Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Achraf (administrator) on DELL-PC on 06-04-2014 12:59:59 Running from C:\Users\Achraf\Downloads\Programs Windows 7 Ultimate Service Pack 1 (X64) OS Language: French Standard Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Arcai.com) C:\Program Files (x86)\netcut\services\AIPS.exe (AMD) C:\Windows\system32\atieclxx.exe (Cucusoft, Inc.) C:\Program Files\Cucusoft\NetGuard\SysMsgProxySrvc.sys (CybelSoft) C:\Program Files\ma-config.com\MaConfigAgent.exe () C:\Program Files (x86)\Universal Updater\UpdaterService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe () C:\Program Files (x86)\DFX\DFX.exe () C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe () C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe () C:\Program Files (x86)\DFX\Universal\Apps\dfxItunesSong.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [CucusoftNetGuard] - [X] Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-133868172-2586371647-4254189040-1000\...\Run: [IDMan] - C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3825232 2014-01-23] (Tonec Inc.) HKU\S-1-5-21-133868172-2586371647-4254189040-1000\...\Policies\Explorer: [Start_NotifyNewApps] 0 HKU\S-1-5-21-133868172-2586371647-4254189040-1000\...\MountPoints2: {2c681b3c-ed32-11e2-90c7-d4bed9c2a548} - F:\KODAK_Camera_Setup_App.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.arabyonline.com/?src=10336BC7F5 HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Default_page_url = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE11FRFR/WOL_WCP HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.arabyonline.com/?src=10336BC7F5 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Secondary Start Pages = URLSearchHook: HKLM-x32 - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871} URLSearchHook: HKCU - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871} URLSearchHook: HKCU - (No Name) - {fcbf663e-8530-46f8-a880-ac5abe9d2b23} - No File SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - DefaultScope {756D1D40-E491-4E1D-9BC6-5B37CEDE646E} URL = http://www.arabyonline.com/search.php?src=103&q={searchTerms} SearchScopes: HKLM-x32 - {756D1D40-E491-4E1D-9BC6-5B37CEDE646E} URL = http://www.arabyonline.com/search.php?src=103&q={searchTerms} SearchScopes: HKCU - DefaultScope {756D1D40-E491-4E1D-9BC6-5B37CEDE646E} URL = http://www.arabyonline.com/search.php?src=103&q={searchTerms} SearchScopes: HKCU - {756D1D40-E491-4E1D-9BC6-5B37CEDE646E} URL = http://www.arabyonline.com/search.php?src=103&q={searchTerms} SearchScopes: HKCU - {F7501577-3981-4A64-8065-ED0BE66C9617} URL = http://t2-3.search.com/search?q={searchTerms} BHO: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.) BHO: AdSafe Class - {598AC71E-BE58-3981-B78A-5C138F423AD6} - C:\Users\Achraf\AppData\Roaming\VolIE\Adsafe_64.dll () BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.) BHO-x32: AdSafe Class - {598AC71E-BE58-3981-B78A-5C138F423AD6} - C:\Users\Achraf\AppData\Roaming\VolIE\Adsafe_32.dll () BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Programme d’aide de l’Assistant de connexion au compte Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{F689C6A6-A0F6-4DCC-B06F-9B06C256673C}: [NameServer]8.8.8.8,8.8.4.4 FireFox: ======== FF ProfilePath: C:\Users\Achraf\AppData\Roaming\Mozilla\Firefox\Profiles\b8mcnpws.default-1389727723320 FF user.js: detected! => C:\Users\Achraf\AppData\Roaming\Mozilla\Firefox\Profiles\b8mcnpws.default-1389727723320\user.js FF Homepage: hxxp://www.arabyonline.com/?scr=90Qw8888 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll () FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Achraf\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Achraf\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Achraf\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Achraf\AppData\Roaming\Mozilla\Firefox\Profiles\b8mcnpws.default-1389727723320\searchplugins\VenteeRo.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazon-france.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\cnrtl-tlfi-fr.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-france.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\testlog.txt FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-france.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahootc.xml FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\Achraf\AppData\Roaming\Mozilla\Firefox\Profiles\b8mcnpws.default-1389727723320\Extensions\elemhidehelper@adblockplus.org.xpi [2014-03-04] FF Extension: SocialReviver - C:\Users\Achraf\AppData\Roaming\Mozilla\Firefox\Profiles\b8mcnpws.default-1389727723320\Extensions\fbsidebardisabler@vittgam.net.xpi [2014-01-14] FF Extension: oldnewsfeed - C:\Users\Achraf\AppData\Roaming\Mozilla\Firefox\Profiles\b8mcnpws.default-1389727723320\Extensions\oldnewsfeed@jetpack.xpi [2014-04-05] FF Extension: YouTube Smart Pause - C:\Users\Achraf\AppData\Roaming\Mozilla\Firefox\Profiles\b8mcnpws.default-1389727723320\Extensions\YouTubeSmartPause@jetpack.xpi [2014-02-26] FF Extension: Adblock Plus - C:\Users\Achraf\AppData\Roaming\Mozilla\Firefox\Profiles\b8mcnpws.default-1389727723320\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-19] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\fbsidebardisabler@vittgam.net.xpi [2014-04-04] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\jid1-s0hS918atYzRdw@jetpack.xpi [2014-04-04] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\s3google@translator.xpi [2014-04-04] FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ [] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2014-02-28] FF HKLM-x32\...\Firefox\Extensions: [OKitSpace@OKitSpace.es] - C:\Users\Achraf\AppData\Roaming\okitSpace\Firefox FF HKCU\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Achraf\AppData\Roaming\IDM\idmmzcc5 FF Extension: IDM CC - C:\Users\Achraf\AppData\Roaming\IDM\idmmzcc5 [2014-01-23] FF HKCU\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Achraf\AppData\Roaming\IDM\idmmzcc5 FF Extension: IDM CC - C:\Users\Achraf\AppData\Roaming\IDM\idmmzcc5 [2014-01-23] Chrome: ======= CHR HomePage: CHR Extension: (Freemake Video Converter) - C:\Users\Achraf\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2014-04-05] CHR Extension: (IDM Integration Module) - C:\Users\Achraf\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeaohhlajejodfjadcponpnjgkiikocn [2014-01-17] CHR Extension: (Google Wallet) - C:\Users\Achraf\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23] CHR HKCU\...\Chrome\Extension: [fhlkamjopkamckcfiolblkngeeocmloo] - C:\Users\Achraf\AppData\Local\CRE\fhlkamjopkamckcfiolblkngeeocmloo.crx [2013-08-23] CHR HKLM-x32\...\Chrome\Extension: [faklkmlkcleeoibffcbligohmkciloif] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx [2013-08-23] CHR HKLM-x32\...\Chrome\Extension: [fhlkamjopkamckcfiolblkngeeocmloo] - C:\Users\Achraf\AppData\Local\CRE\fhlkamjopkamckcfiolblkngeeocmloo.crx [2013-08-23] CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2013-05-29] CHR HKLM-x32\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2014-01-17] ==================== Services (Whitelisted) ================= R2 AIPS; C:\Program Files (x86)\netcut\services\AIPS.exe [262144 2011-07-28] (Arcai.com) R2 CS_SysMsgProxy; C:\Program Files\Cucusoft\NetGuard\SysMsgProxySrvc.sys [255136 2013-03-24] (Cucusoft, Inc.) S4 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [101888 2013-05-29] (Freemake) R2 MaConfigAgent; C:\Program Files\ma-config.com\MaConfigAgent.exe [2818888 2014-04-01] (CybelSoft) S3 MatSvc; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [343856 2011-06-13] (Microsoft Corporation) S4 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-11-29] () R2 UniversalUpdater; C:\Program Files (x86)\Universal Updater\UpdaterService.exe [402872 2014-01-29] () ==================== Drivers (Whitelisted) ==================== S3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31968 2012-10-08] (Wondershare) R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [49952 2014-03-26] (AVG Technologies) R3 DFX11_1; C:\Windows\System32\drivers\dfx11_1x64.sys [28008 2012-08-29] (Windows (R) Win 7 DDK provider) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-01-25] (DT Soft Ltd) S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [14872 2014-01-07] () S3 ma-config_amd64; C:\Program Files\ma-config.com\Drivers\ma-config_amd64.sys [17568 2014-02-24] (CybelSoft) S3 RTL8187B; C:\Windows\System32\DRIVERS\RTL8187B.sys [450048 2010-03-31] (Realtek Semiconductor Corporation ) S3 SG762_64; C:\Windows\System32\DRIVERS\WlanBZ64.sys [493440 2006-01-19] (ZyDAS Technology Corporation) R3 stdriver; C:\Windows\System32\DRIVERS\stdriverx64.sys [33488 2014-04-05] () S3 ALSysIO; \??\C:\Users\Achraf\AppData\Local\Temp\ALSysIO64.sys [X] S3 CV2K1; system32\DRIVERS\cv2k1.sys [X] S3 DIRECTIO; \??\C:\Program Files\PerformanceTest\DirectIo64.sys [X] S3 PCDSRVC{D3412D80-CF3B4A27-06020200}_0; \??\c:\program files\my dell\pcdsrvc_x64.pkms [X] S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S0 vmci; system32\DRIVERS\vmci.sys [X] S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-06 12:59 - 2014-04-06 12:59 - 00000000 ____D () C:\FRST 2014-04-06 11:32 - 2014-04-06 11:32 - 00001043 _____ () C:\Users\Achraf\Desktop\RoboMind.lnk 2014-04-06 11:32 - 2014-04-06 11:32 - 00000000 ____D () C:\Users\Achraf\Documents\My RoboMind 2014-04-06 11:32 - 2014-04-06 11:32 - 00000000 ____D () C:\Program Files (x86)\RoboMind 2014-04-06 09:48 - 2014-04-06 12:06 - 05033408 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-06 09:48 - 2014-04-06 12:05 - 00000112 _____ () C:\Windows\setupact.log 2014-04-06 09:48 - 2014-04-06 09:48 - 00001078 _____ () C:\Windows\PFRO.log 2014-04-06 09:48 - 2014-04-06 09:48 - 00000000 _____ () C:\Windows\setuperr.log 2014-04-05 22:11 - 2014-04-05 22:31 - 00000000 ____D () C:\Windows\D3F93A5A7A5D4867B2A16F46500D006C.TMP 2014-04-05 22:11 - 2014-04-05 22:11 - 00000000 ____D () C:\Program Files (x86)\Enigma Software Group 2014-04-05 22:05 - 2013-05-07 15:29 - 01016704 _____ (Enigma Software Group USA, LLC.) C:\Windows\system32\ExecutionGuard.dll 2014-04-05 21:55 - 2014-04-05 21:55 - 00000000 ____D () C:\ProgramData\GreenApp 2014-04-05 21:55 - 2014-04-05 21:55 - 00000000 ____D () C:\Program Files (x86)\Universal Updater 2014-04-05 21:18 - 2014-04-05 21:18 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-04-05 21:18 - 2014-04-05 21:18 - 00000000 _____ () C:\autoexec.bat 2014-04-05 21:17 - 2014-04-05 22:11 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-04-05 21:01 - 2014-04-05 21:02 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\TeraCopy 2014-04-05 21:01 - 2014-04-05 21:01 - 00000000 ____D () C:\Program Files\TeraCopy 2014-04-05 20:30 - 2014-04-05 20:30 - 17469440 _____ () C:\Windows\system32\config\systemTMP.rd 2014-04-05 19:13 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-04-05 19:13 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-04-05 19:13 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-04-05 19:13 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-04-05 18:52 - 2014-04-05 18:53 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-05 18:50 - 2012-07-26 04:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-04-05 18:50 - 2012-07-26 04:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-04-05 18:50 - 2012-07-26 04:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-04-05 18:50 - 2012-07-26 04:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-04-05 18:50 - 2012-07-26 04:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-04-05 18:50 - 2012-07-26 03:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-04-05 18:50 - 2012-07-26 03:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-04-05 18:50 - 2012-06-02 15:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-04-05 18:31 - 2014-03-01 07:05 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-05 18:31 - 2014-03-01 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-05 18:31 - 2014-03-01 06:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-05 18:31 - 2014-03-01 05:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-05 18:31 - 2014-03-01 05:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-05 18:31 - 2014-03-01 05:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-05 18:31 - 2014-03-01 05:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-05 18:31 - 2014-03-01 05:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-05 18:31 - 2014-03-01 05:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-05 18:31 - 2014-03-01 05:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-05 18:31 - 2014-03-01 05:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-05 18:31 - 2014-03-01 05:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-05 18:31 - 2014-03-01 05:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-04-05 18:31 - 2014-03-01 05:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-05 18:31 - 2014-03-01 05:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-05 18:31 - 2014-03-01 05:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-04-05 18:31 - 2014-03-01 05:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-05 18:31 - 2014-03-01 04:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-05 18:31 - 2014-03-01 04:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-04-05 18:31 - 2014-03-01 04:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-04-05 18:31 - 2014-03-01 04:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-04-05 18:31 - 2014-03-01 04:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-04-05 18:31 - 2014-03-01 04:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-04-05 18:31 - 2014-03-01 04:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-05 18:31 - 2014-03-01 04:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-04-05 18:31 - 2014-03-01 04:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-04-05 18:31 - 2014-03-01 04:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-04-05 18:31 - 2014-03-01 04:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-05 18:31 - 2014-03-01 04:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-05 18:31 - 2014-03-01 04:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-04-05 18:31 - 2014-03-01 04:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-04-05 18:31 - 2014-03-01 04:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-05 18:31 - 2014-03-01 04:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-04-05 18:31 - 2014-03-01 04:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-04-05 18:31 - 2014-03-01 03:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-04-05 18:31 - 2014-03-01 03:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-05 18:31 - 2014-03-01 03:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-04-05 18:31 - 2014-03-01 03:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-04-05 18:31 - 2014-03-01 03:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-05 18:31 - 2014-03-01 03:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-04-05 18:24 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-04-05 18:24 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-04-05 18:23 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-04-05 18:23 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-04-05 18:23 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-04-05 18:23 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-04-05 18:23 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-04-05 18:23 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-04-05 18:23 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-04-05 18:23 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-04-05 18:23 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-04-05 18:23 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-04-05 18:23 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-04-05 18:23 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-04-05 18:23 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-04-05 18:23 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-04-05 18:23 - 2012-12-07 14:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-04-05 18:23 - 2012-12-07 14:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2014-04-05 18:23 - 2012-12-07 13:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-04-05 18:23 - 2012-12-07 13:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-04-05 18:23 - 2012-12-07 12:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2014-04-05 18:23 - 2012-12-07 12:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2014-04-05 18:23 - 2012-12-07 12:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2014-04-05 18:23 - 2012-12-07 12:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2014-04-05 18:23 - 2012-12-07 12:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2014-04-05 18:23 - 2012-12-07 12:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2014-04-05 18:23 - 2012-12-07 12:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2014-04-05 18:23 - 2012-12-07 12:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2014-04-05 18:23 - 2012-12-07 12:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2014-04-05 18:23 - 2012-12-07 12:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2014-04-05 18:23 - 2012-12-07 12:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2014-04-05 18:23 - 2012-12-07 12:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2014-04-05 18:23 - 2012-12-07 12:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2014-04-05 18:23 - 2012-12-07 12:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2014-04-05 18:23 - 2012-12-07 11:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2014-04-05 18:22 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-04-05 18:22 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-04-05 18:22 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-04-05 18:22 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-04-05 18:22 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-04-05 18:22 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-04-05 18:22 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-04-05 18:22 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-04-05 18:22 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-04-05 18:22 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-04-05 18:22 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-04-05 18:22 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-04-05 18:22 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-04-05 18:22 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-04-05 18:22 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-04-05 18:22 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-04-05 18:22 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-04-05 18:22 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-04-05 18:22 - 2013-04-26 06:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-04-05 18:22 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-04-05 18:21 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-04-05 18:21 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-04-05 18:21 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-04-05 18:21 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-04-05 18:21 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-04-05 18:21 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-04-05 18:21 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-04-05 18:21 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-04-05 18:21 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-04-05 18:21 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-04-05 18:21 - 2013-04-12 15:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-04-05 18:21 - 2013-02-27 07:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-04-05 18:21 - 2013-02-27 06:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-04-05 18:20 - 2014-02-07 02:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-04-05 18:20 - 2014-02-04 03:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-04-05 18:20 - 2014-02-04 03:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-04-05 18:20 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-04-05 18:20 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-04-05 18:20 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-04-05 18:20 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-04-05 18:20 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-04-05 18:20 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-04-05 18:20 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-04-05 18:20 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-04-05 18:20 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-04-05 18:20 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-04-05 18:20 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-04-05 18:20 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-04-05 18:20 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-04-05 18:20 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-04-05 18:20 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-04-05 18:20 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-04-05 18:20 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-04-05 18:20 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-04-05 18:20 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-04-05 18:20 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-04-05 18:20 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-04-05 18:20 - 2013-03-19 06:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-04-05 18:20 - 2012-10-09 19:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-04-05 18:20 - 2012-10-09 19:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-04-05 18:20 - 2012-10-09 18:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-04-05 18:20 - 2012-10-09 18:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-04-05 18:19 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-04-05 18:19 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-04-05 18:19 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-04-05 18:19 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-04-05 18:19 - 2013-08-02 03:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-04-05 18:19 - 2013-08-02 03:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-04-05 18:19 - 2013-08-02 02:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-04-05 18:19 - 2013-08-02 02:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-04-05 18:19 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-04-05 18:19 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-04-05 18:19 - 2013-02-15 07:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-04-05 18:19 - 2013-02-15 07:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-04-05 18:19 - 2013-02-15 07:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-04-05 18:19 - 2013-02-15 05:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-04-05 18:19 - 2013-02-15 05:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-04-05 18:19 - 2013-02-15 04:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-04-05 18:19 - 2013-01-24 07:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-04-05 18:19 - 2012-11-28 23:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-04-05 18:19 - 2012-11-28 23:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-04-05 18:19 - 2012-11-28 23:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-04-05 18:18 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-04-05 18:18 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-04-05 18:18 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-04-05 18:18 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-04-05 18:18 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-04-05 18:18 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-04-05 18:18 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-04-05 18:18 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-04-05 18:18 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-04-05 18:18 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-04-05 18:18 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-04-05 18:18 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-04-05 18:18 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-04-05 18:18 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-04-05 18:18 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-04-05 18:18 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-04-05 18:18 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-04-05 18:18 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2014-04-05 18:18 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-04-05 18:18 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-04-05 18:18 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-04-05 18:18 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-04-05 18:18 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-04-05 18:18 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-04-05 18:18 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-04-05 18:18 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-04-05 18:18 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-04-05 18:18 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-04-05 18:18 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-04-05 18:18 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-04-05 18:18 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-04-05 18:18 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-04-05 18:18 - 2012-11-22 06:44 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-04-05 18:18 - 2012-11-22 05:45 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-04-05 18:18 - 2012-11-01 06:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-04-05 18:18 - 2012-11-01 05:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-04-05 18:17 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-04-05 18:17 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-04-05 18:17 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-04-05 18:17 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-04-05 18:17 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-04-05 18:17 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-04-05 18:17 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-04-05 18:17 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-04-05 18:17 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-04-05 18:17 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-04-05 18:17 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-04-05 18:17 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-04-05 18:17 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-04-05 18:17 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-04-05 18:17 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-04-05 18:17 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-04-05 18:17 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys 2014-04-05 18:17 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-04-05 18:17 - 2013-07-12 11:40 - 00109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys 2014-04-05 18:17 - 2013-07-09 06:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-04-05 18:17 - 2013-07-09 05:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-04-05 18:17 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-04-05 18:17 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-04-05 18:17 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-04-05 18:17 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-04-05 18:17 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-04-05 18:17 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-04-05 18:17 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-04-05 18:17 - 2013-06-15 05:35 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-04-05 18:17 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-04-05 18:17 - 2013-04-10 07:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-04-05 18:17 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-04-05 18:17 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-04-05 18:17 - 2011-02-03 12:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-04-05 18:15 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-04-05 18:15 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-04-05 18:13 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-04-05 18:13 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-04-05 18:12 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-04-05 18:12 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-04-05 18:12 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-04-05 18:12 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-04-05 18:12 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-04-05 18:12 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-04-05 17:00 - 2014-04-05 17:00 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com 2014-04-05 15:17 - 2014-04-05 15:17 - 10852352 _____ () C:\Users\Achraf\Desktop\dban-2.2.6_i586.iso 2014-04-05 12:33 - 2014-04-05 12:33 - 00000085 _____ () C:\Windows\wininit.ini 2014-04-05 12:30 - 2014-04-05 12:30 - 00033488 _____ () C:\Windows\system32\Drivers\stdriverx64.sys 2014-04-05 12:26 - 2014-04-05 12:36 - 00001636 _____ () C:\Users\Achraf\AppData\Local\Cracklock.settings 2014-04-05 12:26 - 2014-04-05 12:26 - 00000000 ____D () C:\Program Files (x86)\Cracklock 2014-04-05 12:08 - 2014-04-05 12:55 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Pamela Call Recorder 2014-04-05 12:08 - 2014-04-05 12:08 - 00176128 _____ (Scendix Software-Vertriebsges. mbH) C:\Windows\SysWOW64\RemoteControl.dll 2014-04-05 12:08 - 2014-04-05 12:08 - 00000000 ____D () C:\Users\Achraf\Documents\Pamela Call Recorder 2014-04-05 12:08 - 2014-04-05 12:08 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Pamela 2014-04-05 12:08 - 2014-04-05 12:08 - 00000000 ____D () C:\Users\Achraf\AppData\Local\Skype 2014-04-05 12:08 - 2014-04-05 12:08 - 00000000 ____D () C:\Program Files (x86)\PamelaPCR 2014-04-04 20:13 - 2014-04-04 20:13 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.3 2014-04-04 20:07 - 2014-04-04 20:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-03 16:53 - 2014-04-06 12:08 - 01214479 _____ () C:\Windows\WindowsUpdate.log 2014-04-03 16:18 - 2014-04-03 16:36 - 00000000 ____D () C:\Program Files (x86)\PC Tools 2014-04-03 16:18 - 2014-04-03 16:18 - 00000084 _____ () C:\Users\Achraf\Desktop\Nouveau document texte (2).txt 2014-04-03 16:03 - 2014-04-03 16:04 - 01848719 _____ () C:\Windows\system32\Drivers\Cat.DB 2014-04-03 16:03 - 2012-11-01 15:35 - 00253256 _____ (PC Tools) C:\Windows\system32\Drivers\PCTSD64.sys 2014-04-03 16:02 - 2014-04-03 16:36 - 00000000 ____D () C:\ProgramData\PC Tools 2014-04-03 16:02 - 2014-04-03 16:02 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\TestApp 2014-04-03 13:43 - 2014-04-03 15:12 - 00000000 ____D () C:\Program Files (x86)\Mega Browse 2014-04-03 13:43 - 2014-04-03 13:43 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-133868172-2586371647-4254189040-1000Core1cf4f3a5115ceb9.job 2014-04-03 13:42 - 2014-04-03 13:42 - 00501240 _____ (Facebook Inc.) C:\Users\Achraf\Downloads\FacebookMessengerSetup_v1.2.205.0 [1].exe 2014-04-02 11:22 - 2014-04-02 11:24 - 30678631 _____ () C:\Users\Achraf\Downloads\عزاء لأهل البلاء لـلشيخ - عبد الله عسكر.3GP 2014-04-01 13:38 - 2014-04-02 08:51 - 00000000 ____D () C:\Program Files (x86)\LucasChess 2014-03-30 12:49 - 2014-03-30 12:49 - 00000000 ____D () C:\Program Files (x86)\FIRST AND LAST Co., Ltd 2014-03-30 12:02 - 2014-03-30 12:02 - 00000000 ____D () C:\ProgramData\AltrixSoft 2014-03-30 11:08 - 2014-03-30 11:08 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\VolIE 2014-03-30 11:08 - 2014-03-30 11:08 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\ARHome 2014-03-29 17:01 - 2014-03-29 17:01 - 01038855 _____ () C:\Users\Achraf\Downloads\SpeedOut_0.5.zip 2014-03-29 10:39 - 2014-03-29 10:39 - 00001066 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf4b32d2f5c19c.job 2014-03-28 18:36 - 2014-03-28 18:47 - 00000000 ____D () C:\ProgramData\HitmanPro 2014-03-28 18:20 - 2014-03-28 18:55 - 00000000 ____D () C:\Program Files\WhoCrashed 2014-03-28 17:58 - 2014-03-28 18:55 - 00000000 ____D () C:\Program Files (x86)\Nsauditor 2014-03-27 17:01 - 2014-03-28 18:55 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.1 2014-03-27 16:22 - 2014-03-28 18:49 - 00007828 _____ () C:\ProgramData\java.exe.tmp 2014-03-26 12:46 - 2014-03-26 12:58 - 00000000 ____D () C:\Users\Achraf\Documents\My CamStudio Temp Files 2014-03-26 12:45 - 2014-03-26 12:57 - 00000096 _____ () C:\Users\Achraf\AppData\Roaming\version2.xml 2014-03-26 12:45 - 2014-03-26 12:44 - 00049952 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys 2014-03-26 12:35 - 2014-03-26 12:35 - 00011440 _____ () C:\Users\Achraf\Downloads\Rapport ZHP.txt 2014-03-26 12:34 - 2014-03-26 12:34 - 00209650 _____ () C:\Users\Achraf\Downloads\ZHPDiag.txt 2014-03-26 12:30 - 2014-03-26 12:30 - 00000000 ____D () C:\Program Files\Speccy 2014-03-26 12:26 - 2014-03-26 12:26 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Infected Scanner 2014-03-26 12:13 - 2014-02-18 12:48 - 00901848 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-03-26 12:03 - 2014-03-26 12:03 - 00010927 _____ () C:\Shortcut_Module.txt 2014-03-26 12:02 - 2014-03-26 12:03 - 00000000 ____D () C:\Shortcut_Module 2014-03-23 19:10 - 2014-04-05 18:02 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\X-NetStat 2014-03-23 19:10 - 2014-03-28 19:21 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\X-NetStat Professional 2014-03-23 19:10 - 2014-03-28 19:21 - 00000000 ____D () C:\Program Files (x86)\X-NetStat Professional 2014-03-22 21:05 - 2014-03-22 21:05 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Synei 2014-03-22 11:11 - 2014-03-22 11:11 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\MPC-HC 2014-03-22 11:03 - 2014-03-22 11:03 - 00000000 ____D () C:\Program Files (x86)\MPC-HC 2014-03-19 11:16 - 2014-03-19 11:21 - 27231028 _____ () C:\Users\Achraf\Downloads\---خير الكلام 163 - اعلموا أنما الحياة الدنيا لعب ولهو.3gp 2014-03-18 17:09 - 2014-03-18 17:09 - 00000000 ____D () C:\ProgramData\ATI 2014-03-18 17:07 - 2014-03-18 17:07 - 00055445 _____ () C:\Windows\SysWOW64\CCCInstall_201403181707312065.log 2014-03-17 20:36 - 2014-03-18 13:06 - 00000000 ____D () C:\ProgramData\NaextCouP 2014-03-17 20:36 - 2014-03-18 13:05 - 00000000 ____D () C:\Program Files (x86)\NaextCouP 2014-03-16 12:03 - 2014-03-17 20:37 - 00000000 ____D () C:\ProgramData\weBesavE 2014-03-16 12:03 - 2014-03-17 20:36 - 00000000 ____D () C:\Program Files (x86)\weBesavE 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Invité\AppData\Local\Torch 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Invité\AppData\Local\Google 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Invité\AppData\Local\Comodo 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Administrateur\AppData\Local\Torch 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Administrateur\AppData\Local\Google 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Administrateur\AppData\Local\Comodo 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Achraf\AppData\Local\Comodo 2014-03-15 11:02 - 2010-07-01 03:32 - 00067312 _____ (Just Great Software) C:\Windows\UnDeployV.exe 2014-03-12 17:10 - 2014-03-12 17:10 - 10899112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 10176088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 10145128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 08764440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 07892000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 06716264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 01329352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 01106872 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00116024 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-03-12 17:06 - 2014-03-12 17:06 - 00273632 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-03-12 17:04 - 2014-03-12 17:04 - 13929984 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-03-12 16:50 - 2014-03-12 16:50 - 00230912 _____ () C:\Windows\system32\clinfo.exe 2014-03-12 16:49 - 2014-03-12 16:49 - 28425216 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-03-12 16:49 - 2014-03-12 16:49 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-03-12 16:49 - 2014-03-12 16:49 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-03-12 16:49 - 2014-03-12 16:49 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-03-12 16:49 - 2014-03-12 16:49 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-03-12 16:47 - 2014-03-12 16:47 - 23903744 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-03-12 16:44 - 2014-03-12 16:44 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-03-12 16:44 - 2014-03-12 16:44 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-03-12 16:27 - 2014-03-12 16:27 - 27490304 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-03-12 16:24 - 2014-03-12 16:24 - 00577368 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-03-12 16:24 - 2014-03-12 16:24 - 00577368 _____ () C:\Windows\system32\atiapfxx.blb 2014-03-12 16:24 - 2014-03-12 16:24 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-03-12 16:24 - 2014-03-12 16:24 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-03-12 16:24 - 2014-03-12 16:24 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-03-12 16:24 - 2014-03-12 16:24 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-03-12 16:24 - 2014-03-12 16:24 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-03-12 16:23 - 2014-03-12 16:23 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-03-12 16:20 - 2014-03-12 16:20 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-03-12 16:20 - 2014-03-12 16:20 - 00126464 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-03-12 16:20 - 2014-03-12 16:20 - 00113152 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-03-12 16:19 - 2014-03-12 16:19 - 05393408 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-03-12 16:07 - 2014-03-12 16:07 - 23108608 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-03-12 16:06 - 2014-03-12 16:06 - 04319744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-03-12 16:03 - 2014-03-12 16:03 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-03-12 16:03 - 2014-03-12 16:03 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-03-12 16:02 - 2014-03-12 16:02 - 00240128 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-03-12 16:00 - 2014-03-12 16:00 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-03-12 15:53 - 2014-03-12 15:53 - 00081920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-03-12 15:53 - 2014-03-12 15:53 - 00079360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-03-12 15:50 - 2014-03-12 15:50 - 00044544 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-03-12 15:50 - 2014-03-12 15:50 - 00035840 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-03-12 15:46 - 2014-03-12 15:46 - 03434288 _____ () C:\Windows\system32\atiumd6a.cap 2014-03-12 15:33 - 2014-03-12 15:33 - 03468336 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-03-12 15:26 - 2014-03-12 15:26 - 00828416 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00146432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-03-12 15:25 - 2014-03-12 15:25 - 00636928 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-03-12 15:25 - 2014-03-12 15:25 - 00133120 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-03-12 15:20 - 2014-03-12 15:20 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-03-12 12:00 - 2014-03-12 12:00 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-03-12 11:55 - 2014-03-12 11:55 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-03-11 19:23 - 2014-03-13 15:09 - 00000000 ____D () C:\Users\Achraf\Desktop\DOC 2014-03-10 15:50 - 2014-03-10 15:50 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-03-10 15:46 - 2014-03-10 15:50 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-03-10 15:46 - 2014-03-10 15:50 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-03-10 15:46 - 2014-03-10 15:50 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-03-10 15:46 - 2014-03-10 15:46 - 00005310 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-03-09 16:12 - 2014-04-03 14:21 - 00000000 ____D () C:\Users\Achraf\Desktop\Nouveau dossier 2014-03-09 16:09 - 2014-03-09 16:38 - 00000000 ____D () C:\Program Files (x86)\rtmpGUI_Attilla 2014-03-09 16:02 - 2014-04-05 18:07 - 00000000 ____D () C:\Program Files (x86)\ZedTV 2014-03-09 16:02 - 2014-03-09 16:02 - 00000000 ____D () C:\Users\Achraf\Documents\ZedTV ==================== One Month Modified Files and Folders ======= 2014-04-06 12:59 - 2014-04-06 12:59 - 00000000 ____D () C:\FRST 2014-04-06 12:12 - 2009-07-14 05:45 - 00031024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-04-06 12:12 - 2009-07-14 05:45 - 00031024 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-04-06 12:08 - 2014-04-03 16:53 - 01214479 _____ () C:\Windows\WindowsUpdate.log 2014-04-06 12:06 - 2014-04-06 09:48 - 05033408 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-06 12:05 - 2014-04-06 09:48 - 00000112 _____ () C:\Windows\setupact.log 2014-04-06 12:05 - 2009-07-14 06:08 - 00032542 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-04-06 12:05 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-04-06 11:37 - 2012-10-24 23:59 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\DMCache 2014-04-06 11:32 - 2014-04-06 11:32 - 00001043 _____ () C:\Users\Achraf\Desktop\RoboMind.lnk 2014-04-06 11:32 - 2014-04-06 11:32 - 00000000 ____D () C:\Users\Achraf\Documents\My RoboMind 2014-04-06 11:32 - 2014-04-06 11:32 - 00000000 ____D () C:\Program Files (x86)\RoboMind 2014-04-06 11:29 - 2013-11-13 10:44 - 00000000 ____D () C:\Users\Achraf\Downloads\Compressed 2014-04-06 10:41 - 2013-08-18 18:33 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\vlc 2014-04-06 10:33 - 2014-01-22 15:04 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\IDM 2014-04-06 09:48 - 2014-04-06 09:48 - 00001078 _____ () C:\Windows\PFRO.log 2014-04-06 09:48 - 2014-04-06 09:48 - 00000000 _____ () C:\Windows\setuperr.log 2014-04-05 22:31 - 2014-04-05 22:11 - 00000000 ____D () C:\Windows\D3F93A5A7A5D4867B2A16F46500D006C.TMP 2014-04-05 22:11 - 2014-04-05 22:11 - 00000000 ____D () C:\Program Files (x86)\Enigma Software Group 2014-04-05 22:11 - 2014-04-05 21:17 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-04-05 21:55 - 2014-04-05 21:55 - 00000000 ____D () C:\ProgramData\GreenApp 2014-04-05 21:55 - 2014-04-05 21:55 - 00000000 ____D () C:\Program Files (x86)\Universal Updater 2014-04-05 21:55 - 2013-11-18 19:40 - 00000000 ____D () C:\ProgramData\InstallMate 2014-04-05 21:18 - 2014-04-05 21:18 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-04-05 21:18 - 2014-04-05 21:18 - 00000000 _____ () C:\autoexec.bat 2014-04-05 21:07 - 2013-05-03 11:25 - 00000000 ____D () C:\Program Files (x86)\trend micro 2014-04-05 21:02 - 2014-04-05 21:01 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\TeraCopy 2014-04-05 21:01 - 2014-04-05 21:01 - 00000000 ____D () C:\Program Files\TeraCopy 2014-04-05 20:30 - 2014-04-05 20:30 - 17469440 _____ () C:\Windows\system32\config\systemTMP.rd 2014-04-05 20:30 - 2014-02-02 18:00 - 00417792 _____ () C:\Windows\system32\config\defaultTMP.rd 2014-04-05 20:30 - 2014-02-02 18:00 - 00061440 _____ () C:\Windows\system32\config\samTMP.rd 2014-04-05 20:30 - 2014-02-02 18:00 - 00028672 _____ () C:\Windows\system32\config\securityTMP.rd 2014-04-05 20:30 - 2012-10-24 23:02 - 00000000 ____D () C:\Users\Achraf 2014-04-05 19:32 - 2012-11-24 11:31 - 00006434 _____ () C:\Windows\system32\PerfStringBackup.TMP 2014-04-05 19:29 - 2012-10-24 23:03 - 00000000 ___RD () C:\Users\Achraf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-05 19:29 - 2012-10-24 23:03 - 00000000 ___RD () C:\Users\Achraf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-04-05 19:25 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-04-05 19:25 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-04-05 19:24 - 2011-04-12 10:28 - 00000000 ____D () C:\Program Files\Windows Journal 2014-04-05 19:04 - 2013-04-07 17:06 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-04-05 18:53 - 2014-04-05 18:52 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-05 18:48 - 2013-10-17 09:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-04-05 18:07 - 2014-03-09 16:02 - 00000000 ____D () C:\Program Files (x86)\ZedTV 2014-04-05 18:02 - 2014-03-23 19:10 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\X-NetStat 2014-04-05 17:00 - 2014-04-05 17:00 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com 2014-04-05 15:22 - 2012-10-24 23:59 - 00000000 ____D () C:\Users\Achraf\Downloads\Video 2014-04-05 15:17 - 2014-04-05 15:17 - 10852352 _____ () C:\Users\Achraf\Desktop\dban-2.2.6_i586.iso 2014-04-05 15:10 - 2013-01-27 10:38 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Skype 2014-04-05 13:30 - 2012-12-09 18:53 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-04-05 13:23 - 2012-12-08 00:16 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\uTorrent 2014-04-05 12:55 - 2014-04-05 12:08 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Pamela Call Recorder 2014-04-05 12:36 - 2014-04-05 12:26 - 00001636 _____ () C:\Users\Achraf\AppData\Local\Cracklock.settings 2014-04-05 12:33 - 2014-04-05 12:33 - 00000085 _____ () C:\Windows\wininit.ini 2014-04-05 12:33 - 2012-10-28 20:33 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-05 12:30 - 2014-04-05 12:30 - 00033488 _____ () C:\Windows\system32\Drivers\stdriverx64.sys 2014-04-05 12:30 - 2014-02-20 18:48 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-04-05 12:30 - 2013-11-19 12:47 - 00001181 _____ () C:\Users\Achraf\AppData\Roaming\trace_FilterInstaller.txt 2014-04-05 12:30 - 2013-11-19 12:47 - 00000000 _____ () C:\Users\Achraf\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2014-04-05 12:26 - 2014-04-05 12:26 - 00000000 ____D () C:\Program Files (x86)\Cracklock 2014-04-05 12:08 - 2014-04-05 12:08 - 00176128 _____ (Scendix Software-Vertriebsges. mbH) C:\Windows\SysWOW64\RemoteControl.dll 2014-04-05 12:08 - 2014-04-05 12:08 - 00000000 ____D () C:\Users\Achraf\Documents\Pamela Call Recorder 2014-04-05 12:08 - 2014-04-05 12:08 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Pamela 2014-04-05 12:08 - 2014-04-05 12:08 - 00000000 ____D () C:\Users\Achraf\AppData\Local\Skype 2014-04-05 12:08 - 2014-04-05 12:08 - 00000000 ____D () C:\Program Files (x86)\PamelaPCR 2014-04-05 12:07 - 2013-01-27 10:38 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-04-05 12:07 - 2013-01-27 10:37 - 00000000 ____D () C:\ProgramData\Skype 2014-04-05 10:02 - 2012-11-21 16:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-04-04 20:13 - 2014-04-04 20:13 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.3 2014-04-04 20:07 - 2014-04-04 20:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-03 16:36 - 2014-04-03 16:18 - 00000000 ____D () C:\Program Files (x86)\PC Tools 2014-04-03 16:36 - 2014-04-03 16:02 - 00000000 ____D () C:\ProgramData\PC Tools 2014-04-03 16:18 - 2014-04-03 16:18 - 00000084 _____ () C:\Users\Achraf\Desktop\Nouveau document texte (2).txt 2014-04-03 16:04 - 2014-04-03 16:03 - 01848719 _____ () C:\Windows\system32\Drivers\Cat.DB 2014-04-03 16:02 - 2014-04-03 16:02 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\TestApp 2014-04-03 15:12 - 2014-04-03 13:43 - 00000000 ____D () C:\Program Files (x86)\Mega Browse 2014-04-03 14:21 - 2014-03-09 16:12 - 00000000 ____D () C:\Users\Achraf\Desktop\Nouveau dossier 2014-04-03 13:43 - 2014-04-03 13:43 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-133868172-2586371647-4254189040-1000Core1cf4f3a5115ceb9.job 2014-04-03 13:42 - 2014-04-03 13:42 - 00501240 _____ (Facebook Inc.) C:\Users\Achraf\Downloads\FacebookMessengerSetup_v1.2.205.0 [1].exe 2014-04-03 10:53 - 2012-10-25 07:50 - 00000000 ____D () C:\ProgramData\ma-config.com 2014-04-03 10:53 - 2012-10-25 07:50 - 00000000 ____D () C:\Program Files\ma-config.com 2014-04-02 11:24 - 2014-04-02 11:22 - 30678631 _____ () C:\Users\Achraf\Downloads\عزاء لأهل البلاء لـلشيخ - عبد الله عسكر.3GP 2014-04-02 08:51 - 2014-04-01 13:38 - 00000000 ____D () C:\Program Files (x86)\LucasChess 2014-03-30 12:49 - 2014-03-30 12:49 - 00000000 ____D () C:\Program Files (x86)\FIRST AND LAST Co., Ltd 2014-03-30 12:24 - 2013-11-13 12:10 - 00000000 ____D () C:\Users\Achraf\AppData\Local\CrashDumps 2014-03-30 12:07 - 2013-12-20 14:49 - 00000000 ____D () C:\Program Files\BotRevoltFree 2014-03-30 12:07 - 2013-08-25 19:15 - 00000000 ____D () C:\ProgramData\VMware 2014-03-30 12:06 - 2013-08-25 19:16 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\VMware 2014-03-30 12:02 - 2014-03-30 12:02 - 00000000 ____D () C:\ProgramData\AltrixSoft 2014-03-30 11:17 - 2013-12-20 14:49 - 00000270 _____ () C:\Windows\Tasks\BOTREVOLT_STARTUP_TASK_918CB0F9_1EF8_4c60_8205_7AAB364CD162.job 2014-03-30 11:08 - 2014-03-30 11:08 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\VolIE 2014-03-30 11:08 - 2014-03-30 11:08 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\ARHome 2014-03-29 18:47 - 2013-11-19 12:47 - 00000919 _____ () C:\Users\Achraf\AppData\Roaming\trace_FilterInstaller.1.txt 2014-03-29 18:44 - 2013-11-18 20:22 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Audacity 2014-03-29 18:19 - 2013-11-19 12:47 - 00001181 _____ () C:\Users\Achraf\AppData\Roaming\trace_FilterInstaller.2.txt 2014-03-29 17:01 - 2014-03-29 17:01 - 01038855 _____ () C:\Users\Achraf\Downloads\SpeedOut_0.5.zip 2014-03-29 10:39 - 2014-03-29 10:39 - 00001066 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf4b32d2f5c19c.job 2014-03-28 19:21 - 2014-03-23 19:10 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\X-NetStat Professional 2014-03-28 19:21 - 2014-03-23 19:10 - 00000000 ____D () C:\Program Files (x86)\X-NetStat Professional 2014-03-28 18:57 - 2014-02-17 20:49 - 00000000 ____D () C:\AdwCleaner 2014-03-28 18:55 - 2014-03-28 18:20 - 00000000 ____D () C:\Program Files\WhoCrashed 2014-03-28 18:55 - 2014-03-28 17:58 - 00000000 ____D () C:\Program Files (x86)\Nsauditor 2014-03-28 18:55 - 2014-03-27 17:01 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.1 2014-03-28 18:55 - 2014-01-06 14:27 - 00000000 ____D () C:\Program Files (x86)\Universitat Autonoma de Barcelona 2014-03-28 18:55 - 2013-10-20 15:23 - 00000000 ____D () C:\Program Files (x86)\Java 2014-03-28 18:55 - 2013-10-03 07:28 - 00000000 ____D () C:\Windows\Minidump 2014-03-28 18:55 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-03-28 18:49 - 2014-03-27 16:22 - 00007828 _____ () C:\ProgramData\java.exe.tmp 2014-03-28 18:47 - 2014-03-28 18:36 - 00000000 ____D () C:\ProgramData\HitmanPro 2014-03-26 13:21 - 2013-11-17 12:45 - 20549632 _____ () C:\Windows\system32\config\componentsTMP.rd 2014-03-26 12:58 - 2014-03-26 12:46 - 00000000 ____D () C:\Users\Achraf\Documents\My CamStudio Temp Files 2014-03-26 12:57 - 2014-03-26 12:45 - 00000096 _____ () C:\Users\Achraf\AppData\Roaming\version2.xml 2014-03-26 12:53 - 2013-12-29 14:18 - 00249856 ____N (Microsoft Corporation) C:\Windows\Setup1.exe 2014-03-26 12:53 - 2013-12-29 14:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\ST6UNST.EXE 2014-03-26 12:50 - 2013-09-17 13:49 - 00004534 _____ () C:\Users\Achraf\AppData\Roaming\CamStudio.cfg 2014-03-26 12:50 - 2013-09-17 13:49 - 00000408 _____ () C:\Users\Achraf\AppData\Roaming\CamShapes.ini 2014-03-26 12:50 - 2013-09-17 13:49 - 00000408 _____ () C:\Users\Achraf\AppData\Roaming\CamLayout.ini 2014-03-26 12:50 - 2013-09-17 13:49 - 00000104 _____ () C:\Users\Achraf\AppData\Roaming\Camdata.ini 2014-03-26 12:44 - 2014-03-26 12:45 - 00049952 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys 2014-03-26 12:35 - 2014-03-26 12:35 - 00011440 _____ () C:\Users\Achraf\Downloads\Rapport ZHP.txt 2014-03-26 12:34 - 2014-03-26 12:34 - 00209650 _____ () C:\Users\Achraf\Downloads\ZHPDiag.txt 2014-03-26 12:30 - 2014-03-26 12:30 - 00000000 ____D () C:\Program Files\Speccy 2014-03-26 12:26 - 2014-03-26 12:26 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Infected Scanner 2014-03-26 12:03 - 2014-03-26 12:03 - 00010927 _____ () C:\Shortcut_Module.txt 2014-03-26 12:03 - 2014-03-26 12:02 - 00000000 ____D () C:\Shortcut_Module 2014-03-22 21:05 - 2014-03-22 21:05 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Synei 2014-03-22 11:11 - 2014-03-22 11:11 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\MPC-HC 2014-03-22 11:03 - 2014-03-22 11:03 - 00000000 ____D () C:\Program Files (x86)\MPC-HC 2014-03-19 19:40 - 2014-02-26 11:40 - 00001071 _____ () C:\Users\Achraf\Documents\USBDeview.cfg 2014-03-19 17:50 - 2013-10-07 16:23 - 00001265 _____ () C:\Users\Public\Desktop\PESEdit 2014 Selector.lnk 2014-03-19 11:21 - 2014-03-19 11:16 - 27231028 _____ () C:\Users\Achraf\Downloads\---خير الكلام 163 - اعلموا أنما الحياة الدنيا لعب ولهو.3gp 2014-03-18 17:09 - 2014-03-18 17:09 - 00000000 ____D () C:\ProgramData\ATI 2014-03-18 17:07 - 2014-03-18 17:07 - 00055445 _____ () C:\Windows\SysWOW64\CCCInstall_201403181707312065.log 2014-03-18 17:07 - 2012-11-23 22:59 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-03-18 17:07 - 2012-10-25 08:47 - 00000000 ____D () C:\ProgramData\AMD 2014-03-18 16:58 - 2012-10-25 08:42 - 00000000 ____D () C:\AMD 2014-03-18 13:43 - 2013-11-18 19:41 - 00000000 ____D () C:\ProgramData\3d996ebdbf14e74 2014-03-18 13:06 - 2014-03-17 20:36 - 00000000 ____D () C:\ProgramData\NaextCouP 2014-03-18 13:05 - 2014-03-17 20:36 - 00000000 ____D () C:\Program Files (x86)\NaextCouP 2014-03-17 20:37 - 2014-03-16 12:03 - 00000000 ____D () C:\ProgramData\weBesavE 2014-03-17 20:36 - 2014-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\weBesavE 2014-03-16 20:26 - 2013-05-11 11:09 - 00000000 ____D () C:\Users\Achraf\AppData\Roaming\Media Player Classic 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Invité\AppData\Local\Torch 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Invité\AppData\Local\Google 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Invité\AppData\Local\Comodo 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Administrateur\AppData\Local\Torch 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Administrateur\AppData\Local\Google 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Administrateur\AppData\Local\Comodo 2014-03-16 12:03 - 2014-03-16 12:03 - 00000000 ____D () C:\Users\Achraf\AppData\Local\Comodo 2014-03-16 12:03 - 2012-10-24 23:31 - 00000000 ____D () C:\Users\Achraf\AppData\Local\Google 2014-03-14 12:33 - 2014-01-14 20:33 - 00001002 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-03-14 10:31 - 2014-01-14 20:33 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-03-14 10:31 - 2014-01-14 20:33 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-03-13 15:09 - 2014-03-11 19:23 - 00000000 ____D () C:\Users\Achraf\Desktop\DOC 2014-03-12 17:10 - 2014-03-12 17:10 - 10899112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 10176088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 10145128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 08764440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 07892000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 06716264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 01329352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 01106872 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00116024 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-03-12 17:10 - 2014-03-12 17:10 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-03-12 17:06 - 2014-03-12 17:06 - 00273632 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-03-12 17:04 - 2014-03-12 17:04 - 13929984 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-03-12 16:50 - 2014-03-12 16:50 - 00230912 _____ () C:\Windows\system32\clinfo.exe 2014-03-12 16:49 - 2014-03-12 16:49 - 28425216 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-03-12 16:49 - 2014-03-12 16:49 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-03-12 16:49 - 2014-03-12 16:49 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-03-12 16:49 - 2014-03-12 16:49 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-03-12 16:49 - 2014-03-12 16:49 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-03-12 16:47 - 2014-03-12 16:47 - 23903744 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-03-12 16:44 - 2014-03-12 16:44 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-03-12 16:44 - 2014-03-12 16:44 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-03-12 16:27 - 2014-03-12 16:27 - 27490304 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-03-12 16:24 - 2014-03-12 16:24 - 00577368 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-03-12 16:24 - 2014-03-12 16:24 - 00577368 _____ () C:\Windows\system32\atiapfxx.blb 2014-03-12 16:24 - 2014-03-12 16:24 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-03-12 16:24 - 2014-03-12 16:24 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-03-12 16:24 - 2014-03-12 16:24 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-03-12 16:24 - 2014-03-12 16:24 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-03-12 16:24 - 2014-03-12 16:24 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-03-12 16:23 - 2014-03-12 16:23 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-03-12 16:20 - 2014-03-12 16:20 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-03-12 16:20 - 2014-03-12 16:20 - 00126464 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-03-12 16:20 - 2014-03-12 16:20 - 00113152 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-03-12 16:19 - 2014-03-12 16:19 - 05393408 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-03-12 16:07 - 2014-03-12 16:07 - 23108608 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-03-12 16:06 - 2014-03-12 16:06 - 04319744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-03-12 16:03 - 2014-03-12 16:03 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-03-12 16:03 - 2014-03-12 16:03 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-03-12 16:03 - 2013-07-17 04:15 - 00586240 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-03-12 16:02 - 2014-03-12 16:02 - 00240128 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-03-12 16:00 - 2014-03-12 16:00 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-03-12 15:53 - 2014-03-12 15:53 - 00081920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-03-12 15:53 - 2014-03-12 15:53 - 00079360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-03-12 15:50 - 2014-03-12 15:50 - 00044544 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-03-12 15:50 - 2014-03-12 15:50 - 00035840 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-03-12 15:46 - 2014-03-12 15:46 - 03434288 _____ () C:\Windows\system32\atiumd6a.cap 2014-03-12 15:34 - 2014-01-31 20:37 - 00806912 _____ (AMD) C:\Windows\system32\coinst_13.350.dll 2014-03-12 15:33 - 2014-03-12 15:33 - 03468336 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-03-12 15:27 - 2013-12-06 21:22 - 01148416 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00828416 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00146432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-03-12 15:26 - 2014-03-12 15:26 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-03-12 15:25 - 2014-03-12 15:25 - 00636928 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-03-12 15:25 - 2014-03-12 15:25 - 00133120 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-03-12 15:20 - 2014-03-12 15:20 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-03-12 12:19 - 2013-12-07 17:50 - 00000000 ____D () C:\Program Files (x86)\netcut 2014-03-12 12:00 - 2014-03-12 12:00 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-03-12 11:55 - 2014-03-12 11:55 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-03-10 15:50 - 2014-03-10 15:50 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-03-10 15:50 - 2014-03-10 15:46 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-03-10 15:50 - 2014-03-10 15:46 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-03-10 15:50 - 2014-03-10 15:46 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-03-10 15:50 - 2013-10-20 15:19 - 00000000 ____D () C:\ProgramData\Oracle 2014-03-10 15:46 - 2014-03-10 15:46 - 00005310 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-03-09 16:38 - 2014-03-09 16:09 - 00000000 ____D () C:\Program Files (x86)\rtmpGUI_Attilla 2014-03-09 16:02 - 2014-03-09 16:02 - 00000000 ____D () C:\Users\Achraf\Documents\ZedTV 2014-03-09 12:58 - 2012-11-01 19:27 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys Files to move or delete: ==================== C:\Users\Achraf\AppData\Roaming\CamLayout.ini C:\Users\Achraf\AppData\Roaming\CamShapes.ini Some content of TEMP: ==================== C:\Users\Achraf\AppData\Local\Temp\down.1432.ext_setup.exe C:\Users\Achraf\AppData\Local\Temp\Keygen__5551_il1249355.exe C:\Users\Achraf\AppData\Local\Temp\SHSetup.exe C:\Users\Achraf\AppData\Local\Temp\SkypeSetup.exe C:\Users\Achraf\AppData\Local\Temp\Tsu0F0825BF.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-29 10:57 ==================== End Of Log ============================