\Lodzia\Desktop\scorebar-marker@2x.png
[2014-10-25 16:00:50 | 000,006,933 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-spunout.png
[2014-10-25 16:00:50 | 000,006,743 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-random.png
[2014-10-25 16:00:50 | 000,006,740 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mode-over.png
[2014-10-25 16:00:50 | 000,006,438 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-SH-small@2x.png
[2014-10-25 16:00:50 | 000,006,375 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-6@2x.png
[2014-10-25 16:00:50 | 000,006,262 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-C-small@2x.png
[2014-10-25 16:00:50 | 000,006,229 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-9@2x.png
[2014-10-25 16:00:50 | 000,006,189 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-cinema.png
[2014-10-25 16:00:50 | 000,006,157 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mods.png
[2014-10-25 16:00:50 | 000,006,098 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mode.png
[2014-10-25 16:00:50 | 000,006,069 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-relax2.png
[2014-10-25 16:00:50 | 000,006,050 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-nightcore.png
[2014-10-25 16:00:50 | 000,006,010 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-0@2x.png
[2014-10-25 16:00:50 | 000,005,918 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-3@2x.png
[2014-10-25 16:00:50 | 000,005,766 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-7@2x.png
[2014-10-25 16:00:50 | 000,005,710 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-2@2x.png
[2014-10-25 16:00:50 | 000,005,620 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key8.png
[2014-10-25 16:00:50 | 000,005,609 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-percent.png
[2014-10-25 16:00:50 | 000,005,597 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-perfect.png
[2014-10-25 16:00:50 | 000,005,508 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-fadein.png
[2014-10-25 16:00:50 | 000,005,214 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-osu-small@2x.png
[2014-10-25 16:00:50 | 000,005,157 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-5@2x.png
[2014-10-25 16:00:50 | 000,005,099 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key7.png
[2014-10-25 16:00:50 | 000,005,010 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-halftime.png
[2014-10-25 16:00:50 | 000,004,935 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-X-small.png
[2014-10-25 16:00:50 | 000,004,929 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-autoplay.png
[2014-10-25 16:00:50 | 000,004,809 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderscorepoint@2x.png
[2014-10-25 16:00:50 | 000,004,798 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-8.png
[2014-10-25 16:00:50 | 000,004,793 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-A-small.png
[2014-10-25 16:00:50 | 000,004,786 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key6.png
[2014-10-25 16:00:50 | 000,004,774 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-B-small.png
[2014-10-25 16:00:50 | 000,004,765 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-4@2x.png
[2014-10-25 16:00:50 | 000,004,665 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-XH-small.png
[2014-10-25 16:00:50 | 000,004,638 | ---- | C] () -- C:\Users\Lodzia\Desktop\reversearrow.png
[2014-10-25 16:00:50 | 000,004,601 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-taiko-small@2x.png
[2014-10-25 16:00:50 | 000,004,564 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-D-small.png
[2014-10-25 16:00:50 | 000,004,469 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-easy.png
[2014-10-25 16:00:50 | 000,004,458 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-S-small.png
[2014-10-25 16:00:50 | 000,004,389 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-x.png
[2014-10-25 16:00:50 | 000,004,383 | ---- | C] () -- C:\Users\Lodzia\Desktop\particle300@2x.png
[2014-10-25 16:00:50 | 000,004,373 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-flashlight.png
[2014-10-25 16:00:50 | 000,004,308 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key5.png
[2014-10-25 16:00:50 | 000,004,258 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-relax.png
[2014-10-25 16:00:50 | 000,004,225 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-SH-small.png
[2014-10-25 16:00:50 | 000,004,208 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-fruits-small@2x.png
[2014-10-25 16:00:50 | 000,004,202 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-6.png
[2014-10-25 16:00:50 | 000,004,183 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-9.png
[2014-10-25 16:00:50 | 000,004,161 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-7.png
[2014-10-25 16:00:50 | 000,004,121 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-comma@2x.png
[2014-10-25 16:00:50 | 000,004,094 | ---- | C] () -- C:\Users\Lodzia\Desktop\ranking-C-small.png
[2014-10-25 16:00:50 | 000,004,078 | ---- | C] () -- C:\Users\Lodzia\Desktop\particle50@2x.png
[2014-10-25 16:00:50 | 000,004,075 | ---- | C] () -- C:\Users\Lodzia\Desktop\particle100@2x.png
[2014-10-25 16:00:50 | 000,004,033 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-3.png
[2014-10-25 16:00:50 | 000,004,018 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-0.png
[2014-10-25 16:00:50 | 000,004,002 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-mania-small@2x.png
[2014-10-25 16:00:50 | 000,003,978 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-2.png
[2014-10-25 16:00:50 | 000,003,954 | ---- | C] () -- C:\Users\Lodzia\Desktop\scorebar-marker.png
[2014-10-25 16:00:50 | 000,003,929 | ---- | C] () -- C:\Users\Lodzia\Desktop\menu-back.png
[2014-10-25 16:00:50 | 000,003,867 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-dot@2x.png
[2014-10-25 16:00:50 | 000,003,770 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-osu-small.png
[2014-10-25 16:00:50 | 000,003,752 | ---- | C] () -- C:\Users\Lodzia\Desktop\selection-mod-key4.png
[2014-10-25 16:00:50 | 000,003,742 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-5.png
[2014-10-25 16:00:50 | 000,003,684 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-4.png
[2014-10-25 16:00:50 | 000,003,551 | ---- | C] () -- C:\Users\Lodzia\Desktop\scorebar-colour@2x.png
[2014-10-25 16:00:50 | 000,003,512 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-taiko-small.png
[2014-10-25 16:00:50 | 000,003,437 | ---- | C] () -- C:\Users\Lodzia\Desktop\sliderscorepoint.png
[2014-10-25 16:00:50 | 000,003,428 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-1@2x.png
[2014-10-25 16:00:50 | 000,003,399 | ---- | C] () -- C:\Users\Lodzia\Desktop\particle300.png
[2014-10-25 16:00:50 | 000,003,384 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-fruits-small.png
[2014-10-25 16:00:50 | 000,003,323 | ---- | C] () -- C:\Users\Lodzia\Desktop\mode-mania-small.png
[2014-10-25 16:00:50 | 000,003,302 | ---- | C] () -- C:\Users\Lodzia\Desktop\particle50.png
[2014-10-25 16:00:50 | 000,003,298 | ---- | C] () -- C:\Users\Lodzia\Desktop\particle100.png
[2014-10-25 16:00:50 | 000,003,270 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-comma.png
[2014-10-25 16:00:50 | 000,003,132 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-dot.png
[2014-10-25 16:00:50 | 000,003,066 | ---- | C] () -- C:\Users\Lodzia\Desktop\score-1.png
[2014-10-25 16:00:50 | 000,002,999 | ---- | C] () -- C:\Users\Lodzia\Desktop\scorebar-colour.png
[2014-10-25 16:00:50 | 000,001,568 | ---- | C] () -- C:\Users\Lodzia\Desktop\mania-stage-left.png
[2014-10-25 16:00:50 | 000,001,333 | ---- | C] () -- C:\Users\Lodzia\Desktop\mania-stage-right.png
[2014-10-25 16:00:50 | 000,001,052 | ---- | C] () -- C:\Users\Lodzia\Desktop\skin.ini
[2014-10-25 16:00:50 | 000,000,495 | ---- | C] () -- C:\Users\Lodzia\Desktop\mania-stage-light.png
[2014-10-21 16:12:41 | 000,132,157 | ---- | C] () -- C:\Users\Lodzia\Documents\360fx360f21.png
[2014-10-18 22:57:08 | 000,023,850 | ---- | C] () -- C:\Users\Lodzia\Documents\10735809_552168081550697_926634028_n.jpg
[2014-10-14 18:27:35 | 002,578,182 | ---- | C] () -- C:\Users\Lodzia\Documents\321.png
[2014-10-14 18:10:14 | 002,635,570 | ---- | C] () -- C:\Users\Lodzia\Documents\123.png
[2014-10-13 16:28:40 | 000,091,334 | ---- | C] () -- C:\Users\Lodzia\Documents\Pirates4JackSparrowPosterCropped.jpg
[2014-10-07 15:16:46 | 000,001,278 | ---- | C] () -- C:\Users\Lodzia\Desktop\Middle Earth Shadow of Mordor.lnk
[2014-09-06 14:13:08 | 002,329,040 | ---- | C] () -- C:\Users\Lodzia\ts3_recording_14_09_06_15_13_4.wav
[2014-07-05 08:57:29 | 000,297,088 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2014-07-05 08:57:28 | 000,076,152 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2014-07-04 19:02:32 | 000,765,280 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014-07-04 19:00:55 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
[2013-08-27 13:00:08 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2010-11-21 04:23:55 | 014,174,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2010-11-21 04:24:02 | 012,872,192 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== LOP Check ==========[/color]

[2014-08-21 23:42:25 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Awesomium
[2014-07-11 23:51:57 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Battle.net
[2014-10-05 11:27:35 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\DAEMON Tools Lite
[2014-10-06 19:25:26 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\FileZilla
[2014-10-30 20:42:17 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\foobar2000
[2014-07-04 15:40:04 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\LolClient
[2014-10-30 18:27:21 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Micorsoft
[2014-08-05 20:13:40 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Notepad++
[2014-10-29 21:57:56 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\OBS
[2014-07-13 19:04:57 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Origin
[2014-08-21 00:58:58 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\pxgclient
[2014-07-07 10:57:58 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\RIFT
[2014-07-04 13:18:54 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Riot Games
[2014-09-27 09:57:46 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Spotify
[2014-10-07 15:17:40 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Steam
[2014-09-29 12:57:22 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\TechSmith
[2014-08-27 01:18:21 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Tibia
[2014-09-01 08:29:22 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\Tibiacast
[2014-11-02 02:15:52 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\TS3Client
[2014-11-01 12:23:37 | 000,000,000 | ---D | M] -- C:\Users\Lodzia\AppData\Roaming\uTorrent

[color=#E56717]========== Purity Check ==========[/color]



< End of report >

frst:
Kod: Zaznacz wszystko
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-11-2014
Ran by Lodzia (administrator) on LODZIA-PC on 02-11-2014 10:00:24
Running from C:\Users\Lodzia\Downloads
Loaded Profiles: Lodzia & UpdatusUser (Available profiles: Lodzia & UpdatusUser)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Spotify Ltd) C:\Users\Lodzia\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
() C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe
() C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe
() C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe
() C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe
() C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe
() C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
() C:\Program Files (x86)\Gaming Mouse\G3 Mouse\G2Monitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448 2013-09-05] (Realtek Semiconductor)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-09-16] (Intel Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKLM-x32\...\Run: [G3 mouse] => C:\Program Files (x86)\Gaming Mouse\G3 Mouse\G2Monitor.exe [495616 2013-10-07] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [GoogleChromeAutoLaunch_19B9F9630692E10ED0F223A422453499] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [854344 2014-10-22] (Google Inc.)
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [Spotify Web Helper] => C:\Users\Lodzia\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1245752 2014-09-17] (Spotify Ltd)
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\Lodzia\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [mspcvsc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe [990208 2014-09-17] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [rebedll.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe [990208 2014-09-25] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [xexlc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe [990208 2014-09-30] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dovehd.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe [990208 2014-10-08] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [hiser.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe [990208 2014-10-28] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dllstack.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe [990208 2014-10-30] ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x76BF97F382EBCF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pl
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg64.dll (Google Inc.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 91.232.90.18 91.232.90.19 91.232.90.18 91.232.90.19 91.232.90.18 91.232.90.19

FireFox:
========
FF ProfilePath: C:\Users\Lodzia\AppData\Roaming\Mozilla\Firefox\Profiles\lg9h5jcx.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Extension: YouTube Video and Audio Downloader - C:\Users\Lodzia\AppData\Roaming\Mozilla\Firefox\Profiles\lg9h5jcx.default\Extensions\feca4b87-3be4-43da-a1b1-137c24220968@jetpack.xpi [2014-07-22]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://google.pl/", "hxxp://www.google.com"
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Profile: C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-04]
CHR Extension: (Google Drive) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-04]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-04]
CHR Extension: (YouTube) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-04]
CHR Extension: (Adblock Plus) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-08-05]
CHR Extension: (Google Search) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-04]
CHR Extension: (AdBlock) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-07-04]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-08-09]
CHR Extension: (ProxMate) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki [2014-07-04]
CHR Extension: (Google Wallet) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-04]
CHR Extension: (ChromePW) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeiimoikalhhgfhfkfhngehekefpiaag [2014-08-09]
CHR Extension: (Gmail) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-04]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [448384 2014-09-17] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [54976 2013-07-25] (Intel Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-09-26] (MICRO-STAR INTERNATIONAL CO., LTD.)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-07-05] ()

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-10-05] (Disc Soft Ltd)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S3 MSICDSetup; \??\E:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-02 10:00 - 2014-11-02 10:00 - 00013767 _____ () C:\Users\Lodzia\Downloads\FRST.txt
2014-11-02 09:59 - 2014-11-02 10:00 - 00000000 ____D () C:\FRST
2014-11-02 09:58 - 2014-11-02 09:58 - 00000000 ____D () C:\Users\Lodzia\Desktop\logi
2014-11-02 09:55 - 2014-11-02 09:55 - 01998336 _____ () C:\Users\Lodzia\Downloads\AdwCleaner.exe
2014-11-02 09:54 - 2014-11-02 09:54 - 01292800 _____ () C:\Users\Lodzia\Downloads\zoek.exe
2014-11-02 09:53 - 2014-11-02 09:53 - 02114048 _____ (Farbar) C:\Users\Lodzia\Downloads\FRST64.exe
2014-11-02 09:53 - 2014-11-02 09:53 - 00602112 _____ (OldTimer Tools) C:\Users\Lodzia\Downloads\OTL.exe
2014-10-29 23:20 - 2014-10-29 23:20 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-10-27 16:07 - 2014-10-27 16:07 - 00000000 ____D () C:\Users\Lodzia\Desktop\asdasd
2014-10-27 13:37 - 2014-10-27 13:37 - 00000000 ____D () C:\ProgramData\McAfee
2014-10-27 13:36 - 2014-10-27 13:37 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\Adobe
2014-10-26 17:24 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-10-26 17:24 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-10-26 17:24 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-10-26 17:24 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-10-26 17:24 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-10-26 17:24 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-10-26 17:24 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-10-26 17:24 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-10-26 17:24 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-10-26 17:24 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-10-26 17:24 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-10-26 17:24 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-10-26 17:24 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-10-26 17:24 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-10-26 17:24 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-10-26 17:24 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-10-26 17:24 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-10-26 17:24 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-10-26 17:24 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-10-26 17:24 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-10-26 17:24 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-10-26 17:24 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-10-26 17:24 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-10-26 17:24 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-10-26 17:24 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-10-26 17:24 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-10-26 17:24 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-10-26 17:24 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-10-26 17:24 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-10-26 17:24 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-10-26 17:24 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-10-26 17:24 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-10-26 17:24 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-10-26 17:24 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-10-26 17:24 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-10-26 17:24 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-10-26 17:24 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-10-26 17:24 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-10-26 17:24 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-10-26 17:24 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-10-26 17:23 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-10-26 17:23 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-10-26 17:23 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2014-10-26 17:23 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-10-26 17:23 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2014-10-26 17:23 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-10-26 17:23 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2014-10-26 17:23 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2014-10-26 17:23 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-10-26 17:23 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2014-10-26 17:23 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-10-26 17:23 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2014-10-26 17:23 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-10-26 17:23 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2014-10-26 17:23 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-10-26 17:23 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2014-10-26 17:23 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-10-26 17:23 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-10-26 17:23 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2014-10-26 17:23 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-10-26 17:23 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-10-26 17:23 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2014-10-26 17:23 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-10-26 17:23 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2014-10-26 17:23 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-10-26 17:23 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-10-26 17:23 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2014-10-26 17:23 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2014-10-26 17:23 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2014-10-26 17:23 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-10-26 17:23 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-10-26 17:23 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-10-26 17:23 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2014-10-26 17:23 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2014-10-26 17:23 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-10-26 17:23 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2014-10-26 17:23 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-10-26 17:23 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2014-10-26 17:23 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-10-26 17:23 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2014-10-26 17:23 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-10-26 17:23 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2014-10-26 17:23 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-10-26 17:23 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2014-10-26 17:23 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-10-26 17:23 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2014-10-26 17:23 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-10-26 17:23 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2014-10-26 17:23 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-10-26 17:23 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2014-10-26 17:23 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-10-26 17:23 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2014-10-26 17:23 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-10-26 17:23 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2014-10-26 17:23 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-10-26 10:46 - 2014-10-26 10:47 - 00118025 _____ () C:\Users\Lodzia\Documents\dsadsa.xps
2014-10-25 22:20 - 2014-10-30 20:42 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\foobar2000
2014-10-25 22:20 - 2014-10-25 22:20 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk
2014-10-25 22:20 - 2014-10-25 22:20 - 00001035 _____ () C:\Users\Public\Desktop\foobar2000.lnk
2014-10-25 22:20 - 2014-10-25 22:20 - 00000000 ____D () C:\Program Files (x86)\foobar2000
2014-10-25 20:09 - 2014-10-25 20:09 - 00000219 _____ () C:\Users\Lodzia\Desktop\Dota 2.url
2014-10-25 16:00 - 2014-04-11 13:30 - 00001052 _____ () C:\Users\Lodzia\Desktop\skin.ini
2014-10-25 16:00 - 2014-03-09 14:37 - 00402392 _____ () C:\Users\Lodzia\Desktop\soft-hitfinish.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00309536 _____ () C:\Users\Lodzia\Desktop\spinnerbonus.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00300336 _____ () C:\Users\Lodzia\Desktop\normal-hitfinish.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00276956 _____ () C:\Users\Lodzia\Desktop\taiko-normal-hitfinish.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00243580 _____ () C:\Users\Lodzia\Desktop\taiko-normal-hitwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00223744 _____ () C:\Users\Lodzia\Desktop\normal-sliderslide.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00213964 _____ () C:\Users\Lodzia\Desktop\normal-hitwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00208300 _____ () C:\Users\Lodzia\Desktop\taiko-normal-hitnormal.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00201380 _____ () C:\Users\Lodzia\Desktop\normal-hitnormal.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00171044 _____ () C:\Users\Lodzia\Desktop\taiko-soft-hitfinish.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00170660 _____ () C:\Users\Lodzia\Desktop\menuhit.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00164948 _____ () C:\Users\Lodzia\Desktop\taiko-soft-hitwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00145548 _____ () C:\Users\Lodzia\Desktop\soft-hitwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00145508 _____ () C:\Users\Lodzia\Desktop\soft-hitnormal.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00140016 _____ () C:\Users\Lodzia\Desktop\taiko-normal-hitclap.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00133012 _____ () C:\Users\Lodzia\Desktop\taiko-soft-hitclap.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00132064 _____ () C:\Users\Lodzia\Desktop\menuback.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00117804 _____ () C:\Users\Lodzia\Desktop\soft-slidertick.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00103760 _____ () C:\Users\Lodzia\Desktop\soft-sliderslide.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00094284 _____ () C:\Users\Lodzia\Desktop\normal-slidertick.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00093980 _____ () C:\Users\Lodzia\Desktop\menuclick.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00076640 _____ () C:\Users\Lodzia\Desktop\taiko-soft-hitnormal.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00067256 _____ () C:\Users\Lodzia\Desktop\normal-sliderwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00047580 _____ () C:\Users\Lodzia\Desktop\soft-sliderwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00039792 _____ () C:\Users\Lodzia\Desktop\readys.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00036868 _____ () C:\Users\Lodzia\Desktop\spinnerspin.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00019476 _____ () C:\Users\Lodzia\Desktop\soft-hitclap.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00018368 _____ () C:\Users\Lodzia\Desktop\normal-hitclap.wav
2014-10-19 10:57 - 2014-10-19 10:57 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-10-07 15:17 - 2014-10-07 15:17 - 00000000 ____D () C:\Users\Lodzia\Documents\WB Games
2014-10-07 15:17 - 2014-10-07 15:17 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Steam
2014-10-07 15:16 - 2014-10-07 15:16 - 00001278 _____ () C:\Users\Lodzia\Desktop\Middle Earth Shadow of Mordor.lnk
2014-10-07 15:16 - 2014-10-07 15:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Middle Earth Shadow of Mordor
2014-10-07 14:57 - 2014-10-07 15:16 - 00000000 ____D () C:\Program Files (x86)\Middle Earth Shadow of Mordor
2014-10-05 13:26 - 2010-08-30 07:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-10-05 13:24 - 2014-11-02 09:57 - 00000000 ____D () C:\AdwCleaner
2014-10-05 12:24 - 2014-10-05 12:24 - 00000000 ____D () C:\ProgramData\Orbit
2014-10-05 11:53 - 2014-10-05 11:53 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2014-10-05 11:53 - 2014-10-05 11:53 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\Ubisoft Game Launcher
2014-10-05 11:53 - 2014-10-05 11:53 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2014-10-05 11:25 - 2014-10-05 11:27 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\DAEMON Tools Lite
2014-10-05 11:25 - 2014-10-05 11:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-10-05 11:25 - 2014-10-05 11:27 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-10-05 11:25 - 2014-10-05 11:25 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-10-05 11:25 - 2014-10-05 11:25 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-10-04 22:07 - 2014-10-12 14:32 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\CrashDumps

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-02 09:58 - 2014-07-04 19:01 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-02 09:58 - 2014-07-04 13:11 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-02 09:58 - 2010-11-21 04:47 - 00152646 _____ () C:\Windows\PFRO.log
2014-11-02 09:58 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-02 09:58 - 2009-07-14 05:51 - 00059521 _____ () C:\Windows\setupact.log
2014-11-02 09:57 - 2014-07-04 18:56 - 00614352 _____ () C:\Windows\WindowsUpdate.log
2014-11-02 09:17 - 2014-07-04 19:01 - 00001048 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-02 09:14 - 2014-07-04 14:35 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-02 02:15 - 2014-07-04 13:33 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\TS3Client
2014-11-02 02:14 - 2014-07-05 22:46 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-11-01 19:27 - 2014-09-19 14:37 - 00000000 ____D () C:\Program Files (x86)\osu!
2014-11-01 18:25 - 2009-07-14 06:13 - 00781298 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-01 15:31 - 2014-07-04 16:41 - 00000000 ____D () C:\Users\Lodzia\Documents\FIFA World
2014-11-01 15:31 - 2014-07-04 15:50 - 00000000 ____D () C:\ProgramData\Origin
2014-11-01 15:17 - 2014-07-04 15:50 - 00000000 ____D () C:\Users\Lodzia\origin
2014-11-01 12:23 - 2014-07-12 18:13 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\uTorrent
2014-11-01 09:42 - 2009-07-14 05:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-01 09:42 - 2009-07-14 05:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-31 14:29 - 2014-07-04 13:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-30 18:27 - 2014-09-30 20:03 - 00001096 _____ () C:\Users\Public\Desktop\XenoSuite Launcher.lnk
2014-10-30 18:27 - 2014-09-30 20:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XenoBot
2014-10-30 18:27 - 2014-09-30 20:03 - 00000000 ____D () C:\Program Files (x86)\XenoBot
2014-10-30 18:27 - 2014-09-20 14:10 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Micorsoft
2014-10-30 16:19 - 2014-08-26 15:36 - 00000000 ____D () C:\Program Files (x86)\Tibia
2014-10-29 21:57 - 2014-08-26 15:48 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\OBS
2014-10-28 14:18 - 2014-07-04 19:01 - 00002189 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-27 13:37 - 2014-07-04 14:35 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-10-27 13:37 - 2014-07-04 14:35 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-27 13:37 - 2014-07-04 14:35 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-10-26 17:24 - 2014-07-04 13:25 - 00272644 _____ () C:\Windows\DirectX.log
2014-10-25 20:40 - 2014-08-21 23:41 - 00000000 ____D () C:\ProgramData\Hi-Rez Studios
2014-10-25 20:40 - 2014-07-04 18:59 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-10-25 20:39 - 2014-07-05 22:52 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-10-25 20:38 - 2014-07-29 16:14 - 00000000 ____D () C:\Games
2014-10-25 20:38 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-10-24 21:24 - 2014-08-26 16:00 - 00000000 ____D () C:\Program Files (x86)\SpeedFan
2014-10-24 19:51 - 2014-07-28 12:22 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\ChomikBox
2014-10-24 19:51 - 2014-07-28 12:22 - 00000000 ____D () C:\Users\Lodzia\.gstreamer-0.10
2014-10-21 16:13 - 2014-07-24 01:15 - 00193024 ___SH () C:\Users\Lodzia\Documents\Thumbs.db
2014-10-19 01:12 - 2014-07-04 19:01 - 00004044 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-19 01:12 - 2014-07-04 19:01 - 00003792 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-10 13:06 - 2014-08-26 15:48 - 00000000 ____D () C:\Program Files\OBS
2014-10-06 19:25 - 2014-08-17 19:13 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\FileZilla
2014-10-05 12:24 - 2014-08-03 15:08 - 00000000 ____D () C:\Users\Lodzia\Documents\My Games
2014-10-04 22:10 - 2014-09-17 12:56 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\ArmA 2 OA
2014-10-03 12:55 - 2014-09-17 12:51 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive

Some content of TEMP:
====================
C:\Users\Lodzia\AppData\Local\Temp\devcon64.exe
C:\Users\Lodzia\AppData\Local\Temp\Quarantine.exe
C:\Users\Lodzia\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Lodzia\AppData\Local\Temp\sfextra.dll
C:\Users\Lodzia\AppData\Local\Temp\sqlite3.dll
C:\Users\Lodzia\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\Lodzia\AppData\Local\Temp\SymCCIS.dll
C:\Users\Lodzia\AppData\Local\Temp\xmlUpdater.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-26 21:14

==================== End Of Log ============================

adw:
Kod: Zaznacz wszystko
# AdwCleaner v4.002 - Report created 02/11/2014 at 09:57:19
# DB v2014-10-26.6
# Updated 27/10/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Lodzia - LODZIA-PC
# Running from : C:\Users\Lodzia\Downloads\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GoogleUpdate.exe

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7601.17514


-\\ Mozilla Firefox v33.0.2 (x86 pl)


-\\ Google Chrome v38.0.2125.111


*************************

AdwCleaner[R0].txt - [1648 octets] - [05/10/2014 13:25:41]
AdwCleaner[R1].txt - [908 octets] - [18/10/2014 21:47:40]
AdwCleaner[R2].txt - [1133 octets] - [02/11/2014 09:56:15]
AdwCleaner[S0].txt - [3341 octets] - [05/10/2014 13:26:18]
AdwCleaner[S1].txt - [1078 octets] - [18/10/2014 21:48:28]
AdwCleaner[S2].txt - [1050 octets] - [02/11/2014 09:57:19]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1110 octets] ##########
Awatar użytkownika
Lijke
~user
 
Posty: 540
Dołączenie: 02 Lip 2008, 19:56
Miejscowość: Wolsztyn
Pochwały: 5



Za duże zużycie ram

Postprzez ordynat 02 Lis 2014, 13:45

HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [mspcvsc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe [990208 2014-09-17] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [rebedll.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe [990208 2014-09-25] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [xexlc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe [990208 2014-09-30] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dovehd.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe [990208 2014-10-08] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [hiser.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe [990208 2014-10-28] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dllstack.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe [990208 2014-10-30] ()

Nie znam tych plików. Znasz je?
Sprawdź je na --> JOTTI/ albo na VIRUSTOTAL

Kosmetyka:
Otwórz Notatnik i wklej w nim:
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\Lodzia\AppData\Local\Akamai\netsession_win.exe"
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
S3 MSICDSetup; \??\E:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]
EmptyTemp:

Plik zapisz pod nazwą [color="#483D8B"]fixlist.txt[/color] i umieść obok FRST. Uruchom FRST i kliknij przycisk Fix.
Powstanie plik fixlog.txt.
Daj ten log.

.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Za duże zużycie ram

Postprzez Lijke 02 Lis 2014, 13:57

ordynat napisał(a):
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [mspcvsc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe [990208 2014-09-17] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [rebedll.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe [990208 2014-09-25] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [xexlc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe [990208 2014-09-30] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dovehd.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe [990208 2014-10-08] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [hiser.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe [990208 2014-10-28] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dllstack.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe [990208 2014-10-30] ()

Nie znam tych plików. Znasz je?

nie znam ich po zeskanowaniu
http://virusscan.jotti.org/pl/scanresult/4bb14a86751142395e4176241a61607be3cf2ca0
http://virusscan.jotti.org/pl/scanresult/a02f68ad8c2c8ed40e81a9a5769af8af65171479

log:
Kod: Zaznacz wszystko
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-11-2014
Ran by Lodzia at 2014-11-02 12:56:05 Run:1
Running from C:\Users\Lodzia\Downloads\New folder
Loaded Profiles: Lodzia & UpdatusUser (Available profiles: Lodzia & UpdatusUser)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************

*****************


==== End of Fixlog ====
Awatar użytkownika
Lijke
~user
 
Posty: 540
Dołączenie: 02 Lip 2008, 19:56
Miejscowość: Wolsztyn
Pochwały: 5



Za duże zużycie ram

Postprzez ordynat 02 Lis 2014, 14:15

C:\Users\Lodzia\AppData\Roaming\Micorsoft

Dopiero teraz zauważyłem, że to nie są pliki Microsoftu.

Otwórz Notatnik i wklej w nim:
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [mspcvsc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [rebedll.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [xexlc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dovehd.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [hiser.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dllstack.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe
EmptyTemp:

Plik zapisz pod nazwą [color="#483D8B"]fixlist.txt[/color] i umieść obok FRST. Uruchom FRST i kliknij przycisk Fix.
Powstanie plik fixlog.txt.
Daj ten log.

Zrób nowe logi FRST (FRST.txt i Additional.txt)
.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Za duże zużycie ram

Postprzez Lijke 02 Lis 2014, 14:20

Kod: Zaznacz wszystko
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-11-2014
Ran by Lodzia at 2014-11-02 13:21:51 Run:3
Running from C:\Users\Lodzia\Downloads\New folder
Loaded Profiles: Lodzia & UpdatusUser (Available profiles: Lodzia & UpdatusUser)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [mspcvsc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [rebedll.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [xexlc.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dovehd.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [hiser.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [dllstack.exe] => C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe
C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe
EmptyTemp:
*****************

HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\Software\Microsoft\Windows\CurrentVersion\Run\\mspcvsc.exe => value deleted successfully.
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\Software\Microsoft\Windows\CurrentVersion\Run\\rebedll.exe => value deleted successfully.
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\Software\Microsoft\Windows\CurrentVersion\Run\\xexlc.exe => value deleted successfully.
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\Software\Microsoft\Windows\CurrentVersion\Run\\dovehd.exe => value deleted successfully.
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\Software\Microsoft\Windows\CurrentVersion\Run\\hiser.exe => value deleted successfully.
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\Software\Microsoft\Windows\CurrentVersion\Run\\dllstack.exe => value deleted successfully.
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\mspcvsc.exe => Moved successfully.
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\rebedll.exe => Moved successfully.
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\xexlc.exe => Moved successfully.
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\dovehd.exe => Moved successfully.
C:\Users\Lodzia\AppData\Roaming\Micorsoft\SLQ\hiser.exe => Moved successfully.
C:\Users\Lodzia\AppData\Roaming\Micorsoft\Send\dllstack.exe => Moved successfully.
EmptyTemp: => Removed 1 GB temporary data.


The system needed a reboot.

==== End of Fixlog ====
Awatar użytkownika
Lijke
~user
 
Posty: 540
Dołączenie: 02 Lip 2008, 19:56
Miejscowość: Wolsztyn
Pochwały: 5



Za duże zużycie ram

Postprzez ordynat 02 Lis 2014, 16:19

Zrób nowe logi FRST (FRST.txt i Additional.txt)

Tego jeszcze nie zrobiłeś.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Za duże zużycie ram

Postprzez Lijke 03 Lis 2014, 15:49

Kod: Zaznacz wszystko
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-11-2014
Ran by Lodzia (administrator) on LODZIA-PC on 03-11-2014 14:48:12
Running from C:\Users\Lodzia\Downloads\New folder
Loaded Profiles: Lodzia & UpdatusUser (Available profiles: Lodzia & UpdatusUser)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Spotify Ltd) C:\Users\Lodzia\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
() C:\Program Files (x86)\Gaming Mouse\G3 Mouse\G2Monitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448 2013-09-05] (Realtek Semiconductor)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-09-16] (Intel Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKLM-x32\...\Run: [G3 mouse] => C:\Program Files (x86)\Gaming Mouse\G3 Mouse\G2Monitor.exe [495616 2013-10-07] ()
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [GoogleChromeAutoLaunch_19B9F9630692E10ED0F223A422453499] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [854344 2014-10-22] (Google Inc.)
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [Spotify Web Helper] => C:\Users\Lodzia\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1245752 2014-09-17] (Spotify Ltd)
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-4023732623-2383126382-2284746582-1000\...\MountPoints2: {b3a5f44b-4ad0-11e4-b18f-448a5b2db290} - F:\Setup.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x76BF97F382EBCF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pl
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg64.dll (Google Inc.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 91.232.90.18 91.232.90.19 91.232.90.18 91.232.90.19 91.232.90.18 91.232.90.19

FireFox:
========
FF ProfilePath: C:\Users\Lodzia\AppData\Roaming\Mozilla\Firefox\Profiles\lg9h5jcx.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Extension: YouTube Video and Audio Downloader - C:\Users\Lodzia\AppData\Roaming\Mozilla\Firefox\Profiles\lg9h5jcx.default\Extensions\feca4b87-3be4-43da-a1b1-137c24220968@jetpack.xpi [2014-07-22]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://google.pl/", "hxxp://www.google.com"
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Profile: C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-04]
CHR Extension: (Google Drive) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-04]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-04]
CHR Extension: (YouTube) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-04]
CHR Extension: (Adblock Plus) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-08-05]
CHR Extension: (Google Search) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-04]
CHR Extension: (AdBlock) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-07-04]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-08-09]
CHR Extension: (ProxMate) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki [2014-07-04]
CHR Extension: (Google Wallet) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-04]
CHR Extension: (ChromePW) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeiimoikalhhgfhfkfhngehekefpiaag [2014-08-09]
CHR Extension: (Gmail) - C:\Users\Lodzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-04]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [448384 2014-09-17] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [54976 2013-07-25] (Intel Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-09-26] (MICRO-STAR INTERNATIONAL CO., LTD.)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-07-05] ()

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-10-05] (Disc Soft Ltd)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-03 13:45 - 2014-11-03 13:45 - 00000000 ____D () C:\Users\Lodzia\Documents\Aspyr
2014-11-03 13:45 - 2014-11-03 13:45 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\Aspyr
2014-11-03 13:44 - 2014-11-03 13:44 - 02898311 _____ () C:\Users\Lodzia\Downloads\GUITAR.HERO.3.LOR.V1.0.ALL.HATRED.NOCD.ZIP
2014-11-03 13:44 - 2014-11-03 13:44 - 00000000 __RHD () C:\Users\Lodzia\AppData\Roaming\SecuROM
2014-11-03 13:44 - 2007-11-18 18:54 - 00007636 _____ () C:\Users\Lodzia\Downloads\hatred.nfo
2014-11-03 07:34 - 2014-11-03 07:34 - 00000539 _____ () C:\Windows\Xbox_360_CC_Driver.log
2014-11-03 07:34 - 2014-11-03 07:34 - 00000000 ____D () C:\Program Files (x86)\Aspyr
2014-11-02 18:49 - 2014-11-02 19:16 - 724731613 _____ () C:\Users\Lodzia\Downloads\Jak zostać królem [The King's Speech] 2010 Lektor PL.avi
2014-11-02 12:55 - 2014-11-03 14:48 - 00000000 ____D () C:\Users\Lodzia\Downloads\New folder
2014-11-02 12:01 - 2014-11-02 12:01 - 00749404 _____ () C:\Users\Lodzia\Downloads\rar-password-recovery.exe
2014-11-02 12:01 - 2014-11-02 12:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Recovery
2014-11-02 12:01 - 2014-11-02 12:01 - 00000000 ____D () C:\Program Files (x86)\Intelore
2014-11-02 10:05 - 2014-11-02 10:05 - 00181532 _____ () C:\Users\Lodzia\Downloads\OTL.Txt
2014-11-02 10:05 - 2014-11-02 10:05 - 00067722 _____ () C:\Users\Lodzia\Downloads\Extras.Txt
2014-11-02 10:05 - 2014-11-02 10:05 - 00000000 ____D () C:\zoek_backup
2014-11-02 10:00 - 2014-11-02 10:01 - 00046786 _____ () C:\Users\Lodzia\Downloads\FRST.txt
2014-11-02 09:59 - 2014-11-03 14:48 - 00000000 ____D () C:\FRST
2014-11-02 09:58 - 2014-11-02 10:01 - 00000000 ____D () C:\Users\Lodzia\Desktop\logi
2014-11-02 09:55 - 2014-11-02 09:55 - 01998336 _____ () C:\Users\Lodzia\Downloads\AdwCleaner.exe
2014-11-02 09:54 - 2014-11-02 09:54 - 01292800 _____ () C:\Users\Lodzia\Downloads\zoek.exe
2014-11-02 09:53 - 2014-11-02 09:53 - 00602112 _____ (OldTimer Tools) C:\Users\Lodzia\Downloads\OTL.exe
2014-10-29 23:20 - 2014-10-29 23:20 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-10-27 16:07 - 2014-10-27 16:07 - 00000000 ____D () C:\Users\Lodzia\Desktop\asdasd
2014-10-27 13:37 - 2014-10-27 13:37 - 00000000 ____D () C:\ProgramData\McAfee
2014-10-27 13:36 - 2014-10-27 13:37 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\Adobe
2014-10-26 17:24 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-10-26 17:24 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-10-26 17:24 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-10-26 17:24 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-10-26 17:24 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-10-26 17:24 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-10-26 17:24 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2014-10-26 17:24 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-10-26 17:24 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-10-26 17:24 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-10-26 17:24 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-10-26 17:24 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-10-26 17:24 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-10-26 17:24 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-10-26 17:24 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-10-26 17:24 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-10-26 17:24 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-10-26 17:24 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-10-26 17:24 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-10-26 17:24 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-10-26 17:24 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-10-26 17:24 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-10-26 17:24 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-10-26 17:24 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-10-26 17:24 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-10-26 17:24 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-10-26 17:24 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-10-26 17:24 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-10-26 17:24 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-10-26 17:24 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-10-26 17:24 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-10-26 17:24 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-10-26 17:24 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-10-26 17:24 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-10-26 17:24 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-10-26 17:24 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-10-26 17:24 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-10-26 17:24 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-10-26 17:24 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-10-26 17:24 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-10-26 17:24 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-10-26 17:24 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-10-26 17:24 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-10-26 17:24 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-10-26 17:24 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-10-26 17:24 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-10-26 17:24 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-10-26 17:24 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-10-26 17:24 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-10-26 17:24 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-10-26 17:24 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-10-26 17:23 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-10-26 17:23 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-10-26 17:23 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2014-10-26 17:23 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2014-10-26 17:23 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-10-26 17:23 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2014-10-26 17:23 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-10-26 17:23 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2014-10-26 17:23 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2014-10-26 17:23 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-10-26 17:23 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2014-10-26 17:23 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-10-26 17:23 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2014-10-26 17:23 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-10-26 17:23 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2014-10-26 17:23 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-10-26 17:23 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2014-10-26 17:23 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-10-26 17:23 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-10-26 17:23 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2014-10-26 17:23 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-10-26 17:23 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-10-26 17:23 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2014-10-26 17:23 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-10-26 17:23 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2014-10-26 17:23 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-10-26 17:23 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-10-26 17:23 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2014-10-26 17:23 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2014-10-26 17:23 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2014-10-26 17:23 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-10-26 17:23 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-10-26 17:23 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-10-26 17:23 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2014-10-26 17:23 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2014-10-26 17:23 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-10-26 17:23 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2014-10-26 17:23 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-10-26 17:23 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2014-10-26 17:23 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-10-26 17:23 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2014-10-26 17:23 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-10-26 17:23 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2014-10-26 17:23 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-10-26 17:23 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2014-10-26 17:23 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-10-26 17:23 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2014-10-26 17:23 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-10-26 17:23 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2014-10-26 17:23 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-10-26 17:23 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2014-10-26 17:23 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-10-26 17:23 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2014-10-26 17:23 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-10-26 17:23 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2014-10-26 17:23 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-10-26 10:46 - 2014-10-26 10:47 - 00118025 _____ () C:\Users\Lodzia\Documents\dsadsa.xps
2014-10-25 22:20 - 2014-10-30 20:42 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\foobar2000
2014-10-25 22:20 - 2014-10-25 22:20 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk
2014-10-25 22:20 - 2014-10-25 22:20 - 00001035 _____ () C:\Users\Public\Desktop\foobar2000.lnk
2014-10-25 22:20 - 2014-10-25 22:20 - 00000000 ____D () C:\Program Files (x86)\foobar2000
2014-10-25 20:09 - 2014-10-25 20:09 - 00000219 _____ () C:\Users\Lodzia\Desktop\Dota 2.url
2014-10-25 16:00 - 2014-04-11 13:30 - 00001052 _____ () C:\Users\Lodzia\Desktop\skin.ini
2014-10-25 16:00 - 2014-03-09 14:37 - 00402392 _____ () C:\Users\Lodzia\Desktop\soft-hitfinish.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00309536 _____ () C:\Users\Lodzia\Desktop\spinnerbonus.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00300336 _____ () C:\Users\Lodzia\Desktop\normal-hitfinish.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00276956 _____ () C:\Users\Lodzia\Desktop\taiko-normal-hitfinish.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00243580 _____ () C:\Users\Lodzia\Desktop\taiko-normal-hitwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00223744 _____ () C:\Users\Lodzia\Desktop\normal-sliderslide.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00213964 _____ () C:\Users\Lodzia\Desktop\normal-hitwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00208300 _____ () C:\Users\Lodzia\Desktop\taiko-normal-hitnormal.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00201380 _____ () C:\Users\Lodzia\Desktop\normal-hitnormal.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00171044 _____ () C:\Users\Lodzia\Desktop\taiko-soft-hitfinish.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00170660 _____ () C:\Users\Lodzia\Desktop\menuhit.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00164948 _____ () C:\Users\Lodzia\Desktop\taiko-soft-hitwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00145548 _____ () C:\Users\Lodzia\Desktop\soft-hitwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00145508 _____ () C:\Users\Lodzia\Desktop\soft-hitnormal.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00140016 _____ () C:\Users\Lodzia\Desktop\taiko-normal-hitclap.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00133012 _____ () C:\Users\Lodzia\Desktop\taiko-soft-hitclap.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00132064 _____ () C:\Users\Lodzia\Desktop\menuback.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00117804 _____ () C:\Users\Lodzia\Desktop\soft-slidertick.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00103760 _____ () C:\Users\Lodzia\Desktop\soft-sliderslide.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00094284 _____ () C:\Users\Lodzia\Desktop\normal-slidertick.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00093980 _____ () C:\Users\Lodzia\Desktop\menuclick.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00076640 _____ () C:\Users\Lodzia\Desktop\taiko-soft-hitnormal.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00067256 _____ () C:\Users\Lodzia\Desktop\normal-sliderwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00047580 _____ () C:\Users\Lodzia\Desktop\soft-sliderwhistle.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00039792 _____ () C:\Users\Lodzia\Desktop\readys.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00036868 _____ () C:\Users\Lodzia\Desktop\spinnerspin.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00019476 _____ () C:\Users\Lodzia\Desktop\soft-hitclap.wav
2014-10-25 16:00 - 2014-03-09 14:37 - 00018368 _____ () C:\Users\Lodzia\Desktop\normal-hitclap.wav
2014-10-19 10:57 - 2014-10-19 10:57 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-10-07 15:17 - 2014-10-07 15:17 - 00000000 ____D () C:\Users\Lodzia\Documents\WB Games
2014-10-07 15:17 - 2014-10-07 15:17 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Steam
2014-10-07 15:16 - 2014-10-07 15:16 - 00001278 _____ () C:\Users\Lodzia\Desktop\Middle Earth Shadow of Mordor.lnk
2014-10-07 15:16 - 2014-10-07 15:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Middle Earth Shadow of Mordor
2014-10-07 14:57 - 2014-10-07 15:16 - 00000000 ____D () C:\Program Files (x86)\Middle Earth Shadow of Mordor
2014-10-05 13:26 - 2010-08-30 07:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-10-05 13:24 - 2014-11-02 09:57 - 00000000 ____D () C:\AdwCleaner
2014-10-05 12:24 - 2014-10-05 12:24 - 00000000 ____D () C:\ProgramData\Orbit
2014-10-05 11:53 - 2014-10-05 11:53 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2014-10-05 11:53 - 2014-10-05 11:53 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\Ubisoft Game Launcher
2014-10-05 11:53 - 2014-10-05 11:53 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2014-10-05 11:25 - 2014-10-05 11:27 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\DAEMON Tools Lite
2014-10-05 11:25 - 2014-10-05 11:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-10-05 11:25 - 2014-10-05 11:27 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-10-05 11:25 - 2014-10-05 11:25 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-10-05 11:25 - 2014-10-05 11:25 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-10-04 22:07 - 2014-11-02 12:56 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\CrashDumps

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-03 14:47 - 2014-07-24 01:15 - 00193024 ___SH () C:\Users\Lodzia\Documents\Thumbs.db
2014-11-03 14:47 - 2014-07-04 19:01 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-03 14:47 - 2014-07-04 13:11 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-03 14:47 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-03 14:47 - 2009-07-14 05:51 - 00059689 _____ () C:\Windows\setupact.log
2014-11-03 14:46 - 2014-07-04 18:56 - 00623811 _____ () C:\Windows\WindowsUpdate.log
2014-11-03 14:17 - 2014-07-04 19:01 - 00001048 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-03 14:14 - 2014-07-04 14:35 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-03 13:45 - 2009-07-14 05:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-03 13:45 - 2009-07-14 05:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-03 13:43 - 2009-07-14 06:13 - 00781298 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-03 09:51 - 2014-07-12 18:13 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\uTorrent
2014-11-03 07:36 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-11-03 07:34 - 2014-07-04 13:25 - 00314560 _____ () C:\Windows\DirectX.log
2014-11-03 07:31 - 2014-07-05 22:46 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-11-02 15:25 - 2014-09-19 14:37 - 00000000 ____D () C:\Program Files (x86)\osu!
2014-11-02 13:23 - 2010-11-21 04:47 - 00153220 _____ () C:\Windows\PFRO.log
2014-11-02 02:15 - 2014-07-04 13:33 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\TS3Client
2014-11-01 15:31 - 2014-07-04 16:41 - 00000000 ____D () C:\Users\Lodzia\Documents\FIFA World
2014-11-01 15:31 - 2014-07-04 15:50 - 00000000 ____D () C:\ProgramData\Origin
2014-11-01 15:17 - 2014-07-04 15:50 - 00000000 ____D () C:\Users\Lodzia\origin
2014-10-31 14:29 - 2014-07-04 13:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-30 18:27 - 2014-09-30 20:03 - 00001096 _____ () C:\Users\Public\Desktop\XenoSuite Launcher.lnk
2014-10-30 18:27 - 2014-09-30 20:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XenoBot
2014-10-30 18:27 - 2014-09-30 20:03 - 00000000 ____D () C:\Program Files (x86)\XenoBot
2014-10-30 18:27 - 2014-09-20 14:10 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Micorsoft
2014-10-30 16:19 - 2014-08-26 15:36 - 00000000 ____D () C:\Program Files (x86)\Tibia
2014-10-29 21:57 - 2014-08-26 15:48 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\OBS
2014-10-28 14:18 - 2014-07-04 19:01 - 00002189 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-27 13:37 - 2014-07-04 14:35 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-10-27 13:37 - 2014-07-04 14:35 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-27 13:37 - 2014-07-04 14:35 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-10-25 20:40 - 2014-08-21 23:41 - 00000000 ____D () C:\ProgramData\Hi-Rez Studios
2014-10-25 20:40 - 2014-07-04 18:59 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-10-25 20:39 - 2014-07-05 22:52 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-10-25 20:38 - 2014-07-29 16:14 - 00000000 ____D () C:\Games
2014-10-24 21:24 - 2014-08-26 16:00 - 00000000 ____D () C:\Program Files (x86)\SpeedFan
2014-10-24 19:51 - 2014-07-28 12:22 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\ChomikBox
2014-10-24 19:51 - 2014-07-28 12:22 - 00000000 ____D () C:\Users\Lodzia\.gstreamer-0.10
2014-10-19 01:12 - 2014-07-04 19:01 - 00004044 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-19 01:12 - 2014-07-04 19:01 - 00003792 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-10 13:06 - 2014-08-26 15:48 - 00000000 ____D () C:\Program Files\OBS
2014-10-06 19:25 - 2014-08-17 19:13 - 00000000 ____D () C:\Users\Lodzia\AppData\Roaming\FileZilla
2014-10-05 12:24 - 2014-08-03 15:08 - 00000000 ____D () C:\Users\Lodzia\Documents\My Games
2014-10-04 22:10 - 2014-09-17 12:56 - 00000000 ____D () C:\Users\Lodzia\AppData\Local\ArmA 2 OA

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-26 21:14

==================== End Of Log ============================


Kod: Zaznacz wszystko
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-11-2014
Ran by Lodzia at 2014-11-03 14:48:46
Running from C:\Users\Lodzia\Downloads\New folder
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.34944 - BitTorrent Inc.)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated)
Arma 2 (HKLM-x32\...\Steam App 33910) (Version:  - Bohemia Interactive)
Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version:  - Bohemia Interactive)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Call of Duty: Black Ops - Multiplayer (HKLM-x32\...\Steam App 42710) (Version:  - Treyarch)
Camtasia Studio 8 (HKLM-x32\...\{765AD29A-7EF5-4456-8F6F-83467E52AB52}) (Version: 8.4.3.1792 - TechSmith Corporation)
ChomikBox (HKLM-x32\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl)
Core Temp 1.0 RC6 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu)
Counter-Strike 1.6 NonSteam (HKCU\...\Counter-Strike 1.6 NonSteam v52) (Version: v52 - CS-SERWER.PL)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version:  - Valve)
CWK (Czasowy Wyłącznik Komputera) (HKLM-x32\...\CWK) (Version: 2.52.3.43 - Damian Pasternak)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
DayZLauncher version 0.0.0.7 (HKLM-x32\...\{E31045B4-9DB5-44DF-9EBD-BD4CFDE640FD}_is1) (Version: 0.0.0.7 - Maca134)
Diablo III (HKLM-x32\...\Diablo III) (Version:  - Blizzard Entertainment)
Dota 2 (HKLM-x32\...\Steam App 570) (Version:  - Valve)
EA Sports FIFA World (HKLM-x32\...\{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}) (Version: 7.0.0.47449 - Electronic Arts, Inc.)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc)
FileZilla Client 3.9.0.3 (HKLM-x32\...\FileZilla Client) (Version: 3.9.0.3 - Tim Kosse)
foobar2000 v1.3.4 (HKLM-x32\...\foobar2000) (Version: 1.3.4 - Peter Pawlowski)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
G3 Mouse Driver (HKLM-x32\...\{249B1212-3779-404F-80FC-F3B80FE265ED}) (Version:  - )
Gameforge Live 2.0.4 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.4 - Gameforge)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.25.5 - Google Inc.) Hidden
Guitar Hero III (HKLM-x32\...\{0CE1A6C0-F3F7-49E6-8F9D-2431F9827441}) (Version: 1.00.0000 - Aspyr)
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel(R) Small Business Advantage (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: 2.2.39.7991 - Intel(R) Corporation)
Intel(R) Update Manager (x32 Version: 1.0.0.36888 - Intel Corporation) Hidden
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
LOLReplay (HKLM-x32\...\LOLReplay) (Version: 0.8.9.9 - www.leaguereplays.com)
Mafia II (HKLM-x32\...\Steam App 50130) (Version:  - 2K Czech)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Middle Earth Shadow of Mordor (HKLM-x32\...\Middle Earth Shadow of Mordor_is1) (Version:  - )
Mozilla Firefox 33.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 33.0.2 (x86 pl)) (Version: 33.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.8 - Notepad++ Team)
NVIDIA 3D Vision Controller Driver 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 320.49 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 320.63 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 320.63 - NVIDIA Corporation)
NVIDIA Graphics Driver 320.63 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.63 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.24.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.24.2 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation)
NVIDIA Update 4.11.9 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 4.11.9 - NVIDIA Corporation)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 9.4.22.2815 - Electronic Arts, Inc.)
osu! (HKLM-x32\...\{c1f1efe6-a68e-4db9-b886-ce9f30e3a3e6}) (Version: latest - ppy Pty Ltd)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.72.410.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7037 - Realtek Semiconductor Corp.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Spotify (HKCU\...\Spotify) (Version: 0.9.13.24.g5dbb3103 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
Strife (HKLM-x32\...\Strife) (Version:  - S2 Games)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH)
The Lord of the Rings Online™ (HKLM-x32\...\Steam App 212500) (Version:  - Turbine, Inc.)
Tibia (HKLM-x32\...\Tibia_is1) (Version: 10.53 - CipSoft GmbH)
Tibiacast (HKLM-x32\...\{4EE345FA-2E00-461C-9DE9-961D1A6F1ED3}) (Version: 3.1.03104 - Silver Squirrel Software HB)
Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft)
VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.7 - MSI)
WATCH_DOGS (HKLM-x32\...\Uplay Install 274) (Version:  - Ubisoft)
WinRAR 5.10 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH)
XenoBot Apophis [10.61] by Tibia-Bot.pl (HKLM-x32\...\{B798AB02-C334-44AE-872B-A988677CB957}_is1) (Version:  - tibia-bot.pl)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

03-11-2014 06:33:40 Installed Guitar Hero III.

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {69A27F73-30F3-4D02-88DD-EEB7E8DB6E0E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-04] (Google Inc.)
Task: {91AF258B-B427-4FB1-A974-407AA26E5452} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-04] (Google Inc.)
Task: {CB45BCB5-5742-48E8-97B8-C6BAC8960E35} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-27] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-07-04 13:11 - 2013-07-10 13:05 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-05-01 20:29 - 2014-05-01 20:29 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2014-07-05 08:57 - 2014-07-05 09:46 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-09-22 12:44 - 2013-10-07 17:15 - 00495616 _____ () C:\Program Files (x86)\Gaming Mouse\G3 Mouse\G2Monitor.exe
2014-09-22 12:44 - 2012-06-09 06:38 - 00057344 _____ () C:\Program Files (x86)\Gaming Mouse\G3 Mouse\lan.dll
2014-09-22 12:44 - 2013-02-20 13:17 - 00061440 _____ () C:\Program Files (x86)\Gaming Mouse\G3 Mouse\hiddriver.dll
2014-10-28 14:18 - 2014-10-22 05:04 - 01042760 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
2014-10-28 14:18 - 2014-10-22 05:04 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libegl.dll
2014-10-28 14:18 - 2014-10-22 05:04 - 08910664 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll
2014-10-28 14:18 - 2014-10-22 05:04 - 01681224 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-4023732623-2383126382-2284746582-500 - Administrator - Disabled)
Guest (S-1-5-21-4023732623-2383126382-2284746582-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-4023732623-2383126382-2284746582-1002 - Limited - Enabled)
Lodzia (S-1-5-21-4023732623-2383126382-2284746582-1000 - Administrator - Enabled) => C:\Users\Lodzia
UpdatusUser (S-1-5-21-4023732623-2383126382-2284746582-1003 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (11/03/2014 01:39:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (11/03/2014 08:12:25 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (11/03/2014 07:34:10 AM) (Source: Xbox_360_CC_Driver) (EventID: 4373) (User: )
Description: WindowsNot enough storage is available to process this command.

Error: (11/02/2014 01:24:57 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (11/02/2014 00:56:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: plugin-container.exe, version: 33.0.2.5413, time stamp: 0x544ef530
Faulting module name: mozalloc.dll, version: 33.0.2.5413, time stamp: 0x544ed089
Exception code: 0x80000003
Fault offset: 0x00001425
Faulting process id: 0x12c8
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3

Error: (11/02/2014 10:00:03 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (11/02/2014 09:53:21 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (11/01/2014 08:02:00 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (11/01/2014 09:37:03 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/31/2014 02:33:33 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (11/03/2014 02:48:32 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (11/03/2014 02:48:12 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/03/2014 02:48:12 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/03/2014 02:47:51 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/03/2014 02:47:50 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/03/2014 02:47:33 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/03/2014 02:47:31 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/03/2014 01:38:51 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (11/03/2014 01:38:29 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/03/2014 01:38:29 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.


Microsoft Office Sessions:
=========================
Error: (11/03/2014 01:39:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (11/03/2014 08:12:25 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (11/03/2014 07:34:10 AM) (Source: Xbox_360_CC_Driver) (EventID: 4373) (User: )
Description: WindowsNot enough storage is available to process this command.

Error: (11/02/2014 01:24:57 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (11/02/2014 00:56:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe33.0.2.5413544ef530mozalloc.dll33.0.2.5413544ed089800000030000142512c801cff6896ee053ecC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll39759b4a-6287-11e4-bd71-448a5b2db290

Error: (11/02/2014 10:00:03 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (11/02/2014 09:53:21 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Lodzia\Downloads\esetsmartinstaller_plk.exe

Error: (11/01/2014 08:02:00 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (11/01/2014 09:37:03 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/31/2014 02:33:33 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


CodeIntegrity Errors:
===================================
  Date: 2014-08-26 17:02:57.043
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Lodzia\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-08-26 17:02:57.040
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Lodzia\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-08-26 17:02:56.734
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-08-26 17:02:56.732
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-4150 CPU @ 3.50GHz
Percentage of memory in use: 29%
Total physical RAM: 4024.07 MB
Available physical RAM: 2854.34 MB
Total Pagefile: 8046.35 MB
Available Pagefile: 6669.23 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:274.26 GB) (Free:136.99 GB) NTFS
Drive d: () (Fixed) (Total:191.41 GB) (Free:77.37 GB) NTFS
Drive f: (GHIII) (CDROM) (Total:3.54 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 8FCDDDCB)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=274.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=191.4 GB) - (Type=07 NTFS)

==================== End Of Log ============================
Awatar użytkownika
Lijke
~user
 
Posty: 540
Dołączenie: 02 Lip 2008, 19:56
Miejscowość: Wolsztyn
Pochwały: 5



Za duże zużycie ram

Postprzez ordynat 03 Lis 2014, 16:22

W nowych logach nie ma już niczego podejrzanego.

Chyba możemy kończyć:

W Adw-Cleaner kliknij na przycisk Odinstaluj (UNINSTALL).

twórz Notatnik i wklej w nim:
DeleteQuarantine:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix.

.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 1 gość