﻿Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-05-2015
Ran by User (administrator) on USER-ПК on 05-05-2015 09:21:55
Running from C:\Users\User\Desktop
Loaded Profiles: User (Available profiles: User)
Platform: Windows 7 Home Basic Service Pack 1 (X64) OS Language: Русский (Россия)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\userinit.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1332296 2015-01-30] (Microsoft Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [384248 2014-05-30] (Acronis)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-21-710126184-182871336-3306975173-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> 

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-710126184-182871336-3306975173-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://mail.ru/cnt/10445?gp=profitraf3
SearchScopes: HKU\S-1-5-21-710126184-182871336-3306975173-1000 -> DefaultScope {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = http://go.mail.ru/search?q={SearchTerms}&fr=ntg
SearchScopes: HKU\S-1-5-21-710126184-182871336-3306975173-1000 -> {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = http://go.mail.ru/search?q={SearchTerms}&fr=ntg
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-02] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-02] (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2013-02-26] (Skype Technologies)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 82.209.253.2 193.232.248.45

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll [2015-05-02] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll [2012-04-11] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll [2015-05-02] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll [2012-10-04] (Adobe Systems, Inc.)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-02] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-02] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll [2012-04-11] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\User\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2013-03-30] (Raidcall)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-05-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-05-02] (Google Inc.)

Chrome: 
=======
CHR HomePage: Profile 1 -> hxxp://www.google.com/
CHR StartupUrls: Profile 1 -> "chrome://newtab/", "hxxp://mail.ru/cnt/7993/", "hxxp://www.yandex.ru/?win=51&clid=48577", "hxxp://www.yandex.ru/?win=56&clid=1942053", "hxxp://ru.msn.com/?pc=UP21&ocid=UP21DHP&dt=021013", "hxxp://ru.msn.com/?pc=UP21&ocid=UP21DHP&dt=030313", "hxxp://www.google.com/", "hxxp://www.google.com", "hxxp://start.qone8.com/?type=hp&ts=1399206865&from=sien&uid=WDCXWD10EZRX-00A8LB0_WD-WCC1U329906299062", "hxxp://start.qone8.com/?type=hppp&ts=1399206908&from=sien&uid=WDCXWD10EZRX-00A8LB0_WD-WCC1U329906299062", "hxxp://start.qone8.com/?type=hppp&ts=1399219892&from=sien&uid=WDCXWD10EZRX-00A8LB0_WD-WCC1U329906299062", "hxxp://start.qone8.com/?type=hppp&ts=1399256668&from=sien&uid=WDCXWD10EZRX-00A8LB0_WD-WCC1U329906299062", "hxxp://start.qone8.com/?type=hppp&ts=1399257595&from=sien&uid=WDCXWD10EZRX-00A8LB0_WD-WCC1U329906299062", "hxxp://start.qone8.com/?type=hppp&ts=1399319922&from=sien&uid=WDCXWD10EZRX-00A8LB0_WD-WCC1U329906299062", "hxxp://www.search.ask.com/?o=APN11459&gct=hp&d=488-128&v=n12521-392&t=4", "hxxp://www.search.ask.com/?o=APN11459&gct=hp&d=488-128&v=a12834-392&t=4", "hxxp://mail.ru/cnt/10445?gp=profitraf3"
CHR DefaultSuggestURL: Profile 1 -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-02]
CHR Extension: (Adblock Plus) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-05-02]
CHR Extension: (Дополнительные настройки ВКонтакте) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\djhgiahomjkabjdodlemhnhbnbfcomam [2015-05-02]
CHR Extension: (Download Master) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\dljdacfojgikogldjffnkdcielnklkce [2015-05-02]
CHR Extension: (На понтах) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\fibcoeahjhaiemkadpacopepbdfnjhfh [2015-05-02]
CHR Extension: (Bookmark Manager) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-02]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-05-02]
CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-02]
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Google Slides) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-02]
CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-18]
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-18]
CHR Extension: (Adblock Plus) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-05-02]
CHR Extension: (Google Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-18]
CHR Extension: (Дополнительные настройки ВКонтакте) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\djhgiahomjkabjdodlemhnhbnbfcomam [2015-05-02]
CHR Extension: (Download Master) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dljdacfojgikogldjffnkdcielnklkce [2015-05-02]
CHR Extension: (Google Sheets) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-02]
CHR Extension: (На понтах) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fibcoeahjhaiemkadpacopepbdfnjhfh [2015-05-02]
CHR Extension: (The Hobbit Theme [FVD]) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\glaggfjimhohnnebebihbmdpanidkhmj [2015-05-02]
CHR Extension: (Bookmark Manager) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-02]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-05-02]
CHR Extension: (Домашняя страница Mail.Ru) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mfmjpfoggikolkfilofbpgcnhdcgahib [2015-05-05]
CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-02]
CHR Extension: (ScriptSafe) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf [2015-05-05]
CHR Extension: (Mail.Ru) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pfjgibhmcgncmjhdodpaolfbjpjjajal [2015-05-05]
CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-18]
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2
CHR Extension: (Google Slides) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-04]
CHR Extension: (Google Docs) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-04]
CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-04]
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-04]
CHR Extension: (Google Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-04]
CHR Extension: (Google Sheets) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-04]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-05-04]
CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-04]
CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-04]
CHR HKLM-x32\...\Chrome\Extension: [mfmjpfoggikolkfilofbpgcnhdcgahib] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pfjgibhmcgncmjhdodpaolfbjpjjajal] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pgaidlfgjkmeendhknafahppllbniejm] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2015-01-23] (BlueStack Systems, Inc.)
S4 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824 2015-01-23] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [786136 2015-01-23] (BlueStack Systems, Inc.)
S3 defragsvc; C:\Windows\System32\defragsvc.dll [291328 2009-07-14] (Корпорация Майкрософт)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-01] (NVIDIA Corporation)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2015-01-30] (Microsoft Corporation)
S3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366512 2015-01-30] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-01] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-01] (NVIDIA Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S3 WPCSvc; C:\Windows\System32\wpcsvc.dll [12288 2009-07-14] (Корпорация Майкрософт)
S3 WPCSvc; C:\Windows\SysWOW64\wpcsvc.dll [10752 2009-07-14] (Корпорация Майкрософт)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2015-01-23] (BlueStack Systems)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [71424 2011-12-13] (Fresco Logic)
R0 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [94592 2010-11-21] (Корпорация Майкрософт)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [274696 2014-11-15] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124560 2014-11-15] (Microsoft Corporation)
S3 nusb3hub; C:\Windows\system32\drivers\nusb3hub.sys [97280 2012-03-15] (Renesas Electronics Corporation) [File not signed]
S3 nusb3xhc; C:\Windows\system32\drivers\nusb3xhc.sys [217088 2012-03-15] (Renesas Electronics Corporation) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-01] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-04-09] (NVIDIA Corporation)
S3 rusb3hub; C:\Windows\system32\drivers\rusb3hub.sys [101376 2011-11-21] (Renesas Electronics Corporation)
S3 rusb3xhc; C:\Windows\system32\drivers\rusb3xhc.sys [217088 2011-11-21] (Renesas Electronics Corporation)
S3 utewntc4; C:\Windows\SysWOW64\Drivers\utewntc4.sys [7168 2015-05-05] () [File not signed]
R0 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [363392 2010-11-21] (Корпорация Майкрософт)
S3 VUSB3HUB; C:\Windows\system32\drivers\ViaHub3.sys [204800 2011-11-14] (VIA Technologies, Inc.)
S3 xhcdrv; C:\Windows\system32\drivers\xhcdrv.sys [256000 2011-11-14] (VIA Technologies, Inc.)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-05 09:17 - 2015-05-05 09:22 - 00018256 _____ () C:\Users\User\Desktop\FRST.txt
2015-05-05 09:17 - 2015-05-05 09:22 - 00000000 ____D () C:\FRST
2015-05-05 09:14 - 2015-05-05 09:14 - 02101248 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2015-05-05 09:01 - 2015-05-05 09:01 - 00007168 _____ () C:\Windows\SysWOW64\Drivers\utewntc4.sys
2015-05-05 08:59 - 2015-05-05 09:03 - 00000000 ____D () C:\Users\User\Desktop\AutoLogger
2015-05-05 08:59 - 2015-05-05 04:33 - 11175421 _____ (Company © regist & Drongo) C:\Users\User\Desktop\AutoLogger.exe
2015-05-05 08:43 - 2015-05-05 08:47 - 00000000 ____D () C:\Users\User\Desktop\uvs_v385
2015-05-05 02:21 - 2015-05-05 02:25 - 00000000 ____D () C:\Users\User\Desktop\Новая папка (2)
2015-05-05 02:00 - 2015-04-16 15:37 - 03433984 _____ () C:\Users\User\Desktop\GTAVLauncher.exe
2015-05-05 01:43 - 2015-05-05 02:23 - 00000000 ____D () C:\Program Files\trend micro
2015-05-05 01:43 - 2015-05-05 01:43 - 00000000 ____D () C:\rsit
2015-05-05 01:33 - 2015-05-05 01:53 - 00000000 ____D () C:\Users\User\AppData\Local\Mail.Ru
2015-05-05 01:33 - 2015-05-05 01:33 - 00000000 ____D () C:\Windows\SysWOW64\directx
2015-05-05 01:27 - 2015-05-05 01:27 - 00000000 ____D () C:\Windows\SysWOW64\API_DirectX11
2015-05-05 00:19 - 2015-05-05 00:19 - 00000000 ____D () C:\Users\Все пользователи\Acronis
2015-05-05 00:19 - 2015-05-05 00:19 - 00000000 ____D () C:\ProgramData\Acronis
2015-05-05 00:15 - 2015-04-16 19:14 - 03752960 _____ () C:\Users\User\Desktop\Launcher.exe
2015-05-05 00:15 - 2015-04-16 19:14 - 00202752 _____ () C:\Users\User\Desktop\3dmgame.dll
2015-05-05 00:15 - 2015-04-16 19:14 - 00000028 _____ () C:\Users\User\Desktop\3dmgame.ini
2015-05-04 23:50 - 2015-05-04 23:50 - 00276256 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\snapman.sys
2015-05-04 23:50 - 2015-05-04 23:50 - 00118560 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\fltsrv.sys
2015-05-04 23:49 - 2015-05-04 23:49 - 00001211 _____ () C:\Users\Public\Desktop\Acronis Disk Director 12.lnk
2015-05-04 23:49 - 2015-05-04 23:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2015-05-04 23:49 - 2015-05-04 23:49 - 00000000 ____D () C:\Program Files (x86)\Acronis
2015-05-04 23:34 - 2015-05-04 23:34 - 00000646 _____ () C:\Users\User\Desktop\Total Commander 64 bit.lnk
2015-05-04 23:34 - 2015-05-04 23:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2015-05-04 23:34 - 2015-05-04 23:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\GHISLER
2015-05-04 23:34 - 2015-05-04 23:34 - 00000000 ____D () C:\Users\User\AppData\Local\GHISLER
2015-05-04 23:34 - 2015-05-04 23:34 - 00000000 ____D () C:\totalcmd
2015-05-04 21:23 - 2015-05-04 21:23 - 00000000 ____D () C:\Users\User\AppData\Roaming\NVIDIA
2015-05-04 19:35 - 2015-05-05 00:28 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA Corporation
2015-05-04 19:34 - 2015-05-05 00:28 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA
2015-05-04 19:32 - 2015-05-04 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-05-04 19:32 - 2015-05-01 19:51 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-05-04 19:32 - 2015-05-01 19:51 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-05-04 19:32 - 2015-05-01 19:50 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-05-04 19:32 - 2015-05-01 19:50 - 01570672 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-05-04 19:31 - 2015-05-05 09:21 - 00000000 ____D () C:\Users\Все пользователи\NVIDIA
2015-05-04 19:31 - 2015-05-05 09:21 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-04 19:31 - 2015-04-08 23:32 - 00560968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-05-04 19:30 - 2015-05-04 19:35 - 00000000 ____D () C:\Users\Все пользователи\NVIDIA Corporation
2015-05-04 19:30 - 2015-05-04 19:35 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-05-04 19:30 - 2015-04-09 03:58 - 00078480 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-05-04 19:30 - 2015-04-09 03:58 - 00066704 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-05-04 19:30 - 2015-04-09 00:30 - 06841488 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-05-04 19:30 - 2015-04-09 00:30 - 03478344 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-05-04 19:30 - 2015-04-09 00:30 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-05-04 19:30 - 2015-04-09 00:30 - 00936264 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-05-04 19:30 - 2015-04-09 00:30 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-05-04 19:30 - 2015-04-09 00:30 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-05-04 19:30 - 2015-04-08 20:52 - 04336074 _____ () C:\Windows\system32\nvcoproc.bin
2015-05-04 19:29 - 2015-05-04 19:32 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-05-04 19:28 - 2015-04-09 03:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 17176128 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 14617288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 12689592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-05-04 19:28 - 2015-04-09 03:58 - 03317344 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 02935416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 01540240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00195728 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-05-04 19:28 - 2015-04-09 03:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-05-04 19:28 - 2015-04-09 03:58 - 00035472 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00032400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00030536 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-05-04 19:28 - 2015-04-09 03:58 - 00029329 _____ () C:\Windows\system32\nvinfo.pb
2015-05-04 18:14 - 2015-05-04 18:12 - 31711025 ____N () C:\Users\User\Desktop\VID_20150504_181251.mp4
2015-05-03 11:36 - 2015-05-03 11:36 - 00000000 ____D () C:\Windows\pss
2015-05-03 11:30 - 2015-05-03 13:48 - 00000000 ____D () C:\Users\User\Doctor Web
2015-05-03 11:22 - 2015-05-03 11:22 - 00001175 _____ () C:\Users\User\Desktop\AIDA64 Extreme.lnk
2015-05-03 11:22 - 2015-05-03 11:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire
2015-05-03 11:22 - 2015-05-03 11:22 - 00000000 ____D () C:\Program Files (x86)\FinalWire
2015-05-03 09:36 - 2015-05-03 09:36 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2015-05-03 09:18 - 2015-05-04 14:42 - 00000000 ____D () C:\Users\User\AppData\Roaming\OBS
2015-05-03 09:18 - 2015-05-03 09:18 - 00000935 _____ () C:\Users\User\Desktop\Open Broadcaster Software.lnk
2015-05-03 09:18 - 2015-05-03 09:18 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
2015-05-03 09:18 - 2015-05-03 09:18 - 00000000 ____D () C:\Program Files\OBS
2015-05-03 09:18 - 2015-05-03 09:18 - 00000000 ____D () C:\Program Files (x86)\OBS
2015-05-02 22:44 - 2015-05-05 08:32 - 00447676 _____ () C:\Windows\PFRO.log
2015-05-02 22:27 - 2015-05-02 22:27 - 00000796 _____ () C:\Users\Public\Desktop\Speccy.lnk
2015-05-02 22:27 - 2015-05-02 22:27 - 00000000 ____D () C:\Program Files\Speccy
2015-05-02 20:26 - 2015-05-02 20:26 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-05-02 20:26 - 2015-05-02 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-05-02 20:26 - 2015-05-02 20:26 - 00000000 ____D () C:\Program Files (x86)\Java
2015-05-02 20:23 - 2015-05-02 20:23 - 00000000 ____D () C:\Users\Все пользователи\Sun
2015-05-02 20:23 - 2015-05-02 20:23 - 00000000 ____D () C:\ProgramData\Sun
2015-05-02 20:20 - 2015-05-02 20:20 - 00000000 ____D () C:\Users\Все пользователи\Oracle
2015-05-02 20:20 - 2015-05-02 20:20 - 00000000 ____D () C:\ProgramData\Oracle
2015-05-02 18:35 - 2015-05-02 18:36 - 00000000 ____D () C:\Program Files\Defraggler
2015-05-02 18:35 - 2015-05-02 18:35 - 00001724 _____ () C:\Users\Public\Desktop\Defraggler.lnk
2015-05-02 18:25 - 2015-05-02 18:25 - 00001807 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk
2015-05-02 18:24 - 2015-05-02 18:24 - 00000000 ____D () C:\Users\Все пользователи\BlueStacks
2015-05-02 18:24 - 2015-05-02 18:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2015-05-02 18:24 - 2015-05-02 18:24 - 00000000 ____D () C:\ProgramData\BlueStacks
2015-05-02 18:24 - 2015-05-02 18:24 - 00000000 ____D () C:\Program Files (x86)\BlueStacks
2015-05-02 18:23 - 2015-05-02 18:34 - 00000000 ____D () C:\Users\Все пользователи\BlueStacksSetup
2015-05-02 18:23 - 2015-05-02 18:34 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2015-05-02 18:23 - 2015-05-02 18:23 - 00000000 ____D () C:\Users\User\AppData\Local\Bluestacks
2015-05-02 18:22 - 2015-05-05 09:21 - 00010077 _____ () C:\Windows\setupact.log
2015-05-02 18:22 - 2015-05-02 18:22 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-02 18:04 - 2015-05-02 18:04 - 00002786 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-05-02 18:04 - 2015-05-02 18:04 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-05-02 18:04 - 2015-05-02 18:04 - 00000000 ____D () C:\Program Files\CCleaner
2015-05-02 17:52 - 2015-05-02 17:54 - 66972282 _____ (Copyright © PROTanki ) C:\Users\User\Downloads\multipackfull.exe
2015-05-02 17:44 - 2015-05-02 17:44 - 00000000 ____D () C:\Users\User\AppData\Roaming\Wargaming.net
2015-05-02 17:43 - 2015-05-02 17:43 - 00001052 _____ () C:\Users\User\Desktop\World Of Tanks.lnk
2015-05-02 17:40 - 2015-05-02 17:40 - 00001031 _____ () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\RaidCall.lnk
2015-05-02 17:40 - 2015-05-02 17:40 - 00001007 _____ () C:\Users\User\Desktop\RaidCall.lnk
2015-05-02 17:40 - 2015-05-02 17:40 - 00000000 ____D () C:\Users\User\AppData\Roaming\raidcall
2015-05-02 17:40 - 2015-05-02 17:40 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RaidCall
2015-05-02 17:40 - 2015-05-02 17:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RaidCall
2015-05-02 17:39 - 2015-05-04 18:10 - 00000000 ____D () C:\Program Files (x86)\RaidCall
2015-05-02 17:35 - 2015-05-02 17:35 - 00001032 _____ () C:\Users\User\Desktop\Mumble.lnk
2015-05-02 17:34 - 2015-05-02 17:38 - 00000000 ____D () C:\Users\User\AppData\Roaming\TS3Client
2015-05-02 17:34 - 2015-05-02 17:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
2015-05-02 17:34 - 2015-05-02 17:34 - 00000000 ____D () C:\Program Files (x86)\Mumble
2015-05-02 17:33 - 2015-05-02 17:33 - 00000967 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2015-05-02 17:33 - 2015-05-02 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-05-02 17:33 - 2015-05-02 17:33 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client
2015-05-02 15:41 - 2015-04-18 15:52 - 00001071 _____ () C:\Users\User\Desktop\GTA5.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00515470 _____ () C:\Users\User\Downloads\Crack.zip
2015-05-02 15:01 - 2015-05-02 15:01 - 00001945 _____ () C:\Windows\epplauncher.mif
2015-05-02 14:43 - 2015-05-02 14:43 - 00002117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2015-05-02 14:42 - 2015-05-02 14:43 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2015-05-02 14:42 - 2015-05-02 14:42 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2015-05-02 14:11 - 2015-05-02 22:40 - 01621720 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-05-02 14:05 - 2015-05-02 14:05 - 00000000 ____D () C:\Users\User\AppData\Roaming\LibreOffice
2015-05-02 13:43 - 2015-04-18 20:03 - 00000000 ____D () C:\Users\User\Desktop\Новая папка
2015-05-02 13:41 - 2015-05-02 13:41 - 00000000 ____D () C:\Users\User\AppData\Roaming\PotPlayerMini
2015-05-02 13:38 - 2015-05-02 13:38 - 00000000 ____D () C:\Users\Все пользователи\Canneverbe Limited
2015-05-02 13:38 - 2015-05-02 13:38 - 00000000 ____D () C:\Users\User\AppData\Roaming\Canneverbe Limited
2015-05-02 13:38 - 2015-05-02 13:38 - 00000000 ____D () C:\ProgramData\Canneverbe Limited
2015-05-02 13:36 - 2015-05-04 19:32 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-05-02 13:36 - 2015-05-02 14:05 - 00000000 ____D () C:\Users\Все пользователи\boost_interprocess
2015-05-02 13:36 - 2015-05-02 14:05 - 00000000 ____D () C:\ProgramData\boost_interprocess
2015-05-02 11:51 - 2015-05-02 11:51 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.1
2015-05-02 11:50 - 2015-05-04 23:07 - 00000000 ____D () C:\Users\User\AppData\Roaming\uTorrent
2015-05-02 11:50 - 2015-05-02 11:51 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4
2015-05-02 11:50 - 2015-05-02 11:50 - 00002515 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-05-02 11:50 - 2015-05-02 11:50 - 00000908 _____ () C:\Users\User\Desktop\uTorrent.lnk
2015-05-02 11:50 - 2015-05-02 11:50 - 00000888 _____ () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\uTorrent.lnk
2015-05-02 11:50 - 2015-05-02 11:50 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-05-02 11:50 - 2015-05-02 11:50 - 00000000 ____D () C:\Users\User\AppData\Roaming\Viber
2015-05-02 11:50 - 2015-05-02 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-05-02 11:49 - 2015-05-02 11:50 - 00000000 ____D () C:\Users\Все пользователи\Skype
2015-05-02 11:49 - 2015-05-02 11:50 - 00000000 ____D () C:\ProgramData\Skype
2015-05-02 11:48 - 2015-05-05 08:42 - 00000896 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-02 11:48 - 2015-05-02 18:06 - 00071520 _____ () C:\Users\User\AppData\Local\GDIPFONTCACHEV1.DAT
2015-05-02 11:48 - 2015-05-02 11:49 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-05-02 11:48 - 2015-05-02 11:49 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-05-02 11:48 - 2015-05-02 11:49 - 00003834 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\Windows\system32\Macromed
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\Users\Все пользователи\Adobe
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\Users\User\AppData\Roaming\Adobe
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\Users\User\AppData\Local\Adobe
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\ProgramData\Adobe
2015-05-02 11:48 - 2015-05-02 11:48 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-05-02 11:48 - 2015-04-18 15:17 - 00000000 ____D () C:\Users\User\AppData\Roaming\Macromedia
2015-05-02 11:47 - 2015-05-02 11:47 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-05-02 11:47 - 2015-05-02 11:47 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-05-02 11:45 - 2015-05-02 11:45 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2015-05-02 11:45 - 2013-02-11 08:59 - 01647616 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Windows\system32\libeay32.dll
2015-05-02 11:45 - 2013-02-11 08:59 - 00351744 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Windows\system32\ssleay32.dll
2015-05-02 11:45 - 2013-02-11 08:59 - 00351744 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Windows\system32\libssl32.dll
2015-05-02 11:45 - 2013-02-11 08:35 - 01178624 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Windows\SysWOW64\libeay32.dll
2015-05-02 11:45 - 2013-02-11 08:35 - 00269824 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Windows\SysWOW64\ssleay32.dll
2015-05-02 11:45 - 2013-02-11 08:35 - 00269824 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Windows\SysWOW64\libssl32.dll
2015-05-02 11:45 - 2011-11-04 05:13 - 01070352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx
2015-05-02 11:45 - 2010-06-11 18:16 - 00466520 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2015-05-02 11:45 - 2010-06-11 18:16 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2015-05-02 11:45 - 2010-06-11 18:16 - 00123480 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2015-05-02 11:45 - 2010-06-11 18:16 - 00109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2015-05-02 11:45 - 2009-09-25 09:32 - 00126800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswinsck.ocx
2015-05-02 11:45 - 2009-07-11 23:51 - 01053696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71u.dll
2015-05-02 11:45 - 2009-07-11 23:40 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71DEU.DLL
2015-05-02 11:45 - 2009-07-11 23:40 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ITA.DLL
2015-05-02 11:45 - 2009-07-11 23:40 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71FRA.DLL
2015-05-02 11:45 - 2009-07-11 23:40 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ESP.DLL
2015-05-02 11:45 - 2009-07-11 23:40 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ENU.DLL
2015-05-02 11:45 - 2009-07-11 23:40 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71KOR.DLL
2015-05-02 11:45 - 2009-07-11 23:40 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71JPN.DLL
2015-05-02 11:45 - 2009-07-11 23:40 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71CHT.DLL
2015-05-02 11:45 - 2009-07-11 23:40 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71CHS.DLL
2015-05-02 11:45 - 2009-07-11 23:35 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71.dll
2015-05-02 11:45 - 2009-07-11 23:07 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl71.dll
2015-05-02 11:45 - 2009-03-24 07:52 - 00659264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomct2.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00614992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00443488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MShflxgd.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00415552 _____ (Microsoft Corporation ) C:\Windows\SysWOW64\comct332.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00278352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatgrd.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00258880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00252240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatlst.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00222528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dblist32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tabctl32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00218432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\richtx32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00215880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mci32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00178512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmask32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00170080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comct232.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00155984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00136008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00129872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll
2015-05-02 11:45 - 2009-03-24 07:52 - 00119616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomm32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00107840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSSTKPRP.DLL
2015-05-02 11:45 - 2009-03-24 07:52 - 00100160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\picclp32.ocx
2015-05-02 11:45 - 2009-03-24 07:52 - 00080208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysinfo.ocx
2015-05-02 11:45 - 2008-04-15 15:00 - 01355776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvbvm50.dll
2015-05-02 11:45 - 2007-02-01 19:13 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll
2015-05-02 11:45 - 2007-02-01 16:11 - 00344064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2015-05-02 11:45 - 2007-01-30 19:04 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll
2015-05-02 11:45 - 2006-08-25 23:28 - 01017344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70u.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70ita.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70fra.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70esp.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70deu.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70enu.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70kor.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70jpn.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70cht.dll
2015-05-02 11:45 - 2006-08-25 23:15 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70chs.dll
2015-05-02 11:45 - 2006-08-25 23:07 - 01024000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70.dll
2015-05-02 11:45 - 2006-08-25 22:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl70.dll
2015-05-02 11:45 - 2006-04-10 23:41 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL32.OCX
2015-05-02 11:45 - 2005-01-20 18:25 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvci70.dll
2015-05-02 11:45 - 2002-01-05 04:40 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVCP70.DLL
2015-05-02 11:45 - 1996-01-12 03:00 - 00935632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vb40016.dll
2015-05-02 11:45 - 1996-01-12 03:00 - 00722192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vb40032.dll
2015-05-02 11:45 - 1994-11-18 00:00 - 00210944 _____ () C:\Windows\SysWOW64\msvcrt10.dll
2015-05-02 11:45 - 1993-05-11 20:00 - 00398416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vbrun300.dll
2015-05-02 11:45 - 1992-10-21 01:00 - 00356992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbrun200.dll
2015-05-02 11:45 - 1991-05-10 02:00 - 00271264 _____ () C:\Windows\SysWOW64\vbrun100.dll
2015-05-02 11:43 - 2015-05-03 14:50 - 00000000 ____D () C:\Users\Все пользователи\Package Cache
2015-05-02 11:43 - 2015-05-03 14:50 - 00000000 ____D () C:\ProgramData\Package Cache
2015-05-02 11:42 - 2015-05-04 22:29 - 00000000 ____D () C:\Program Files\Recuva
2015-05-02 11:42 - 2015-05-02 11:42 - 00000000 ____D () C:\Users\User\AppData\Roaming\Foxit Software
2015-05-02 11:42 - 2015-05-02 11:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2015-05-02 11:42 - 2015-05-02 11:42 - 00000000 ____D () C:\Program Files (x86)\Foxit Software
2015-05-02 11:41 - 2015-05-02 13:37 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-05-02 11:41 - 2015-05-02 11:41 - 00001692 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk
2015-05-02 11:41 - 2015-05-02 11:41 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bandizip
2015-05-02 11:41 - 2015-05-02 11:41 - 00000000 ____D () C:\Users\User\AppData\Local\Bandizip
2015-05-02 11:41 - 2015-05-02 11:41 - 00000000 ____D () C:\Program Files\CDBurnerXP
2015-05-02 11:40 - 2015-05-05 09:21 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-02 11:40 - 2015-05-05 08:50 - 00000970 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-02 11:40 - 2015-05-02 13:45 - 00003966 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-05-02 11:40 - 2015-05-02 13:45 - 00003714 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-05-02 11:40 - 2015-05-02 13:37 - 00000000 ____D () C:\Program Files (x86)\Google
2015-05-02 11:40 - 2015-05-02 13:36 - 00000000 ____D () C:\Users\User\AppData\Local\Google
2015-05-02 11:40 - 2015-05-02 11:40 - 00000000 ____D () C:\Users\Все пользователи\Mozilla
2015-05-02 11:40 - 2015-05-02 11:40 - 00000000 ____D () C:\ProgramData\Mozilla
2015-05-02 11:40 - 2015-05-02 11:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2015-05-02 11:40 - 2015-05-02 11:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-05-02 11:40 - 2015-05-02 11:40 - 00000000 ____D () C:\Program Files (x86)\K-Lite Codec Pack
2015-05-02 11:40 - 2015-05-02 11:40 - 00000000 ____D () C:\Program Files (x86)\Daum
2015-05-02 11:40 - 2013-09-12 21:00 - 00127488 _____ () C:\Windows\system32\ff_vfw.dll
2015-05-02 11:40 - 2013-09-12 21:00 - 00112640 _____ () C:\Windows\SysWOW64\ff_vfw.dll
2015-05-02 11:40 - 2013-08-22 20:09 - 00256088 _____ () C:\Windows\system32\unrar64.dll
2015-05-02 11:40 - 2013-08-22 20:09 - 00217176 _____ () C:\Windows\SysWOW64\unrar.dll
2015-05-02 11:40 - 2013-03-17 20:22 - 03554304 _____ (x264vfw project) C:\Windows\system32\x264vfw64.dll
2015-05-02 11:40 - 2013-03-17 19:21 - 03649536 _____ (x264vfw project) C:\Windows\SysWOW64\x264vfw.dll
2015-05-02 11:40 - 2012-07-21 13:55 - 00180736 _____ (fccHandler) C:\Windows\system32\ac3acm.acm
2015-05-02 11:40 - 2012-07-21 13:54 - 00122880 _____ (fccHandler) C:\Windows\SysWOW64\ac3acm.acm
2015-05-02 11:40 - 2011-12-07 20:37 - 00148992 _____ ( ) C:\Windows\system32\lagarith.dll
2015-05-02 11:40 - 2011-12-07 20:32 - 00216064 _____ ( ) C:\Windows\SysWOW64\lagarith.dll
2015-05-02 11:40 - 2011-06-24 17:45 - 00258560 _____ () C:\Windows\system32\xvidvfw.dll
2015-05-02 11:40 - 2011-06-24 17:44 - 00243200 _____ () C:\Windows\SysWOW64\xvidvfw.dll
2015-05-02 11:40 - 2011-06-24 17:31 - 00703488 _____ () C:\Windows\system32\xvidcore.dll
2015-05-02 11:40 - 2011-06-24 17:28 - 00650752 _____ () C:\Windows\SysWOW64\xvidcore.dll
2015-05-02 11:39 - 2015-05-04 17:27 - 00000000 ____D () C:\Users\User\AppData\Roaming\AIMP3
2015-05-02 11:39 - 2015-05-02 13:40 - 00000000 ____D () C:\Program Files (x86)\FreeTime
2015-05-02 11:39 - 2015-05-02 11:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2015-05-02 11:39 - 2015-05-02 11:39 - 00000000 ____D () C:\Program Files (x86)\AIMP3
2015-05-02 11:33 - 2012-02-17 09:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-05-02 11:33 - 2012-02-17 08:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2015-05-02 11:33 - 2012-02-17 07:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-05-02 11:33 - 2012-02-17 07:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2015-05-02 11:24 - 2014-05-14 19:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-05-02 11:24 - 2014-05-14 19:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-05-02 11:24 - 2014-05-14 19:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-05-02 11:24 - 2014-05-14 19:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-05-02 11:24 - 2014-05-14 19:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-05-02 11:24 - 2014-05-14 19:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-05-02 11:24 - 2014-05-14 19:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-05-02 11:24 - 2014-05-14 19:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-05-02 11:24 - 2014-05-14 19:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-05-02 11:24 - 2014-05-14 19:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-05-02 11:24 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-05-02 11:24 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-05-02 11:24 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-05-02 11:24 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-05-02 11:23 - 2014-06-17 19:13 - 00941272 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2015-05-02 11:23 - 2014-06-17 19:13 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2015-05-02 11:23 - 2014-06-17 19:13 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2015-05-02 11:21 - 2015-05-02 11:21 - 00001427 _____ () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-05-02 11:21 - 2015-05-02 11:21 - 00001393 _____ () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2015-05-02 11:21 - 2015-05-02 11:21 - 00000000 ____D () C:\Users\User\AppData\Local\VirtualStore
2015-05-02 11:20 - 2015-05-02 11:20 - 00000020 ___SH () C:\Users\User\ntuser.ini
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Все пользователи\Шаблоны
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Все пользователи\Рабочий стол
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Все пользователи\Избранное
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Все пользователи\Документы
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Все пользователи\Главное меню
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Все пользователи
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\User\Шаблоны
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\User\Мои документы
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\User\Главное меню
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Программы
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Default\Шаблоны
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Default\Мои документы
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Default\Главное меню
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Программы
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Программы
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\ProgramData\Шаблоны
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\ProgramData\Рабочий стол
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\ProgramData\Избранное
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\ProgramData\Документы
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\ProgramData\Главное меню
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Программы
2015-05-02 11:20 - 2015-05-02 11:20 - 00000000 __SHD () C:\Recovery
2015-05-02 11:20 - 2009-07-14 07:54 - 00000000 ___RD () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-05-02 11:20 - 2009-07-14 07:49 - 00000000 ___RD () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-05-02 11:15 - 2015-05-02 18:11 - 00000000 ____D () C:\Windows\Panther
2015-05-02 10:18 - 2015-05-05 09:20 - 01388527 _____ () C:\Windows\WindowsUpdate.log
2015-05-02 10:17 - 2015-05-02 10:17 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2015-04-18 19:31 - 2015-04-18 19:31 - 00000000 ____D () C:\NVIDIA
2015-04-18 15:17 - 2015-04-18 14:09 - 00003204 _____ () C:\Windows\System32\Tasks\MdmUpdateTaskMachineCore
2015-04-18 15:16 - 2015-05-02 15:46 - 00000000 ____D () C:\Program Files\Rockstar Games
2015-04-18 15:16 - 2015-05-02 15:46 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2015-04-18 15:15 - 2015-04-18 15:15 - 00000000 ____D () C:\Users\User\AppData\Local\Rockstar Games

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-05 09:21 - 2009-07-14 08:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-05 09:20 - 2009-07-14 07:45 - 00022496 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-05 09:20 - 2009-07-14 07:45 - 00022496 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-05 08:37 - 2011-04-12 16:26 - 00723936 _____ () C:\Windows\system32\perfh019.dat
2015-05-05 08:37 - 2011-04-12 16:26 - 00150252 _____ () C:\Windows\system32\perfc019.dat
2015-05-05 08:37 - 2009-07-14 08:13 - 01647438 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-05 01:34 - 2009-07-14 06:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-05-05 01:34 - 2009-07-14 06:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2015-05-04 19:30 - 2009-07-14 06:20 - 00000000 ____D () C:\Windows\Help
2015-05-02 18:24 - 2009-07-14 06:20 - 00000000 __RHD () C:\Users\Public\Libraries
2015-05-02 18:22 - 2009-07-14 07:45 - 00316728 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-02 16:24 - 2009-07-14 06:20 - 00000000 ____D () C:\Windows\rescache
2015-05-02 11:44 - 2009-07-14 06:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-05-02 11:22 - 2009-07-14 08:32 - 00000000 ____D () C:\Windows\system32\restore
2015-05-02 11:20 - 2009-07-14 06:20 - 00000000 __RHD () C:\Users\Default
2015-05-02 11:20 - 2009-07-14 06:20 - 00000000 ____D () C:\Windows\system32\Recovery
2015-05-02 11:20 - 2009-07-14 06:20 - 00000000 ____D () C:\Program Files\Windows NT
2015-05-02 11:15 - 2009-07-14 08:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2015-05-02 11:15 - 2009-07-14 08:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2015-05-02 10:19 - 2009-07-14 06:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-05-02 10:18 - 2009-07-14 06:20 - 00000000 ____D () C:\Windows\system32\sysprep

Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\AskPIP_FF_.exe
C:\Users\User\AppData\Local\Temp\Foxit Updater.exe
C:\Users\User\AppData\Local\Temp\MailRuUpdater.exe
C:\Users\User\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\User\AppData\Local\Temp\nvSCPAPISvr.exe
C:\Users\User\AppData\Local\Temp\nvStInst.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-02 16:14

==================== End Of Log ============================