DDS (Ver_2012-11-20.01) - NTFS_x86 Internet Explorer: 10.0.9200.16660 BrowserJavaVersion: 10.25.2 Run by Mladen at 18:24:12 on 2013-09-11 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2046.951 [GMT 2:00] . AV: Kaspersky Internet Security *Enabled/Updated* {179979E8-273D-D14E-0543-2861940E4886} SP: Kaspersky Internet Security *Enabled/Updated* {ACF8980C-0107-DEC0-3FF3-1313EF89023B} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security *Enabled* {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} . ============== Running Processes ================ . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\nvvsvc.exe C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe C:\Windows\system32\nvvsvc.exe C:\Windows\System32\spoolsv.exe C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskhost.exe C:\Windows\Explorer.EXE C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE C:\Windows\system32\FsUsbExService.Exe c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe C:\Program Files\No-IP\ducservice.exe C:\Program Files\Conexant\Adsl\DSLSTAT.EXE C:\Program Files\Conexant\Adsl\DSLAGENT.EXE C:\Program Files\WinFast\WFDTV\DTVSchdl.exe C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\Samsung\Kies\KiesTrayAgent.exe C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe C:\Program Files\WinFast\WFDTV\WFWIZ.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\HTC Home\Clock.exe C:\Program Files\Samsung\Kies\Kies.exe C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe C:\Program Files\No-IP\DUC40.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Program Files\PANDORA.TV\PanService\PandoraService.exe c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe C:\Windows\system32\SearchIndexer.exe C:\Users\Mladen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Net Monitor.exe C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE D:\Program Files\Tablic server\Server Napredni.exe D:\VB 2010 projekti\ShutDown\ShutDown\bin\Debug\ShutDown Computer.exe C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe C:\Windows\system32\wuauclt.exe C:\Program Files\Tablic\Clijent1.exe C:\Program Files\Opera\opera.exe C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\System32\svchost.exe -k secsvcs . ============== Pseudo HJT Report =============== . uStart Page = hxxps://www.google.rs/ BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ieext\contentblocker\ie_content_blocker_plugin.dll BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ieext\virtualkeyboard\ie_virtual_keyboard_plugin.dll BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ieext\onlinebanking\online_banking_bho.dll BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll BHO: Microsoft Web Test Recorder 10.0 Helper: {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - c:\program files\microsoft visual studio 10.0\common7\ide\privateassemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll BHO: URL Advisor Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ieext\urladvisor\klwtbbho.dll EB: Web Test Recorder 10.0: {5802D092-1784-4908-8CDB-99B6842D353D} - uRun: [WinFast Schedule] c:\program files\winfast\wfdtv\WFWIZ.exe uRun: [Google Update] "c:\users\mladen\appdata\local\google\update\GoogleUpdate.exe" /c uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun uRun: [Clock Widget (HTC Home)] "c:\program files\htc home\Clock.exe" uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun uRun: [KiesPreload] c:\program files\samsung\kies\Kies.exe /preload uRun: [] c:\program files\samsung\kies\external\firmwareupdate\KiesPDLR.exe uRun: [NoIPDUCv4] "c:\program files\no-ip\DUC40.exe" /minimize uRun: [Facebook Update] "c:\users\mladen\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver uRun: [KiesAirMessage] c:\program files\samsung\kies\KiesAirMessage.exe -startup uRun: [EA Core] "c:\program files\electronic arts\eadm\Core.exe" -silent uRun: [HTC Home] "c:\users\mladen\appdata\roaming\stealth software\htc home 2.4\HTCHome.exe" mRun: [DSLSTATEXE] c:\program files\conexant\adsl\dslstat.exe icon mRun: [DSLAGENTEXE] c:\program files\conexant\adsl\dslagent.exe mRun: [WinFastDTV] c:\program files\winfast\wfdtv\DTVSchdl.exe mRun: [ArcSoft Connection Service] c:\program files\common files\arcsoft\connection service\bin\ACDaemon.exe mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe" mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe" mRun: [KiesTrayAgent] c:\program files\samsung\kies\KiesTrayAgent.exe mRun: [RtHDVCpl] c:\program files\realtek\audio\hda\RtHDVCpl.exe -s mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe" mRun: [TrueImageMonitor.exe] "c:\program files\acronis\trueimagehome\TrueImageMonitor.exe" mRun: [AcronisTibMounterMonitor] c:\program files\common files\acronis\tibmounter\TibMounterMonitor.exe mRun: [Acronis Scheduler2 Service] "c:\program files\common files\acronis\schedule2\schedhlp.exe" dRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun StartupFolder: c:\users\mladen\appdata\roaming\micros~1\windows\startm~1\programs\startup\CONEXA~1.LNK - StartupFolder: c:\users\mladen\appdata\roaming\microsoft\windows\start menu\programs\startup\Net Monitor.exe StartupFolder: c:\users\mladen\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE StartupFolder: c:\users\mladen\appdata\roaming\micros~1\windows\startm~1\programs\startup\server~1.lnk - d:\program files\tablic server\Server Napredni.exe StartupFolder: c:\users\mladen\appdata\roaming\micros~1\windows\startm~1\programs\startup\shutdo~1.lnk - d:\vb 2010 projekti\shutdown\shutdown\bin\debug\ShutDown Computer.exe StartupFolder: c:\users\mladen\appdata\roaming\micros~1\windows\startm~1\programs\startup\stardo~1.lnk - c:\program files\stardock\objectdockfree\ObjectDock.exe uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 mPolicies-Explorer: NoDriveTypeAutoRun = dword:60 mPolicies-System: ConsentPromptBehaviorAdmin = dword:0 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableLUA = dword:0 mPolicies-System: EnableUIADesktopToggle = dword:0 mPolicies-System: PromptOnSecureDesktop = dword:0 IE: Add to Anti-Banner - c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ie_banner_deny.htm IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office12\EXCEL.EXE/3000 IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ieext\virtualkeyboard\ie_virtual_keyboard_plugin.dll IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ieext\urladvisor\klwtbbho.dll TCP: Interfaces\{CD86F73E-9FE8-41C3-8948-58AE894F6E8B} : NameServer = 77.105.32.21 77.105.32.22 Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll SSODL: WebCheck - SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll . ================= FIREFOX =================== . FF - ProfilePath - c:\users\mladen\appdata\roaming\mozilla\firefox\profiles\5wac9jy1.default-1378837021966\ FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll FF - plugin: c:\program files\kaspersky lab\kaspersky password manager\npKPMAutofill.dll FF - plugin: c:\users\mladen\appdata\local\facebook\video\skype\npFacebookVideoCalling.dll FF - plugin: c:\users\mladen\appdata\local\google\update\1.3.21.153\npGoogleUpdate3.dll FF - plugin: c:\users\mladen\appdata\roaming\mozilla\plugins\npgoogletalk.dll FF - plugin: c:\users\mladen\appdata\roaming\mozilla\plugins\npgtpo3dautoplugin.dll FF - plugin: c:\users\mladen\appdata\roaming\mozilla\plugins\npo1d.dll FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_8_800_168.dll FF - plugin: c:\windows\system32\npDeployJava1.dll FF - plugin: c:\windows\system32\npmproxy.dll FF - ExtSQL: 2013-08-18 11:07; {72CA2996-F580-47DF-98FF-0B853D09CEC8}; c:\users\mladen\appdata\roaming\kaspersky lab\kaspersky password manager\kpmAutofill FF - ExtSQL: 2013-08-18 12:49; anti_banner@kaspersky.com; c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ffext\anti_banner@kaspersky.com FF - ExtSQL: 2013-08-18 13:10; content_blocker@kaspersky.com; c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ffext\content_blocker@kaspersky.com FF - ExtSQL: 2013-08-18 13:10; online_banking@kaspersky.com; c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ffext\online_banking@kaspersky.com FF - ExtSQL: 2013-08-18 13:10; url_advisor@kaspersky.com; c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ffext\url_advisor@kaspersky.com FF - ExtSQL: 2013-08-18 13:10; virtual_keyboard@kaspersky.com; c:\program files\kaspersky lab\kaspersky internet security 14.0.0\ffext\virtual_keyboard@kaspersky.com . ============= SERVICES / DRIVERS =============== . R0 fltsrv;Acronis Storage Filter Management;c:\windows\system32\drivers\fltsrv.sys [2013-7-31 93928] R0 tib_mounter;Acronis TIB Mounter;c:\windows\system32\drivers\tib_mounter.sys [2013-7-31 689672] R0 vididr;Acronis Virtual Disk;c:\windows\system32\drivers\vididr.sys [2013-7-31 139336] R0 vidsflt;Acronis Disk Storage Filter;c:\windows\system32\drivers\vidsflt.sys [2013-7-31 99720] R1 AppleCharger;AppleCharger;c:\windows\system32\drivers\AppleCharger.sys [2011-4-29 19496] R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2012-9-23 242240] R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\drivers\klim6.sys [2013-6-10 25696] R1 klpd;klpd;c:\windows\system32\drivers\klpd.sys [2013-4-12 14432] R1 kltdi;kltdi;c:\windows\system32\drivers\kltdi.sys [2013-5-14 45024] R1 kneps;kneps;c:\windows\system32\drivers\kneps.sys [2013-6-6 145120] R2 afcdpsrv;Acronis Nonstop Backup Service;c:\program files\common files\acronis\cdp\afcdpsrv.exe [2013-7-31 3696632] R2 avp;Kaspersky Anti-Virus Service;c:\program files\kaspersky lab\kaspersky internet security 14.0.0\avp.exe [2013-6-17 214512] R2 ES lite Service;ES lite Service for program management.;c:\program files\gigabyte\easysaver\essvr.exe [2011-4-29 68136] R2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [2013-3-31 233472] R2 NoIPDUCService4;NO-IP DUC v4;c:\program files\no-ip\ducservice.exe [2013-1-24 11264] R2 PanService;PandoraService;c:\program files\pandora.tv\panservice\PandoraService.exe [2012-9-9 625816] R2 syncagentsrv;Acronis Sync Agent Service;c:\program files\common files\acronis\syncagent\syncagentsrv.exe [2012-8-18 7017888] R2 TeamViewer8;TeamViewer 8;c:\program files\teamviewer\version8\TeamViewer_Service.exe [2013-7-20 4153184] R3 afcdp;afcdp;c:\windows\system32\drivers\afcdp.sys [2013-7-31 234752] R3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.Sys [2013-3-31 37344] R3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\drivers\klkbdflt.sys [2013-5-5 25696] R3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\drivers\klmouflt.sys [2013-5-5 25696] R3 WFLR6654;WinFast TV2000 XP Global/Global TV (Video);c:\windows\system32\drivers\wfeaglxt.sys [2011-4-29 405504] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2013-3-31 32064] S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe --> system32\AppleChargerSrv.exe [?] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888] S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [2013-4-25 83864] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2011-4-30 15872] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2011-4-29 260640] S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2013-3-31 136904] S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2013-3-31 17864] S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2013-3-31 153672] S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [2013-3-31 130248] S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\drivers\ssudmdm.sys [2013-4-25 181912] S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2011-4-30 52224] S3 VSPerfDrv100;Performance Tools Driver 10.0;c:\program files\microsoft visual studio 10.0\team tools\performance tools\VSPerfDrv100.sys [2011-1-18 54144] . =============== Created Last 30 ================ . 2013-09-11 04:31:24 60872 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{1f28bb2b-1e1e-4d95-81ca-7e6c84cbb3cf}\offreg.dll 2013-09-10 19:31:19 -------- d-----w- c:\program files\Trend Micro 2013-09-10 18:23:53 -------- d-----w- C:\AdwCleaner 2013-09-07 04:58:09 7166848 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{1f28bb2b-1e1e-4d95-81ca-7e6c84cbb3cf}\mpengine.dll 2013-08-31 13:26:35 -------- d-----w- c:\users\mladen\appdata\roaming\Microsoft Corporation 2013-08-29 05:07:39 -------- d-----w- c:\program files\Ugovori 2013-08-28 15:04:54 -------- d-----w- c:\program files\Audacity 2013-08-25 14:25:56 -------- d-----w- c:\program files\HTC Home 2013-08-25 14:20:31 -------- d-----w- c:\users\mladen\appdata\local\Stealth_Software 2013-08-25 14:19:00 -------- d-----w- c:\users\mladen\appdata\roaming\Stealth Software 2013-08-25 09:18:15 -------- d-----w- c:\users\mladen\appdata\local\AppsHat Mobile Apps 2013-08-25 09:17:39 -------- d-----w- c:\users\mladen\appdata\local\avgchrome 2013-08-18 09:09:04 262552 ----a-w- c:\program files\mozilla firefox\browser\components\browsercomps.dll 2013-08-18 05:38:27 2706432 ----a-w- c:\windows\system32\mshtml.tlb 2013-08-16 17:11:04 -------- d-----w- c:\users\mladen\appdata\local\Amazon 2013-08-16 17:10:56 -------- d-----w- c:\program files\Amazon 2013-08-14 13:28:16 3913664 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-08-14 13:28:15 3968960 ----a-w- c:\windows\system32\ntkrnlpa.exe 2013-08-14 13:28:15 1289096 ----a-w- c:\windows\system32\ntdll.dll 2013-08-14 13:28:13 175104 ----a-w- c:\windows\system32\wintrust.dll 2013-08-14 13:28:13 140288 ----a-w- c:\windows\system32\cryptsvc.dll 2013-08-14 13:28:13 1166848 ----a-w- c:\windows\system32\crypt32.dll 2013-08-14 13:28:13 103936 ----a-w- c:\windows\system32\cryptnet.dll 2013-08-14 13:28:09 652800 ----a-w- c:\windows\system32\rpcrt4.dll 2013-08-14 13:28:08 1293760 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-08-14 13:28:06 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL 2013-08-14 13:28:00 2048 ----a-w- c:\windows\system32\tzres.dll 2013-08-14 13:27:57 918528 ----a-w- c:\windows\system32\rdpcorets.dll 2013-08-14 13:27:57 31232 ----a-w- c:\windows\system32\drivers\tssecsrv.sys . ==================== Find3M ==================== . 2013-09-11 04:18:17 17488 ----a-w- c:\windows\gdrv.sys 2013-09-10 18:35:05 2 ----a-w- c:\windows\system32\Dvbpws.dll 2013-09-10 17:47:30 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-09-10 17:47:30 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-07-31 04:51:15 2310368 ----a-w- c:\windows\system32\auto_reactivate.exe 2013-07-31 04:41:08 234752 ----a-w- c:\windows\system32\drivers\afcdp.sys 2013-07-31 04:40:57 806184 ----a-w- c:\windows\system32\drivers\tdrpman.sys 2013-07-31 04:40:55 689672 ----a-w- c:\windows\system32\drivers\tib_mounter.sys 2013-07-31 04:40:49 139336 ----a-w- c:\windows\system32\drivers\vididr.sys 2013-07-31 04:40:42 99720 ----a-w- c:\windows\system32\drivers\vidsflt.sys 2013-07-31 04:40:35 192904 ----a-w- c:\windows\system32\drivers\snapman.sys 2013-07-31 04:40:27 93928 ----a-w- c:\windows\system32\drivers\fltsrv.sys 2013-07-26 03:13:24 1767936 ----a-w- c:\windows\system32\wininet.dll 2013-07-26 03:12:04 2877440 ----a-w- c:\windows\system32\jscript9.dll 2013-07-26 03:12:00 61440 ----a-w- c:\windows\system32\iesetup.dll 2013-07-26 03:12:00 109056 ----a-w- c:\windows\system32\iesysprep.dll 2013-07-26 01:59:38 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2013-07-14 09:58:37 68608 ----a-w- c:\windows\system32\ieframe.oca . ============= FINISH: 18:29:56,91 ===============