REKLAMA

FRST.txt

Antywirus nie działa po usunięciu trojana wserver.exe - co robić?

Skrypt dodany: Link Usunąć wszystko co znalałz Mbam?


Pobierz plik - link do postu

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:09-07-2014
Ran by keyser (administrator) on MODERN on 10-07-2014 20:00:56
Running from C:\Users\keyser\Desktop
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Polski (Polska)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
(Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
() C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(TC UP Team) C:\Program Files\TC UP\TC UP.exe
(Ghisler Software GmbH) C:\Program Files\TC UP\TOTALCMD.EXE


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [TC UP] = & gt; C:\Program Files\TC UP\TC UP.exe [595456 2014-03-31] (TC UP Team)
HKLM\...\Run: [SunJavaUpdateSched] = & gt; C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [StartCCC] = & gt; C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642304 2013-04-30] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AMD AVT] = & gt; C:\Program Files\AMD AVT\bin\kdbsync.exe [20992 2012-03-19] ()
HKU\S-1-5-19\...\Run: [Sidebar] = & gt; %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-20\...\Run: [Sidebar] = & gt; %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-432891842-4118075930-1342433979-1001\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-432891842-4118075930-1342433979-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-432891842-4118075930-1342433979-1001\...\MountPoints2: G - G:\autorun.exe
HKU\S-1-5-21-432891842-4118075930-1342433979-1001\...\Winlogon: [Shell] C:\Windows\Explorer.exe [2616320 2013-03-14] (Microsoft Corporation) & lt; ==== ATTENTION

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA537267DFFBCCE01
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 82.139.8.40 95.160.170.92 88.156.222.92

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw_1205146.dll (Adobe Systems, Inc.)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @mozilla.zeniko.ch/SumatraPDF_Browser_Plugin - C:\Program Files\TC UP\PLUGINS\Media\SumatraPDF\npPdfViewer.dll No File
FF Plugin: @nokia.com/EnablerPlugin - C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin: @real.com/nppl3260;version=17.0.9.17 - c:\program files\real\realplayer\Netscape6\nppl3260.dll No File
FF Plugin: @real.com/nprpplugin;version=17.0.9.17 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @mozilla.zeniko.ch/SumatraPDF_Browser_Plugin - C:\Program Files\TC UP\PLUGINS\Media\SumatraPDF\npPdfViewer.dll No File
FF Plugin HKCU: ubisoft.com/uplaypc - D:\GRY\Trials Evolution\datapack\orbit\npuplaypc.dll No File

Chrome:
=======
CHR HomePage: hxxp://istart.webssearches.com/?type=hp & ts=1404812183 & from=amt & uid=ST3500418AS_9VM2N9GQXXXX9VM2N9GQ
CHR StartupUrls: " https://mail.google.com/mail/u/0/?pli=1#inbox " , " chrome://bookmarks/#2 " , " hxxp://www.gofirstrow.eu/watch/249190/1/watch-denver-nuggets-vs-washington-wizards.html " , " hxxp://istart.webssearches.com/?type=hp & ts=1404812183 & from=amt & uid=ST3500418AS_9VM2N9GQXXXX9VM2N9GQ "
CHR NewTab: " chrome-extension://llaficoajjainaijghjlofdfmbjpebpa/newtab.html "
CHR Extension: (Radio) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\agljkoinmcdnopnlbhhjibjiablccgoh [2014-06-16]
CHR Extension: (HD for YouTube™) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\akjbfncbadcmnkopckegnmjgihagponf [2014-06-16]
CHR Extension: (Theme Creator) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2014-06-16]
CHR Extension: (Dysk Google) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-16]
CHR Extension: (Simple Image Resizer) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\bficingcnodlbbildpbnjdgcmbipgnbi [2014-06-16]
CHR Extension: (SmoothScroll) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\cccpiddacjljmfbbgeimpelpndgpoknn [2014-06-16]
CHR Extension: (OneTab) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2014-06-16]
CHR Extension: (Spotify - Music for every moment) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh [2014-06-16]
CHR Extension: (Eliminator Slajdów) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\eplekpmdodlgejgogbojajncdlapamff [2014-06-16]
CHR Extension: (Tracks) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbgcbajgifmipaanieieccbdnaeliohh [2014-06-16]
CHR Extension: (LibX for Google Chrome (TM)) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffkfoaiikoedjcjlpnnaidojhfchiafk [2014-06-16]
CHR Extension: (Rozszerzenie powiadomień Badoo) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\gngmhdpofjbdiecihebaaooakicnjjmc [2014-06-16]
CHR Extension: (Stały schowek) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hilkjcfodmbdgpadbpehimibheopoccb [2014-06-16]
CHR Extension: (Vimeo Couch Mode) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjkdhkejcnlmkfdodbkdkelefnkobfif [2014-06-16]
CHR Extension: (Google Keep – notatki i listy) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2014-06-16]
CHR Extension: (Social Fixer for Facebook) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifmhoabcaeehkljcfclfiieohkohdgbb [2014-06-16]
CHR Extension: (Raindrop.io) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihapciekeckoimelfjmkapoeccmfdipa [2014-06-16]
CHR Extension: (Użytkownicy na Facebooku) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihjbpjahiibmjdlcgodcnmpelpmilamk [2014-06-16]
CHR Extension: (mxHero for Chrome) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijhapcklhkanndjbdnhichfmolhiaekg [2014-06-16]
CHR Extension: (EverSync - Sync bookmarks, backup favorites) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\iohcojnlgnfbmjfjfkbhahhmppcggdog [2014-07-04]
CHR Extension: (Speed Dial 2) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik [2014-06-16]
CHR Extension: (Adblock Super) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd [2014-06-16]
CHR Extension: (Smooth Gestures) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfkgmnnajiljnolcgolmmgnecgldgeld [2014-06-16]
CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2014-06-16]
CHR Extension: (Narzędzia do wprowadzania tekstu) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\mclkkofklkfljcocdinagocijmpgbhab [2014-06-16]
CHR Extension: (Twoo Notifications) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\mggafhpkgkfebnjfbiefbbbicikgchlf [2014-06-16]
CHR Extension: (Sprawdzanie poczty Google) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-06-16]
CHR Extension: (Gra WGT Golf) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpedbpkelbhcbkdaglillalioeeekbpb [2014-06-16]
CHR Extension: (GetThemAll Downloader) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbkekaeindpfpcoldfckljplboolgkfm [2014-06-16]
CHR Extension: (Google Wallet) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-25]
CHR Extension: (Mural.ly) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnhlnnalackljjehlfocmheepffkiihf [2014-06-16]
CHR Extension: (GIFPAL) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\noohoboklgjeccnihfkbdakbchbhjlch [2014-06-16]
CHR Extension: (Picasa) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2014-06-16]
CHR Extension: (SpeakIt!) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgeolalilifpodheeocdmbhehgnkkbak [2014-06-16]
CHR Extension: (Evernote Web Clipper) - C:\Users\keyser\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2014-06-16]

========================== Services (Whitelisted) =================

R2 AEADIFilters; C:\Windows\system32\AEADISRV.EXE [90112 2009-06-05] (Andrea Electronics Corporation) [File not signed]
S2 AsSysCtrlService; C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [90112 2009-04-02] () [File not signed]
S3 DvmMDES; C:\ASUS.SYS\config\DVMExportService.exe [294912 2009-02-18] (DeviceVM) [File not signed]
S3 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1377072 2013-10-01] (O & O Software GmbH)
S3 TunngleService; C:\Program Files\Tunngle\TnglCtrl.exe [757144 2013-08-16] (Tunngle.net GmbH) [File not signed]
S3 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.)

==================== Drivers (Whitelisted) ====================

S3 ADIHdAudAddService; C:\Windows\System32\drivers\ADIHdAud.sys [380416 2009-06-05] (Analog Devices, Inc.) [File not signed]
R1 AsIO; C:\Windows\System32\drivers\AsIO.sys [12400 2007-12-17] ()
R1 CFRMD; C:\Windows\System32\DRIVERS\CFRMD.sys [35064 2013-05-07] (Windows (R) Win 7 DDK provider)
R3 DAdderFltr; C:\Windows\System32\drivers\dadder.sys [9728 2010-04-19] (Razer (Asia-Pacific) Pte Ltd)
S2 dualshock3; C:\Windows\System32\DRIVERS\dualshock3.sys [15616 2009-01-03] () [File not signed]
R0 iusb3hcs; C:\Windows\System32\DRIVERS\iusb3hcs.sys [16880 2013-02-22] (Intel Corporation)
R3 libusb0; C:\Windows\System32\drivers\libusb0.sys [42592 2012-01-17] (http://libusb-win32.sourceforge.net)
R3 LycoFltr; C:\Windows\System32\Drivers\Lycosa.sys [16896 2013-02-28] ( ) [File not signed]
R3 MotioninJoyXFilter; C:\Windows\System32\DRIVERS\MijXfilt.sys [99400 2012-05-12] (MotioninJoy)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [13216 2009-07-16] ()
S3 RtkBtFilter; C:\Windows\System32\DRIVERS\RtkBtfilter.sys [480328 2013-05-29] (Realtek Semiconductor Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [320120 2014-07-09] (Duplex Secure Ltd.)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [27136 2009-09-16] (Tunngle.net)
R1 VD_FileDisk; C:\Windows\system32\Drivers\VD_FileDisk.sys [24680 2011-01-26] (CaptainFlint Software)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-10 20:00 - 2014-07-10 20:01 - 00014340 _____ () C:\Users\keyser\Desktop\FRST.txt
2014-07-10 19:58 - 2014-07-10 20:01 - 00000000 ____D () C:\FRST
2014-07-10 19:58 - 2014-07-10 19:57 - 01074688 _____ (Farbar) C:\Users\keyser\Desktop\FRST.exe
2014-07-10 19:56 - 2014-07-10 17:15 - 01107968 _____ () C:\Users\keyser\Desktop\RSIT.exe
2014-07-10 19:52 - 2014-07-10 19:52 - 00012096 _____ () C:\Users\keyser\Desktop\07102014_195142.log
2014-07-10 19:35 - 2014-07-10 19:35 - 00000000 ____D () C:\_OTL
2014-07-10 18:14 - 2014-07-10 18:52 - 00048078 _____ () C:\Users\keyser\Desktop\Extras.Txt
2014-07-10 18:14 - 2014-07-10 18:51 - 00119080 _____ () C:\Users\keyser\Desktop\OTL.Txt
2014-07-10 18:01 - 2014-07-10 12:38 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\keyser\Desktop\TDSSKiller.exe
2014-07-10 17:53 - 2014-07-10 17:53 - 00000079 _____ () C:\.directory
2014-07-10 17:47 - 2014-07-10 17:57 - 00000000 ____D () C:\AdwCleaner
2014-07-10 17:27 - 2014-07-09 23:51 - 00602112 _____ (OldTimer Tools) C:\Users\keyser\Desktop\OTL.exe
2014-07-10 16:58 - 2014-07-10 16:58 - 00000080 _____ () C:\Windows\system32\.directory
2014-07-10 16:56 - 2014-07-10 16:56 - 00000099 _____ () C:\Windows\.directory
2014-07-10 16:20 - 2014-07-10 16:20 - 00000000 _____ () C:\ProgramData\cisE974.exe
2014-07-10 08:29 - 2014-07-10 08:29 - 00000000 _____ () C:\ProgramData\cis618.exe
2014-07-10 04:02 - 2014-07-10 04:02 - 00002122 _____ () C:\Windows\epplauncher.mif
2014-07-10 01:31 - 2014-07-10 01:31 - 00011550 _____ () C:\Users\keyser\Downloads\[kickass.to]edge.of.tomorrow.2014.tc.hc.xvid.mp3.rarbg.torrent
2014-07-09 18:35 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-09 18:35 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-09 18:35 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-09 18:35 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-09 18:35 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-09 18:35 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-09 18:35 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-09 18:34 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-09 18:34 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-09 18:34 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-09 18:34 - 2014-06-19 01:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-09 18:34 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-09 18:34 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-09 18:34 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-09 18:34 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-09 18:34 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-09 18:34 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-09 18:34 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-09 18:34 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-09 18:34 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-09 18:34 - 2014-06-19 01:23 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-09 18:34 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-09 18:34 - 2014-06-19 01:16 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-09 18:34 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-09 18:34 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-09 18:34 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-09 18:34 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-09 18:34 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-09 18:34 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-09 18:34 - 2014-06-19 00:52 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-09 18:34 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-09 18:34 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-09 18:34 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-09 18:34 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-09 18:34 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-09 18:34 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-09 18:34 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-09 18:34 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-09 18:34 - 2014-06-18 02:52 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-09 18:34 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-09 18:34 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-09 18:34 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-09 17:39 - 2014-07-09 17:39 - 00320120 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys
2014-07-09 05:27 - 2014-07-09 05:55 - 00000000 ____D () C:\Users\keyser\Downloads\KITSY
2014-07-09 04:54 - 2014-07-10 16:21 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-07-09 04:54 - 2014-07-09 04:54 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-09 03:48 - 2014-07-09 03:48 - 00000000 ____D () C:\Users\keyser\AppData\Local\AdTrustMedia
2014-07-08 21:43 - 2014-07-08 21:43 - 00000272 _____ () C:\Windows\system32\Drivers\sfi.dat
2014-07-08 21:41 - 2014-07-08 21:41 - 00000000 ____D () C:\ProgramData\Adtrustmedia
2014-07-08 21:41 - 2014-07-08 21:41 - 00000000 ____D () C:\Program Files\Common Files\COMODO
2014-07-08 21:40 - 2014-07-10 15:59 - 00000000 ____D () C:\Program Files\Comodo
2014-07-08 21:40 - 2014-07-08 21:40 - 00000000 ____D () C:\ProgramData\Comodo Downloader
2014-07-08 21:03 - 2014-07-08 21:41 - 00000000 ____D () C:\ProgramData\Comodo
2014-07-08 19:59 - 2014-07-08 19:59 - 02992066 _____ () C:\Users\keyser\Downloads\adbplugin.zip
2014-07-08 19:59 - 2014-07-08 19:59 - 00387847 _____ () C:\Users\keyser\Downloads\wfx_totalupgrade_1.0.2.0.zip
2014-07-08 19:59 - 2014-07-08 19:59 - 00100366 _____ () C:\Users\keyser\Downloads\pluginmanager2_6_light.rar
2014-07-08 19:59 - 2014-07-08 19:59 - 00040289 _____ () C:\Users\keyser\Downloads\wfx_envvar_1.3.0.222v.zip
2014-07-08 19:59 - 2014-07-08 19:59 - 00009913 _____ () C:\Users\keyser\Downloads\wfx_DialPwd_1.0.zip
2014-07-08 19:59 - 2014-07-08 19:59 - 00006500 _____ () C:\Users\keyser\Downloads\privileges.zip
2014-07-08 19:35 - 2014-07-08 19:35 - 01844941 _____ () C:\Users\keyser\Downloads\wcx_Total7zip_0856.rar
2014-07-08 19:32 - 2014-07-08 19:32 - 00052288 _____ () C:\Users\keyser\Downloads\msi_plugin.zip
2014-07-08 19:13 - 2014-07-08 19:13 - 00613775 _____ () C:\Users\keyser\Downloads\wcx_7zip.zip
2014-07-08 15:28 - 2014-07-08 15:28 - 00000218 _____ () C:\Users\keyser\AppData\Local\recently-used.xbel
2014-07-08 11:35 - 2014-07-08 11:35 - 00000000 ____D () C:\Users\keyser\AppData\Local\5408
2014-07-08 11:25 - 2014-07-08 11:25 - 02681890 _____ () C:\Users\keyser\Downloads\MonTest_2_1.exe
2014-07-08 10:50 - 2014-07-09 17:20 - 00000310 _____ () C:\Windows\Tasks\FreeFixer background scan.job
2014-07-08 10:50 - 2014-07-08 10:50 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeFixer
2014-07-08 09:41 - 2014-07-08 09:41 - 01140048 _____ () C:\Windows\RunSetup.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00959879 _____ () C:\Windows\FSSFM.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00192480 _____ () C:\Windows\FSSETUP.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00152940 _____ () C:\Windows\FSPROD.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00035765 _____ () C:\Windows\FSSGUI.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00034354 _____ () C:\Windows\FSISU.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00000208 _____ () C:\Windows\FSDEPH.log
2014-07-08 06:14 - 2014-07-08 06:37 - 00000000 ____D () C:\Users\keyser\Downloads\Microsoft Visual C++
2014-07-08 06:14 - 2014-07-08 06:14 - 01181112 _____ (Microsoft Corporation) C:\Users\keyser\Downloads\1B48.tmp
2014-07-08 05:31 - 2014-07-08 11:23 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\XnView
2014-07-08 05:18 - 2014-07-08 05:18 - 05073240 _____ (Microsoft Corporation) C:\Users\keyser\Downloads\vcredist_x86.exe
2014-07-08 05:15 - 2014-07-08 05:15 - 02244552 _____ (Mister Group ) C:\Users\keyser\Downloads\SystemExplorerSetup_580.exe
2014-07-08 02:18 - 2014-07-08 02:18 - 00003472 _____ () C:\Users\keyser\Documents\cc_20140708_021802.reg
2014-07-08 02:12 - 2014-07-08 02:12 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\SumatraPDF
2014-07-08 02:06 - 2014-07-08 02:09 - 00036485 _____ () C:\Windows\iis7.log
2014-07-07 22:24 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-07-07 22:20 - 2014-07-07 22:20 - 00058400 _____ () C:\Users\keyser\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-07 22:18 - 2014-07-09 19:54 - 00268440 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-07 22:17 - 2013-10-02 02:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-07-07 22:17 - 2013-10-02 01:45 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-07-07 22:16 - 2013-10-02 02:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-07-07 22:16 - 2013-10-02 02:30 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-07-07 22:16 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-07-07 22:16 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-07-07 22:16 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-07-07 22:16 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-07-07 22:16 - 2013-10-02 01:00 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-07-07 22:16 - 2013-10-02 00:53 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-07-07 22:16 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-07-07 22:05 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-07-07 22:05 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-07-07 22:04 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-07-07 22:04 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-07-07 22:04 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-07-07 22:04 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-07-07 22:04 - 2014-01-28 04:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-07-07 22:04 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-07-07 22:04 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-07-07 22:04 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-07-07 20:13 - 2014-07-07 20:13 - 00000000 ____D () C:\Users\Administrator\AppData\Local\AdTrustMedia
2014-07-07 20:12 - 2014-07-07 20:12 - 00000000 ____H () C:\Users\Administrator\Documents\Default.rdp
2014-07-07 20:09 - 2014-07-07 20:09 - 00058400 _____ () C:\Users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-07 20:09 - 2014-07-07 20:09 - 00002207 _____ () C:\Users\Administrator\Desktop\Google Chrome.lnk
2014-07-07 20:09 - 2014-07-07 20:09 - 00000640 __RSH () C:\Users\Administrator\ntuser.pol
2014-07-07 20:09 - 2014-07-07 20:09 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Ustawienia lokalne
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Szablony
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Moje dokumenty
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Menu Start
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Documents\Moje wideo
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Documents\Moje obrazy
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Documents\Moja muzyka
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Dane aplikacji
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Historia
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Dane aplikacji
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\ATI
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 ____D () C:\Users\Administrator\AppData\Local\ATI
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 ____D () C:\Users\Administrator
2014-07-07 20:09 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-07 20:09 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-07 19:45 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-07-07 19:45 - 2014-04-05 04:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-07-07 19:45 - 2014-04-05 04:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-07-07 19:45 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-07-07 19:45 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-07-07 19:45 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-07-07 19:45 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-07-07 16:49 - 2014-07-07 16:49 - 00000000 ____D () C:\Users\keyser\Documents\Security
2014-07-07 16:30 - 2014-05-08 11:06 - 02742784 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-07-07 16:30 - 2014-05-08 11:06 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-07-07 16:30 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-07-07 16:30 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-07-07 16:30 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-07-07 16:30 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-07-07 16:30 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-07-07 16:30 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-07-07 16:30 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-07-07 16:30 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-07-07 16:30 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-07-07 16:30 - 2013-09-25 03:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-07-07 13:34 - 2014-07-07 13:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Commander Ultima Prime
2014-07-07 13:31 - 2014-07-07 13:31 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\HEXelon
2014-07-07 13:29 - 2014-07-08 13:25 - 00000000 ____D () C:\Program Files\TC UP
2014-07-07 12:56 - 2014-07-07 12:56 - 00276484 _____ () C:\Users\keyser\Documents\cc_20140707_125643.reg
2014-07-07 12:16 - 2014-07-07 12:16 - 07773376 _____ (AIMP DevTeam) C:\Users\keyser\Downloads\aimp_3.55.1350.exe
2014-07-07 12:02 - 2014-07-07 12:02 - 02602023 _____ (Kephyr) C:\Users\keyser\Downloads\freefixersetup.exe
2014-07-07 11:20 - 2014-07-07 11:20 - 00020869 _____ () C:\Users\keyser\Downloads\120304462-1~006.htm
2014-07-06 23:42 - 2014-07-06 23:42 - 00025894 _____ () C:\Users\keyser\Documents\cc_20140706_234211.reg
2014-07-06 23:40 - 2014-07-06 23:40 - 00114488 _____ () C:\Users\keyser\Documents\cc_20140706_234037.reg
2014-07-06 20:19 - 2014-07-06 20:19 - 00000832 _____ () C:\Users\Public\Desktop\Pro Evolution Soccer 2014 - World Challenge.lnk
2014-07-06 20:19 - 2014-07-06 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami Digital Entertainment
2014-07-06 19:59 - 2014-07-06 22:08 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-07-06 03:28 - 2014-07-06 03:28 - 08620294 _____ () C:\Users\keyser\Downloads\sr-pes14116.7z
2014-07-06 03:28 - 2014-07-06 03:28 - 00000000 ____D () C:\Users\keyser\Downloads\sr-pes14116
2014-07-06 03:19 - 2014-07-06 03:19 - 00020475 _____ () C:\Users\keyser\Downloads\Download pro evolution soccer 2014 world challenge update skidrow ketubanjiwa com rar.htm
2014-07-06 03:19 - 2014-07-06 03:19 - 00000000 ____D () C:\Users\keyser\Downloads\Download pro evolution soccer 2014 world challenge update skidrow ketubanjiwa com rar_files
2014-07-06 03:14 - 2014-07-06 03:14 - 19684257 _____ () C:\Users\keyser\Downloads\P1_10.rar
2014-07-06 03:14 - 2014-07-06 03:14 - 00000000 ____D () C:\Users\keyser\Downloads\P1_10
2014-07-06 02:34 - 2014-07-06 02:34 - 00000000 ____D () C:\Users\keyser\Downloads\pm-pes14wc
2014-07-06 02:08 - 2014-07-06 02:08 - 00000000 ____D () C:\Users\keyser\Downloads\PES 2014 DLC all in one
2014-07-05 15:01 - 2014-07-05 15:01 - 00000000 ____D () C:\Users\keyser\Downloads\SE3U1 (1)
2014-07-05 15:01 - 2014-07-05 15:01 - 00000000 ____D () C:\Users\keyser\Downloads\RebellionHateFurerDLC
2014-07-04 12:24 - 2014-07-04 12:24 - 00001195 _____ () C:\Users\keyser\Desktop\RealBoxingGame — skrót.lnk
2014-07-04 07:04 - 2014-07-04 07:06 - 00000000 ____D () C:\Users\keyser\AppData\Local\Sniper3
2014-07-04 06:56 - 2014-07-04 06:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default)
2014-07-04 06:52 - 2014-07-04 06:52 - 24702346 _____ () C:\Users\keyser\Downloads\SE3U1 (1).rar
2014-07-04 06:51 - 2014-07-04 06:55 - 586048061 _____ () C:\Users\keyser\Downloads\RebellionHateFurerDLC.rar
2014-07-03 06:49 - 2014-07-03 06:49 - 00000000 ____D () C:\Users\keyser\Documents\MODERN
2014-07-03 06:38 - 2014-07-03 06:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Boxing
2014-06-30 21:22 - 2014-06-30 21:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Elite 3
2014-06-29 20:30 - 2014-06-29 20:30 - 00000421 _____ () C:\Users\Public\Desktop\GRID Autosport.lnk
2014-06-29 20:30 - 2014-06-29 20:30 - 00000421 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRID Autosport.lnk
2014-06-25 21:15 - 2014-06-25 21:16 - 1506802408 _____ () C:\Users\keyser\Downloads\PES 2014 DLC all in one.7z
2014-06-25 11:45 - 2014-07-10 17:28 - 00000000 __SHD () C:\Windows\system32\Windows Server
2014-06-25 05:02 - 2014-06-25 05:02 - 00002296 _____ () C:\Users\keyser\Downloads\PES2014OpenDownloadFolder.rar
2014-06-23 22:39 - 2014-06-23 22:39 - 08615073 _____ () C:\Users\keyser\Downloads\pm-pes14wc.7z
2014-06-23 02:47 - 2014-06-23 11:27 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\SpinTires
2014-06-23 02:36 - 2014-06-23 02:36 - 00001140 _____ () C:\Users\Public\Desktop\Spintires.lnk
2014-06-23 02:36 - 2014-06-23 02:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spintires
2014-06-23 02:35 - 2014-06-23 02:35 - 00000000 ____D () C:\Program Files\R.G. Freedom
2014-06-22 20:50 - 2014-06-22 20:51 - 08347620 _____ () C:\Users\keyser\Downloads\SPINTIRES.V1.0.Steamworks.Fix-RVTFiX.Multiplayer.zip
2014-06-20 05:35 - 2014-06-20 05:35 - 00000000 ____D () C:\Users\keyser\Documents\My Cheat Tables
2014-06-20 05:32 - 2014-06-20 05:32 - 00000000 ____D () C:\Users\keyser\Downloads\Spintires V1.00 Trainer +2
2014-06-20 01:21 - 2014-06-20 01:21 - 04130599 _____ () C:\Users\keyser\Downloads\Spintires V1.00 Trainer +2.rar
2014-06-15 21:51 - 2014-07-10 18:03 - 00009632 _____ () C:\Windows\setupact.log
2014-06-15 21:51 - 2014-07-10 17:58 - 00032362 _____ () C:\Windows\PFRO.log
2014-06-15 21:51 - 2014-06-15 21:51 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-15 21:00 - 2014-06-15 21:00 - 00000000 __SHD () C:\Users\keyser\AppData\Local\EmieUserList
2014-06-15 21:00 - 2014-06-15 21:00 - 00000000 __SHD () C:\Users\keyser\AppData\Local\EmieSiteList
2014-06-15 20:28 - 2014-06-15 20:28 - 00012188 _____ () C:\Users\keyser\Documents\cc_20140615_202838.reg
2014-06-15 20:17 - 2014-06-15 20:17 - 00001032 _____ () C:\Users\keyser\Desktop\IV2010 — skrót.lnk

==================== One Month Modified Files and Folders =======

2014-07-10 20:01 - 2014-07-10 20:00 - 00014340 _____ () C:\Users\keyser\Desktop\FRST.txt
2014-07-10 20:01 - 2014-07-10 19:58 - 00000000 ____D () C:\FRST
2014-07-10 19:57 - 2014-07-10 19:58 - 01074688 _____ (Farbar) C:\Users\keyser\Desktop\FRST.exe
2014-07-10 19:52 - 2014-07-10 19:52 - 00012096 _____ () C:\Users\keyser\Desktop\07102014_195142.log
2014-07-10 19:48 - 2014-05-16 09:27 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-10 19:35 - 2014-07-10 19:35 - 00000000 ____D () C:\_OTL
2014-07-10 18:52 - 2014-07-10 18:14 - 00048078 _____ () C:\Users\keyser\Desktop\Extras.Txt
2014-07-10 18:51 - 2014-07-10 18:14 - 00119080 _____ () C:\Users\keyser\Desktop\OTL.Txt
2014-07-10 18:10 - 2009-07-14 06:34 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-10 18:10 - 2009-07-14 06:34 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-10 18:08 - 2011-04-12 07:08 - 00175036 _____ () C:\Windows\system32\perfc015.dat
2014-07-10 18:08 - 2011-04-12 07:08 - 00108560 _____ () C:\Windows\system32\perfh015.dat
2014-07-10 18:08 - 2010-11-20 23:01 - 01113314 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-10 18:06 - 2013-12-14 21:43 - 01448320 _____ () C:\Windows\WindowsUpdate.log
2014-07-10 18:03 - 2014-06-15 21:51 - 00009632 _____ () C:\Windows\setupact.log
2014-07-10 18:03 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-10 17:58 - 2014-06-15 21:51 - 00032362 _____ () C:\Windows\PFRO.log
2014-07-10 17:57 - 2014-07-10 17:47 - 00000000 ____D () C:\AdwCleaner
2014-07-10 17:53 - 2014-07-10 17:53 - 00000079 _____ () C:\.directory
2014-07-10 17:28 - 2014-06-25 11:45 - 00000000 __SHD () C:\Windows\system32\Windows Server
2014-07-10 17:15 - 2014-07-10 19:56 - 01107968 _____ () C:\Users\keyser\Desktop\RSIT.exe
2014-07-10 16:58 - 2014-07-10 16:58 - 00000080 _____ () C:\Windows\system32\.directory
2014-07-10 16:56 - 2014-07-10 16:56 - 00000099 _____ () C:\Windows\.directory
2014-07-10 16:21 - 2014-07-09 04:54 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-07-10 16:20 - 2014-07-10 16:20 - 00000000 _____ () C:\ProgramData\cisE974.exe
2014-07-10 15:59 - 2014-07-08 21:40 - 00000000 ____D () C:\Program Files\Comodo
2014-07-10 15:59 - 2013-12-10 17:04 - 00000000 ____D () C:\Program Files\PowerISO
2014-07-10 12:38 - 2014-07-10 18:01 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\keyser\Desktop\TDSSKiller.exe
2014-07-10 08:29 - 2014-07-10 08:29 - 00000000 _____ () C:\ProgramData\cis618.exe
2014-07-10 04:02 - 2014-07-10 04:02 - 00002122 _____ () C:\Windows\epplauncher.mif
2014-07-10 01:31 - 2014-07-10 01:31 - 00011550 _____ () C:\Users\keyser\Downloads\[kickass.to]edge.of.tomorrow.2014.tc.hc.xvid.mp3.rarbg.torrent
2014-07-10 00:39 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-07-09 23:51 - 2014-07-10 17:27 - 00602112 _____ (OldTimer Tools) C:\Users\keyser\Desktop\OTL.exe
2014-07-09 19:54 - 2014-07-07 22:18 - 00268440 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-09 19:52 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\pl-PL
2014-07-09 18:42 - 2013-08-06 06:25 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-09 18:36 - 2013-08-06 06:05 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-09 17:48 - 2013-08-07 02:39 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-09 17:48 - 2013-08-07 02:39 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-09 17:39 - 2014-07-09 17:39 - 00320120 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys
2014-07-09 17:20 - 2014-07-08 10:50 - 00000310 _____ () C:\Windows\Tasks\FreeFixer background scan.job
2014-07-09 05:55 - 2014-07-09 05:27 - 00000000 ____D () C:\Users\keyser\Downloads\KITSY
2014-07-09 04:54 - 2014-07-09 04:54 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-09 03:48 - 2014-07-09 03:48 - 00000000 ____D () C:\Users\keyser\AppData\Local\AdTrustMedia
2014-07-08 21:43 - 2014-07-08 21:43 - 00000272 _____ () C:\Windows\system32\Drivers\sfi.dat
2014-07-08 21:41 - 2014-07-08 21:41 - 00000000 ____D () C:\ProgramData\Adtrustmedia
2014-07-08 21:41 - 2014-07-08 21:41 - 00000000 ____D () C:\Program Files\Common Files\COMODO
2014-07-08 21:41 - 2014-07-08 21:03 - 00000000 ____D () C:\ProgramData\Comodo
2014-07-08 21:40 - 2014-07-08 21:40 - 00000000 ____D () C:\ProgramData\Comodo Downloader
2014-07-08 21:14 - 2013-08-07 03:43 - 00007643 _____ () C:\Users\keyser\AppData\Local\Resmon.ResmonCfg
2014-07-08 19:59 - 2014-07-08 19:59 - 02992066 _____ () C:\Users\keyser\Downloads\adbplugin.zip
2014-07-08 19:59 - 2014-07-08 19:59 - 00387847 _____ () C:\Users\keyser\Downloads\wfx_totalupgrade_1.0.2.0.zip
2014-07-08 19:59 - 2014-07-08 19:59 - 00100366 _____ () C:\Users\keyser\Downloads\pluginmanager2_6_light.rar
2014-07-08 19:59 - 2014-07-08 19:59 - 00040289 _____ () C:\Users\keyser\Downloads\wfx_envvar_1.3.0.222v.zip
2014-07-08 19:59 - 2014-07-08 19:59 - 00009913 _____ () C:\Users\keyser\Downloads\wfx_DialPwd_1.0.zip
2014-07-08 19:59 - 2014-07-08 19:59 - 00006500 _____ () C:\Users\keyser\Downloads\privileges.zip
2014-07-08 19:35 - 2014-07-08 19:35 - 01844941 _____ () C:\Users\keyser\Downloads\wcx_Total7zip_0856.rar
2014-07-08 19:32 - 2014-07-08 19:32 - 00052288 _____ () C:\Users\keyser\Downloads\msi_plugin.zip
2014-07-08 19:13 - 2014-07-08 19:13 - 00613775 _____ () C:\Users\keyser\Downloads\wcx_7zip.zip
2014-07-08 15:53 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-07-08 15:28 - 2014-07-08 15:28 - 00000218 _____ () C:\Users\keyser\AppData\Local\recently-used.xbel
2014-07-08 13:25 - 2014-07-07 13:29 - 00000000 ____D () C:\Program Files\TC UP
2014-07-08 12:05 - 2013-11-25 21:33 - 00001805 _____ () C:\Users\keyser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-07-08 11:35 - 2014-07-08 11:35 - 00000000 ____D () C:\Users\keyser\AppData\Local\5408
2014-07-08 11:25 - 2014-07-08 11:25 - 02681890 _____ () C:\Users\keyser\Downloads\MonTest_2_1.exe
2014-07-08 11:23 - 2014-07-08 05:31 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\XnView
2014-07-08 10:50 - 2014-07-08 10:50 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeFixer
2014-07-08 10:50 - 2013-10-18 23:56 - 00000000 ____D () C:\Program Files\FreeFixer
2014-07-08 09:41 - 2014-07-08 09:41 - 01140048 _____ () C:\Windows\RunSetup.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00959879 _____ () C:\Windows\FSSFM.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00192480 _____ () C:\Windows\FSSETUP.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00152940 _____ () C:\Windows\FSPROD.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00035765 _____ () C:\Windows\FSSGUI.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00034354 _____ () C:\Windows\FSISU.log
2014-07-08 09:41 - 2014-07-08 09:41 - 00000208 _____ () C:\Windows\FSDEPH.log
2014-07-08 06:43 - 2013-08-25 18:50 - 00000640 __RSH () C:\Users\keyser\ntuser.pol
2014-07-08 06:43 - 2013-08-14 20:55 - 00000912 __RSH () C:\ProgramData\ntuser.pol
2014-07-08 06:43 - 2013-08-06 05:21 - 00000000 ___RD () C:\Users\keyser
2014-07-08 06:40 - 2013-09-06 19:12 - 00000000 ____D () C:\Windows\pss
2014-07-08 06:37 - 2014-07-08 06:14 - 00000000 ____D () C:\Users\keyser\Downloads\Microsoft Visual C++
2014-07-08 06:14 - 2014-07-08 06:14 - 01181112 _____ (Microsoft Corporation) C:\Users\keyser\Downloads\1B48.tmp
2014-07-08 06:11 - 2013-08-07 21:07 - 00000000 ___HD () C:\ASUS.000
2014-07-08 05:46 - 2013-09-16 20:30 - 00000000 ____D () C:\ProgramData\Package Cache
2014-07-08 05:18 - 2014-07-08 05:18 - 05073240 _____ (Microsoft Corporation) C:\Users\keyser\Downloads\vcredist_x86.exe
2014-07-08 05:15 - 2014-07-08 05:15 - 02244552 _____ (Mister Group ) C:\Users\keyser\Downloads\SystemExplorerSetup_580.exe
2014-07-08 04:12 - 2009-07-14 06:53 - 00032604 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-07-08 02:18 - 2014-07-08 02:18 - 00003472 _____ () C:\Users\keyser\Documents\cc_20140708_021802.reg
2014-07-08 02:12 - 2014-07-08 02:12 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\SumatraPDF
2014-07-08 02:09 - 2014-07-08 02:06 - 00036485 _____ () C:\Windows\iis7.log
2014-07-08 02:08 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\inetsrv
2014-07-08 02:06 - 2013-11-25 19:25 - 00000000 ____D () C:\inetpub
2014-07-08 02:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-07-07 22:20 - 2014-07-07 22:20 - 00058400 _____ () C:\Users\keyser\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-07 20:28 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\registration
2014-07-07 20:13 - 2014-07-07 20:13 - 00000000 ____D () C:\Users\Administrator\AppData\Local\AdTrustMedia
2014-07-07 20:12 - 2014-07-07 20:12 - 00000000 ____H () C:\Users\Administrator\Documents\Default.rdp
2014-07-07 20:09 - 2014-07-07 20:09 - 00058400 _____ () C:\Users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-07 20:09 - 2014-07-07 20:09 - 00002207 _____ () C:\Users\Administrator\Desktop\Google Chrome.lnk
2014-07-07 20:09 - 2014-07-07 20:09 - 00000640 __RSH () C:\Users\Administrator\ntuser.pol
2014-07-07 20:09 - 2014-07-07 20:09 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Ustawienia lokalne
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Szablony
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Moje dokumenty
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Menu Start
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Documents\Moje wideo
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Documents\Moje obrazy
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Documents\Moja muzyka
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\Dane aplikacji
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Historia
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Dane aplikacji
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\ATI
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 ____D () C:\Users\Administrator\AppData\Local\ATI
2014-07-07 20:09 - 2014-07-07 20:09 - 00000000 ____D () C:\Users\Administrator
2014-07-07 19:16 - 2013-12-13 21:42 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\Milestone
2014-07-07 16:49 - 2014-07-07 16:49 - 00000000 ____D () C:\Users\keyser\Documents\Security
2014-07-07 13:34 - 2014-07-07 13:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Commander Ultima Prime
2014-07-07 13:31 - 2014-07-07 13:31 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\HEXelon
2014-07-07 12:56 - 2014-07-07 12:56 - 00276484 _____ () C:\Users\keyser\Documents\cc_20140707_125643.reg
2014-07-07 12:53 - 2013-11-09 14:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
2014-07-07 12:47 - 2013-12-14 20:28 - 00000921 _____ () C:\Windows\QSFVExit.bat
2014-07-07 12:16 - 2014-07-07 12:16 - 07773376 _____ (AIMP DevTeam) C:\Users\keyser\Downloads\aimp_3.55.1350.exe
2014-07-07 12:02 - 2014-07-07 12:02 - 02602023 _____ (Kephyr) C:\Users\keyser\Downloads\freefixersetup.exe
2014-07-07 11:20 - 2014-07-07 11:20 - 00020869 _____ () C:\Users\keyser\Downloads\120304462-1~006.htm
2014-07-06 23:42 - 2014-07-06 23:42 - 00025894 _____ () C:\Users\keyser\Documents\cc_20140706_234211.reg
2014-07-06 23:40 - 2014-07-06 23:40 - 00114488 _____ () C:\Users\keyser\Documents\cc_20140706_234037.reg
2014-07-06 23:34 - 2013-09-15 21:47 - 00000000 ____D () C:\Windows\Minidump
2014-07-06 22:08 - 2014-07-06 19:59 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-07-06 22:08 - 2013-08-15 00:36 - 00000000 ____D () C:\Program Files\Steam
2014-07-06 20:25 - 2013-10-02 23:49 - 00000000 ____D () C:\Users\keyser\Documents\KONAMI
2014-07-06 20:19 - 2014-07-06 20:19 - 00000832 _____ () C:\Users\Public\Desktop\Pro Evolution Soccer 2014 - World Challenge.lnk
2014-07-06 20:19 - 2014-07-06 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami Digital Entertainment
2014-07-06 14:05 - 2013-09-19 17:09 - 00000000 ____D () C:\ProgramData\KONAMI
2014-07-06 03:28 - 2014-07-06 03:28 - 08620294 _____ () C:\Users\keyser\Downloads\sr-pes14116.7z
2014-07-06 03:28 - 2014-07-06 03:28 - 00000000 ____D () C:\Users\keyser\Downloads\sr-pes14116
2014-07-06 03:19 - 2014-07-06 03:19 - 00020475 _____ () C:\Users\keyser\Downloads\Download pro evolution soccer 2014 world challenge update skidrow ketubanjiwa com rar.htm
2014-07-06 03:19 - 2014-07-06 03:19 - 00000000 ____D () C:\Users\keyser\Downloads\Download pro evolution soccer 2014 world challenge update skidrow ketubanjiwa com rar_files
2014-07-06 03:14 - 2014-07-06 03:14 - 19684257 _____ () C:\Users\keyser\Downloads\P1_10.rar
2014-07-06 03:14 - 2014-07-06 03:14 - 00000000 ____D () C:\Users\keyser\Downloads\P1_10
2014-07-06 02:34 - 2014-07-06 02:34 - 00000000 ____D () C:\Users\keyser\Downloads\pm-pes14wc
2014-07-06 02:08 - 2014-07-06 02:08 - 00000000 ____D () C:\Users\keyser\Downloads\PES 2014 DLC all in one
2014-07-05 15:01 - 2014-07-05 15:01 - 00000000 ____D () C:\Users\keyser\Downloads\SE3U1 (1)
2014-07-05 15:01 - 2014-07-05 15:01 - 00000000 ____D () C:\Users\keyser\Downloads\RebellionHateFurerDLC
2014-07-05 14:34 - 2013-08-08 02:27 - 00000000 ____D () C:\Program Files\Common Files\Steam
2014-07-04 12:24 - 2014-07-04 12:24 - 00001195 _____ () C:\Users\keyser\Desktop\RealBoxingGame — skrót.lnk
2014-07-04 07:06 - 2014-07-04 07:04 - 00000000 ____D () C:\Users\keyser\AppData\Local\Sniper3
2014-07-04 06:56 - 2014-07-04 06:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default)
2014-07-04 06:55 - 2014-07-04 06:51 - 586048061 _____ () C:\Users\keyser\Downloads\RebellionHateFurerDLC.rar
2014-07-04 06:52 - 2014-07-04 06:52 - 24702346 _____ () C:\Users\keyser\Downloads\SE3U1 (1).rar
2014-07-03 14:40 - 2013-09-05 04:40 - 00000000 ____D () C:\Users\keyser\Documents\My Games
2014-07-03 06:49 - 2014-07-03 06:49 - 00000000 ____D () C:\Users\keyser\Documents\MODERN
2014-07-03 06:38 - 2014-07-03 06:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Boxing
2014-06-30 21:22 - 2014-06-30 21:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Elite 3
2014-06-29 20:37 - 2013-11-23 08:03 - 00000000 ____D () C:\ProgramData\Codemasters
2014-06-29 20:30 - 2014-06-29 20:30 - 00000421 _____ () C:\Users\Public\Desktop\GRID Autosport.lnk
2014-06-29 20:30 - 2014-06-29 20:30 - 00000421 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRID Autosport.lnk
2014-06-27 02:14 - 2014-03-19 14:24 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome
2014-06-25 21:16 - 2014-06-25 21:15 - 1506802408 _____ () C:\Users\keyser\Downloads\PES 2014 DLC all in one.7z
2014-06-25 05:02 - 2014-06-25 05:02 - 00002296 _____ () C:\Users\keyser\Downloads\PES2014OpenDownloadFolder.rar
2014-06-23 22:39 - 2014-06-23 22:39 - 08615073 _____ () C:\Users\keyser\Downloads\pm-pes14wc.7z
2014-06-23 11:27 - 2014-06-23 02:47 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\SpinTires
2014-06-23 02:37 - 2013-10-18 10:41 - 00000000 ____D () C:\Windows\system32\directx
2014-06-23 02:36 - 2014-06-23 02:36 - 00001140 _____ () C:\Users\Public\Desktop\Spintires.lnk
2014-06-23 02:36 - 2014-06-23 02:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spintires
2014-06-23 02:35 - 2014-06-23 02:35 - 00000000 ____D () C:\Program Files\R.G. Freedom
2014-06-22 20:51 - 2014-06-22 20:50 - 08347620 _____ () C:\Users\keyser\Downloads\SPINTIRES.V1.0.Steamworks.Fix-RVTFiX.Multiplayer.zip
2014-06-22 03:13 - 2013-08-19 09:39 - 00000000 ____D () C:\Users\keyser\AppData\Local\SKIDROW
2014-06-21 23:25 - 2014-05-02 02:34 - 00000581 _____ () C:\Users\keyser\Desktop\Pinball FX2.lnk
2014-06-20 21:39 - 2014-07-09 18:34 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-06-20 05:35 - 2014-06-20 05:35 - 00000000 ____D () C:\Users\keyser\Documents\My Cheat Tables
2014-06-20 05:32 - 2014-06-20 05:32 - 00000000 ____D () C:\Users\keyser\Downloads\Spintires V1.00 Trainer +2
2014-06-20 01:21 - 2014-06-20 01:21 - 04130599 _____ () C:\Users\keyser\Downloads\Spintires V1.00 Trainer +2.rar
2014-06-19 02:16 - 2014-07-09 18:34 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-19 01:56 - 2014-07-09 18:34 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-19 01:56 - 2014-07-09 18:34 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-19 01:38 - 2014-07-09 18:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-19 01:37 - 2014-07-09 18:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-19 01:36 - 2014-07-09 18:34 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-19 01:35 - 2014-07-09 18:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-06-19 01:32 - 2014-07-09 18:34 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-19 01:28 - 2014-07-09 18:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-19 01:28 - 2014-07-09 18:34 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-19 01:25 - 2014-07-09 18:34 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-19 01:23 - 2014-07-09 18:34 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-19 01:23 - 2014-07-09 18:34 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-19 01:22 - 2014-07-09 18:34 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-19 01:16 - 2014-07-09 18:34 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-19 01:12 - 2014-07-09 18:34 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-19 01:06 - 2014-07-09 18:34 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-19 01:01 - 2014-07-09 18:34 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-19 00:59 - 2014-07-09 18:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-19 00:58 - 2014-07-09 18:34 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-19 00:52 - 2014-07-09 18:34 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-19 00:52 - 2014-07-09 18:34 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-19 00:49 - 2014-07-09 18:34 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-19 00:46 - 2014-07-09 18:34 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-19 00:45 - 2014-07-09 18:34 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-19 00:35 - 2014-07-09 18:34 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-19 00:13 - 2014-07-09 18:34 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-19 00:09 - 2014-07-09 18:34 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-19 00:07 - 2014-07-09 18:34 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-18 03:51 - 2014-07-09 18:34 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-06-18 02:52 - 2014-07-09 18:34 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-06-15 21:51 - 2014-06-15 21:51 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-15 21:00 - 2014-06-15 21:00 - 00000000 __SHD () C:\Users\keyser\AppData\Local\EmieUserList
2014-06-15 21:00 - 2014-06-15 21:00 - 00000000 __SHD () C:\Users\keyser\AppData\Local\EmieSiteList
2014-06-15 20:40 - 2014-04-30 05:25 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-06-15 20:40 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-06-15 20:28 - 2014-06-15 20:28 - 00012188 _____ () C:\Users\keyser\Documents\cc_20140615_202838.reg
2014-06-15 20:17 - 2014-06-15 20:17 - 00001032 _____ () C:\Users\keyser\Desktop\IV2010 — skrót.lnk
2014-06-15 20:14 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\wfp
2014-06-15 20:13 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\Msdtc
2014-06-15 20:12 - 2014-04-01 18:42 - 00000000 ____D () C:\Program Files\OpenAL
2014-06-15 20:12 - 2013-08-08 02:37 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\NapiProjekt
2014-06-15 20:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2014-06-14 18:47 - 2014-04-28 19:29 - 00000000 ____D () C:\Users\keyser\Documents\Pro Cycling Manager 2013
2014-06-14 18:47 - 2014-04-28 19:29 - 00000000 ____D () C:\Users\keyser\AppData\Roaming\Pro Cycling Manager 2013

Files to move or delete:
====================
C:\ProgramData\cis618.exe
C:\ProgramData\cisE974.exe


Some content of TEMP:
====================
C:\Users\keyser\AppData\Local\Temp\Quarantine.exe
C:\Users\keyser\AppData\Local\Temp\{C656C1F4-0A98-413A-8F9F-4C527CCA189D}.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe = & gt; File is digitally signed
C:\Windows\system32\winlogon.exe = & gt; File is digitally signed
C:\Windows\system32\wininit.exe = & gt; File is digitally signed
C:\Windows\system32\svchost.exe = & gt; File is digitally signed
C:\Windows\system32\services.exe = & gt; File is digitally signed
C:\Windows\system32\User32.dll = & gt; File is digitally signed
C:\Windows\system32\userinit.exe = & gt; File is digitally signed
C:\Windows\system32\rpcss.dll = & gt; File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys = & gt; File is digitally signed


LastRegBack: 2014-07-09 08:27

==================== End Of Log ============================