Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 10.02.2018 02 Ran by ADMINPC (administrator) on МИХАИЛ-ПК (10-02-2018 23:06:28) Running from C:\Users\ADMINPC\Desktop Loaded Profiles: ADMINPC (Available Profiles: UpdatusUser & ADMINPC) Platform: Microsoft Windows 7 Домашняя расширенная Service Pack 1 (X86) Language: Русский (Россия) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Teruten) C:\Windows\System32\FsUsbExService.Exe (SafeNet Inc.) C:\Windows\System32\hasplms.exe (McAfee, Inc.) C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe (Google Inc.) C:\Program Files\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe (Pixart Imaging Inc) C:\Windows\System32\TiltWheelMouse.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Panasonic) C:\Program Files\Panasonic\TrapMonitor\Trapmnnt.exe () C:\Windows\System32\PnkBstrA.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Viber Media S.à r.l.) C:\Users\ADMINPC\AppData\Local\Viber\Viber.exe (ООО Яндекс) C:\Program Files\Yandex\Punto Switcher\punto.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdcBase.exe [648072 2007-05-31] (Microsoft Corporation) HKLM\...\Run: [MouseDriver] => C:\Windows\system32\TiltWheelMouse.exe [241152 2012-12-19] (Pixart Imaging Inc) HKU\S-1-5-21-2611090722-3937820500-115396711-1098\...\Run: [Viber] => C:\Users\ADMINPC\AppData\Local\Viber\Viber.exe [35581000 2018-01-30] (Viber Media S.à r.l.) Startup: C:\Users\ADMINPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Punto Switcher.lnk [2018-02-10] ShortcutTarget: Punto Switcher.lnk -> C:\Program Files\Yandex\Punto Switcher\punto.exe (ООО Яндекс) GroupPolicy: Restriction ? <==== ATTENTION GroupPolicy\User: Restriction ? <==== ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{41FA5A5B-854E-489A-9704-C32C90D75A54}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = URLSearchHook: [S-1-5-21-2611090722-3937820500-115396711-1098] ATTENTION => Default URLSearchHook is missing SearchScopes: HKLM -> DefaultScope value is missing SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3C} URL = SearchScopes: HKU\S-1-5-21-2611090722-3937820500-115396711-1098 -> DefaultScope {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = SearchScopes: HKU\S-1-5-21-2611090722-3937820500-115396711-1098 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://yandex.ru/search/?win=281&clid=2256813-1&text={searchTerms} SearchScopes: HKU\S-1-5-21-2611090722-3937820500-115396711-1098 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3C} URL = SearchScopes: HKU\S-1-5-21-2611090722-3937820500-115396711-1098 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3D} URL = BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2015-01-20] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> c:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO: IE 4.x-6.x BHO for Download Master -> {9961627E-4059-41B4-8E0E-A7D6B3854ADF} -> C:\Program Files\Download Master\dmiehlp.dll [2012-05-23] (WestByte) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2015-01-20] (Oracle Corporation) DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-01-23] (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2017-06-01] (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\ADMINPC\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default [2018-02-07] FF Extension: (Download Master Toolbar) - C:\Users\ADMINPC\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\dmbarff@westbyte.com [2015-10-22] [Legacy] [not signed] FF Extension: (Download Master Plugin) - C:\Users\ADMINPC\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\dmpluginff@westbyte.com [2015-10-22] [Legacy] [not signed] FF Extension: (Download Master Remote Download) - C:\Users\ADMINPC\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\dmremote@westbyte.com [2015-10-22] [Legacy] [not signed] FF Extension: (No Name) - C:\Users\ADMINPC\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\rambler_toolbar@rambler.ru [not found] FF Extension: (No Name) - C:\Users\ADMINPC\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\{a38384b3-2d1d-4f36-bc22-0f7ae402bcd7} [not found] FF Extension: (No Name) - C:\Users\ADMINPC\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\iobitascsurfingprotection@iobit.com [not found] FF SearchPlugin: C:\Users\ADMINPC\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\searchplugins\yandex.ru-233318.xml [2014-11-21] FF Extension: (Рамблер Ассистент) - C:\Program Files\Mozilla Firefox\distribution\extensions\rambler_toolbar@rambler.ru [2014-02-04] [Legacy] [not signed] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_28_0_0_161.dll [2018-02-06] () FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-05] (NVIDIA Corporation) FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-05] (NVIDIA Corporation) FF Plugin: @raidcall.tw/RCplugin -> C:\Users\ADMINPC\AppData\Roaming\RCTW\plugins\nprcplugin.dll [2013-06-25] (Raidcall) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-05] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2611090722-3937820500-115396711-1098: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\ADMINPC\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-05-08] (Unity Technologies ApS) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\ADMINPC\AppData\Local\Google\Chrome\User Data\Default [2018-02-10] CHR Extension: (Adobe Acrobat) - C:\Users\ADMINPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2018-02-10] CHR Extension: (Платежная система Интернет-магазина Chrome) - C:\Users\ADMINPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-02-10] CHR Extension: (Chrome Media Router) - C:\Users\ADMINPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-02-10] CHR Profile: C:\Users\ADMINPC\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-02-06] CHR Extension: (No Name) - C:\Users\ADMINPC\AppData\Local\Google\Chrome\User Data\Guest Profile\Extensions\jnoejnlbkbnckikbkmnpippafneemknp [2018-02-06] CHR Profile: C:\Users\ADMINPC\AppData\Local\Google\Chrome\User Data\System Profile [2018-02-06] CHR Extension: (No Name) - C:\Users\ADMINPC\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\jnoejnlbkbnckikbkmnpippafneemknp [2018-02-06] CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx Opera: ======= OPR StartupUrls: OPR Session Restore: -> is enabled. OPR Extension: (0) - C:\Users\ADMINPC\AppData\Roaming\Opera Software\Opera Stable\Extensions\jnoejnlbkbnckikbkmnpippafneemknp [2018-02-06] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 2GISUpdateService; C:\Program Files\2gis\3.0\2GISUpdateService.exe [3772648 2016-02-29] (ООО ДубльГИС) S3 defragsvc; C:\Windows\System32\defragsvc.dll [218624 2009-07-14] (Корпорация Майкрософт) R2 hasplms; C:\Windows\system32\hasplms.exe [4609928 2013-08-01] (SafeNet Inc.) R2 InstallerService; C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe [189840 2017-03-02] (McAfee, Inc.) S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4563920 2017-11-01] (Malwarebytes) R2 Panasonic Trap Monitor Service; C:\Program Files\Panasonic\TrapMonitor\Trapmnnt.exe [69632 2004-02-26] (Panasonic) [File not signed] R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2013-01-03] () R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation) S3 WPCSvc; C:\Windows\System32\wpcsvc.dll [10752 2009-07-14] (Корпорация Майкрософт) ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 aksfridge; C:\Windows\system32\drivers\aksfridge.sys [376200 2013-08-01] (SafeNet Inc.) R3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36640 2010-03-26] () [File not signed] R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [608648 2013-08-01] (SafeNet Inc.) R0 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [78784 2015-02-03] (Корпорация Майкрософт) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [13216 2009-07-16] () S3 PortTalk; C:\Windows\System32\Drivers\PortTalk.sys [3567 2002-01-12] (Beyond Logic hxxp://www.beyondlogic.org) [File not signed] S3 qcusbnet; C:\Windows\System32\DRIVERS\qcusbnet.sys [136192 2012-10-26] (QUALCOMM Incorporated) S3 qcusbser; C:\Windows\System32\DRIVERS\innosusbser.sys [311936 2012-10-26] (QUALCOMM Incorporated) S3 qcusbser-forge; C:\Windows\System32\DRIVERS\qcusbser.sys [214080 2015-06-17] (FORGE Incorporated) S3 qcusbwwan-forge; C:\Windows\System32\DRIVERS\qcusbwwan.sys [422976 2015-06-17] (FORGE Incorporated) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [428088 2013-07-17] () S3 ssm_bus; C:\Windows\System32\DRIVERS\ssm_bus.sys [104448 2010-03-25] (MCCI Corporation) S3 ssm_mdfl; C:\Windows\System32\DRIVERS\ssm_mdfl.sys [14848 2010-03-25] (MCCI Corporation) S3 ssm_mdm; C:\Windows\System32\DRIVERS\ssm_mdm.sys [132608 2010-03-25] (MCCI Corporation) S3 t_mouse.sys; C:\Windows\System32\DRIVERS\t_mouse.sys [5120 2012-12-19] () S3 utm2nzqw; C:\Windows\system32\Drivers\utm2nzqw.sys [7168 2018-02-10] () [File not signed] R1 uzm2nzqw; C:\Windows\system32\Drivers\uzm2nzqw.sys [11264 2018-02-07] () [File not signed] R3 VIAHdAudAddService; C:\Windows\System32\drivers\viahduaa.sys [1150880 2010-05-15] (VIA Technologies, Inc.) R0 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [297040 2009-07-14] (Корпорация Майкрософт) S2 WCMVCAM; C:\Windows\System32\DRIVERS\wcmvcam.sys [1068216 2012-04-16] (Windows (R) Win 7 DDK provider) R2 WinDivert32; C:\Windows\System32\drivers\WinDivert32.sys [33792 2014-12-10] (Basil's Projects) [File not signed] U3 av42wmtt; C:\Windows\system32\Drivers\av42wmtt.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder) ========================== Drivers MD5 ======================= C:\Windows\system32\drivers\1394ohci.sys ==> MD5 is legit C:\Windows\System32\drivers\ACPI.sys ==> MD5 is legit C:\Windows\system32\drivers\acpipmi.sys ==> MD5 is legit C:\Windows\system32\drivers\adp94xx.sys ==> MD5 is legit C:\Windows\system32\drivers\adpahci.sys ==> MD5 is legit C:\Windows\system32\drivers\adpu320.sys ==> MD5 is legit C:\Windows\system32\drivers\afd.sys D0B388DA1D111A34366E04EB4A5DD156 C:\Windows\system32\drivers\agp440.sys ==> MD5 is legit C:\Windows\system32\drivers\djsvs.sys ==> MD5 is legit C:\Windows\system32\drivers\aksfridge.sys FA9B4921088981A0E44DEA8A605E58C8 C:\Windows\system32\drivers\aliide.sys ==> MD5 is legit C:\Windows\system32\drivers\amdagp.sys ==> MD5 is legit C:\Windows\system32\drivers\amdide.sys ==> MD5 is legit C:\Windows\system32\drivers\amdk8.sys ==> MD5 is legit C:\Windows\system32\drivers\amdppm.sys ==> MD5 is legit C:\Windows\system32\drivers\amdsata.sys D320BF87125326F996D4904FE24300FC C:\Windows\system32\drivers\amdsbs.sys ==> MD5 is legit C:\Windows\System32\drivers\amdxata.sys 46387FB17B086D16DEA267D5BE23A2F2 C:\Windows\system32\drivers\appid.sys 81F97D8F8B3FB94A451CC6F7CF8B2965 C:\Windows\system32\drivers\arc.sys ==> MD5 is legit C:\Windows\system32\drivers\arcsas.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit C:\Windows\System32\drivers\atapi.sys ==> MD5 is legit C:\Windows\system32\drivers\bxvbdx.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\b57nd60x.sys ==> MD5 is legit C:\Windows\system32\Drivers\Beep.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\blbdrive.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\bowser.sys ==> MD5 is legit C:\Windows\system32\drivers\BrFiltLo.sys ==> MD5 is legit C:\Windows\system32\drivers\BrFiltUp.sys ==> MD5 is legit C:\Windows\System32\Drivers\Brserid.sys ==> MD5 is legit C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit C:\Windows\system32\drivers\bthmodem.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 is legit C:\Windows\system32\drivers\circlass.sys ==> MD5 is legit C:\Windows\System32\CLFS.sys ==> MD5 is legit C:\Windows\system32\drivers\CmBatt.sys ==> MD5 is legit C:\Windows\system32\drivers\cmdide.sys ==> MD5 is legit C:\Windows\System32\Drivers\cng.sys 3051724F223EA48968B19567DE2A81F4 C:\Windows\system32\drivers\compbatt.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\CompositeBus.sys ==> MD5 is legit C:\Windows\system32\drivers\crcdisk.sys ==> MD5 is legit C:\Windows\System32\Drivers\dfsc.sys ==> MD5 is legit C:\Windows\System32\drivers\discache.sys ==> MD5 is legit C:\Windows\System32\drivers\disk.sys ==> MD5 is legit C:\Windows\system32\drivers\drmkaud.sys ==> MD5 is legit C:\Windows\System32\drivers\dxgkrnl.sys 3583A5A8CC2E682BFFBD4630D0FEC08B C:\Windows\system32\drivers\evbdx.sys ==> MD5 is legit C:\Windows\system32\drivers\elxstor.sys ==> MD5 is legit C:\Windows\system32\drivers\errdev.sys ==> MD5 is legit C:\Windows\system32\Drivers\exfat.sys ==> MD5 is legit C:\Windows\system32\Drivers\fastfat.sys ==> MD5 is legit C:\Windows\system32\drivers\fdc.sys ==> MD5 is legit C:\Windows\System32\drivers\fileinfo.sys ==> MD5 is legit C:\Windows\System32\drivers\filetrace.sys ==> MD5 is legit C:\Windows\system32\drivers\flpydisk.sys ==> MD5 is legitB C:\Windows\System32\drivers\fltmgr.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\fltsrv.sys 27C75AC6D6FC808D8244D9C9CEA681D1 C:\Windows\System32\drivers\FsDepends.sys ==> MD5 is legit C:\Windows\system32\FsUsbExDisk.SYS B07663A810E861EEBFD0EAC7E82CA62D C:\Windows\system32\Drivers\Fs_Rec.sys 7DAE5EBCC80E45D3253F4923DC424D05 C:\Windows\System32\DRIVERS\fvevol.sys E306A24D9694C724FA2491278BF50FDB C:\Windows\system32\drivers\gagp30kx.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\GEARAspiWDM.sys 185ADA973B5020655CEE342059A86CBB C:\Windows\system32\drivers\hardlock.sys 99FCD7CE9894C241FB98A7811D2D8813 C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 is legit C:\Windows\System32\drivers\HdAudio.sys A5EF29D5315111C80A5C1ABAD14C8972 C:\Windows\System32\DRIVERS\HDAudBus.sys ==> MD5 is legit C:\Windows\system32\drivers\HidBatt.sys ==> MD5 is legit C:\Windows\system32\drivers\hidbth.sys ==> MD5 is legit C:\Windows\system32\drivers\hidir.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 is legit C:\Windows\system32\drivers\HpSAMD.sys ==> MD5 is legit C:\Windows\System32\drivers\HTTP.sys ==> MD5 is legit C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 is legit C:\Windows\system32\drivers\i8042prt.sys ==> MD5 is legit C:\Windows\system32\drivers\iaStorV.sys 5CD5F9A5444E6CDCB0AC89BD62D8B76E C:\Windows\system32\drivers\iirsp.sys ==> MD5 is legit C:\Windows\system32\drivers\intelide.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\intelppm.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit C:\Windows\system32\drivers\IPMIDrv.sys ==> MD5 is legit C:\Windows\System32\drivers\ipnat.sys ==> MD5 is legit C:\Windows\System32\drivers\irenum.sys ==> MD5 is legit C:\Windows\system32\drivers\isapnp.sys ==> MD5 is legit C:\Windows\system32\drivers\msiscsi.sys EB34CE31FABD4DC4343FD2AD16D2CAF9 C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\kbdhid.sys ==> MD5 is legit C:\Windows\System32\Drivers\ksecdd.sys 4DAC97CF81FAE4B2988AEF0DF40D04AE C:\Windows\System32\Drivers\ksecpkg.sys 9EED5E0B7BF784C491C2289A09920BDA C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit C:\Windows\system32\drivers\lsi_fc.sys ==> MD5 is legit C:\Windows\system32\drivers\lsi_sas.sys ==> MD5 is legit C:\Windows\system32\drivers\lsi_sas2.sys ==> MD5 is legit C:\Windows\system32\drivers\lsi_scsi.sys ==> MD5 is legit C:\Windows\system32\drivers\luafv.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\lvrs.sys ED643E777BA3F7151EF3F0FB6BE4F7F0 C:\Windows\System32\DRIVERS\lvuvc.sys 5BC80451109A8DD7F2DDD35BCE2929A3 C:\Windows\system32\drivers\megasas.sys ==> MD5 is legit C:\Windows\system32\drivers\MegaSR.sys ==> MD5 is legit C:\Windows\System32\drivers\modem.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit C:\Windows\System32\drivers\mountmgr.sys 644905A19D0F37F2233DFCE53BC4BC19 C:\Windows\system32\drivers\mpio.sys ==> MD5 is legit C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 is legit C:\Windows\system32\drivers\mrxdav.sys 03F899F521D2AAED1C55008F734DF252 C:\Windows\System32\DRIVERS\mrxsmb.sys 5D16C921E3671636C0EBA3BBAAC5FD25 C:\Windows\System32\DRIVERS\mrxsmb10.sys 6D17A4791ACA19328C685D256349FEFC C:\Windows\System32\DRIVERS\mrxsmb20.sys B81F204D146000BE76651A50670A5E9E C:\Windows\System32\drivers\msahci.sys ==> MD5 is legit C:\Windows\system32\drivers\msdsm.sys ==> MD5 is legit C:\Windows\system32\Drivers\Msfs.sys ==> MD5 is legit C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit C:\Windows\System32\drivers\msisadrv.sys ==> MD5 is legit C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit C:\Windows\System32\drivers\MSPQM.sys ==> MD5 is legit C:\Windows\system32\Drivers\MsRPC.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mssmbios.sys ==> MD5 is legit C:\Windows\System32\drivers\MSTEE.sys ==> MD5 is legit C:\Windows\system32\drivers\MTConfig.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ASACPI.sys CBE71C122434805CB73FFB6619F60598 C:\Windows\System32\Drivers\mup.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit C:\Windows\System32\drivers\ndis.sys 8C9C922D71F1CD4DEF73F186416B7896 C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit C:\Windows\system32\Drivers\NDProxy.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\netaapl.sys 9213AA35BCA94EB79D366DA254E4BDF5 C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 is legit C:\Windows\system32\drivers\nfrd960.sys ==> MD5 is legit C:\Windows\system32\Drivers\Npfs.sys ==> MD5 is legit C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 is legit C:\Windows\system32\Drivers\Ntfs.sys C8DFF8D07755A66C7A4A738930F0FEAC C:\Windows\system32\Drivers\Null.sys ==> MD5 is legit C:\Windows\System32\drivers\nvhda32v.sys F69FD161BD904778E1D6EBE9EEBBC2B5 C:\Windows\System32\DRIVERS\nvlddmkm.sys FCEA6786A7222DF6C26B008279139952 C:\Windows\system32\drivers\nvraid.sys B3E25EE28883877076E0E1FF877D02E0 C:\Windows\system32\drivers\nvstor.sys 4380E59A170D88C4F1022EFF6719A8A4 C:\Windows\system32\drivers\nv_agp.sys ==> MD5 is legit C:\Windows\system32\drivers\ohci1394.sys ==> MD5 is legit C:\Windows\system32\drivers\parport.sys ==> MD5 is legit C:\Windows\System32\drivers\partmgr.sys 3F34A1B4C5F6475F320C275E63AFCE9B C:\Windows\system32\drivers\parvdm.sys ==> MD5 is legit C:\Windows\System32\drivers\pci.sys ==> MD5 is legit C:\Windows\System32\drivers\pciide.sys ==> MD5 is legit C:\Windows\system32\drivers\pcmcia.sys ==> MD5 is legit C:\Windows\System32\drivers\pcw.sys ==> MD5 is legit C:\Windows\System32\drivers\peauth.sys AEBC369F7DC72AB3F5B9BDF34FA0D43F C:\Windows\System32\Drivers\PortTalk.sys 7D5A2D755B6C6579F63657B527D6FF1B C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit C:\Windows\system32\drivers\processr.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\qcusbnet.sys FABEA654624C038E40DF67DC3ABC9C92 C:\Windows\System32\DRIVERS\innosusbser.sys 720C945F18BCE5E4928C646659FAF5EC C:\Windows\System32\DRIVERS\qcusbser.sys FA761224FC199EB9769EAE2350C85219 C:\Windows\System32\DRIVERS\qcusbwwan.sys 7CB9C66207C19FBDC0C2B04A6E480795 C:\Windows\system32\drivers\ql2300.sys ==> MD5 is legit C:\Windows\system32\drivers\ql40xx.sys ==> MD5 is legit C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rdbss.sys ==> MD5 is legit C:\Windows\system32\drivers\rdpbus.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\RDPCDD.sys ==> MD5 is legit C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 is legit C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 is legit C:\Windows\System32\drivers\rdpvideominiport.sys 65375DF758CA1872AB7EBBBA457FD5E6 C:\Windows\system32\Drivers\RDPWD.sys CD9214A6AE17D188D17C3CF8CB9CC693 C:\Windows\System32\drivers\rdyboost.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\Rt86win7.sys 5283B9A27FF230F2FF70D92451FF409A C:\Windows\system32\drivers\sbp2port.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\scfilter.sys ==> MD5 is legit C:\Windows\system32\Drivers\secdrv.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\serenum.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\serial.sys ==> MD5 is legit C:\Windows\system32\drivers\sermouse.sys ==> MD5 is legit C:\Windows\system32\drivers\sffdisk.sys ==> MD5 is legit C:\Windows\system32\drivers\sffp_mmc.sys ==> MD5 is legit C:\Windows\system32\drivers\sffp_sd.sys ==> MD5 is legit C:\Windows\system32\drivers\sfloppy.sys ==> MD5 is legit C:\Windows\system32\drivers\sisagp.sys ==> MD5 is legit C:\Windows\system32\drivers\SiSRaid2.sys ==> MD5 is legit C:\Windows\system32\drivers\sisraid4.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\smb.sys ==> MD5 is legit C:\Windows\system32\Drivers\spldr.sys ==> MD5 is legit C:\Windows\System32\Drivers\sptd.sys D41D8CD98F00B204E9800998ECF8427E C:\Windows\System32\DRIVERS\srv.sys E4C2764065D66EA1D2D3EBC28FE99C46 C:\Windows\System32\DRIVERS\srv2.sys 03F0545BD8D4C77FA0AE1CEEDFCC71AB C:\Windows\System32\DRIVERS\srvnet.sys BE6BD660CAA6F291AE06A718A4FA8ABC C:\Windows\System32\DRIVERS\ssm_bus.sys 9ECE19A1A4F4896597C3BB840FBFA721 C:\Windows\System32\DRIVERS\ssm_mdfl.sys 8E93A17A5253999A0E7C332F475699DC C:\Windows\System32\DRIVERS\ssm_mdm.sys C0BA1357C63DEACF3B3CCF4B989FEF06 C:\Windows\system32\drivers\stexstor.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\swenum.sys ==> MD5 is legit C:\Windows\System32\drivers\tcpip.sys 5579DD18546999F5D0EC39D018726C6B C:\Windows\System32\DRIVERS\tcpip.sys 5579DD18546999F5D0EC39D018726C6B C:\Windows\System32\drivers\tcpipreg.sys 3EEBD3BD93DA46A26E89893C7AB2FF3B C:\Windows\System32\drivers\tdpipe.sys ==> MD5 is legit C:\Windows\System32\drivers\tdtcp.sys 2C2C5AFE7EE4F620D69C23C0617651A8 C:\Windows\System32\DRIVERS\tdx.sys 7FE680A3DFA421C4A8E4879AE4C5AAB0 C:\Windows\System32\DRIVERS\termdd.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\tssecsrv.sys 6C5139E4283249518F7743D7043775B3 C:\Windows\System32\drivers\tsusbflt.sys C6A5FBD4977305E1FA23E02C042DB463 C:\Windows\system32\drivers\TsUsbGD.sys 57C527AF84748B5C2F5178C499C0B81F C:\Windows\System32\DRIVERS\tunnel.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\t_mouse.sys 0397852EF1E5463D57F22C689F6354F9 C:\Windows\system32\drivers\uagp35.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\udfs.sys ==> MD5 is legit C:\Windows\system32\drivers\uliagpkx.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\umbus.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\umpass.sys ==> MD5 is legit C:\Windows\System32\Drivers\usbaapl.sys A176718F0DF45F60F545CF3E14F4D108 C:\Windows\system32\drivers\usbaudio.sys A1977C315BF5691DA99235AA4A6907AF C:\Windows\System32\DRIVERS\usbccgp.sys 0803FBA9FE829D61AE26EC0BCC910C46 C:\Windows\system32\drivers\usbcir.sys 2352AB5F9F8F097BF9D41D5A4718A041 C:\Windows\System32\DRIVERS\usbehci.sys D40855F89B69305140BBD7E9A3BA2DA6 C:\Windows\System32\DRIVERS\usbhub.sys EDF2DF71C4F1E13A6AC75F5224DE655A C:\Windows\system32\drivers\usbohci.sys 9828C8D14CC2676421778F0DE638CF97 C:\Windows\System32\DRIVERS\usbprint.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\usbscan.sys FC6B21DB4B5B398AB93DBE59CBF11036 C:\Windows\System32\DRIVERS\usbser.sys 007C0C8D5B01D82ACEB70431D15083F6 C:\Windows\System32\DRIVERS\USBSTOR.SYS F991AB9CC6B908DB552166768176896A C:\Windows\system32\drivers\usbuhci.sys 800AABFD625EEFF899F7E5496BDE37AB C:\Windows\System32\Drivers\usbvideo.sys DE014425522610BEDCA3821BB8C0F1D5 C:\Windows\System32\DRIVERS\usb8023x.sys AF77716205C97E902E6C5B78DECE2CCA C:\Windows\system32\Drivers\utm2nzqw.sys 524D8D450622DB4A7875B111C299A76B C:\Windows\system32\Drivers\uzm2nzqw.sys D565AD44C6C4D934AFAD3CA4196B09AA C:\Windows\System32\drivers\vdrvroot.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit C:\Windows\System32\drivers\vga.sys ==> MD5 is legit C:\Windows\system32\drivers\vhdmp.sys ==> MD5 is legit C:\Windows\system32\drivers\viaagp.sys ==> MD5 is legit C:\Windows\system32\drivers\viac7.sys ==> MD5 is legit C:\Windows\System32\drivers\viahduaa.sys FD921DE6074BDE7D0CF7E43D19AB7081 C:\Windows\system32\drivers\viaide.sys ==> MD5 is legit C:\Windows\System32\drivers\volmgr.sys ==> MD5 is legit C:\Windows\System32\drivers\volmgrx.sys ==> MD5 is legit C:\Windows\System32\drivers\volsnap.sys ==> MD5 is legit C:\Windows\system32\drivers\vsmraid.sys ==> MD5 is legit C:\Windows\System32\drivers\vwifibus.sys ==> MD5 is legit C:\Windows\system32\drivers\wacompen.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\wcmvcam.sys 70FF13D0C853ACEA859737EC8A8D220F C:\Windows\system32\drivers\wd.sys ==> MD5 is legit C:\Windows\System32\drivers\Wdf01000.sys 25944D2CC49E0A6C581D02A74B7D6645 C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit C:\Windows\System32\drivers\wimmount.sys ==> MD5 is legit C:\Windows\System32\drivers\WinDivert32.sys 674E8B30274DB37C8EBBE922E6BE3490 C:\Windows\System32\DRIVERS\WinUsb.sys A67E5F9A400F3BD1BE3D80613B45F708 C:\Windows\system32\drivers\wmiacpi.sys ==> MD5 is legit C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit C:\Windows\System32\drivers\WudfPf.sys 06E6F32C8D0A3F66D956F57B43A2E070 C:\Windows\System32\DRIVERS\WUDFRd.sys 867C301E8B790040AE9CF6486E8041DF C:\Windows\system32\Drivers\av42wmtt.sys D41D8CD98F00B204E9800998ECF8427E ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-02-10 23:06 - 2018-02-10 23:06 - 000030969 _____ C:\Users\ADMINPC\Desktop\FRST.txt 2018-02-10 23:05 - 2018-02-10 23:05 - 001764352 _____ (Farbar) C:\Users\ADMINPC\Desktop\FRST.exe 2018-02-10 11:28 - 2018-02-10 11:29 - 000007168 _____ C:\Windows\system32\Drivers\utm2nzqw.sys 2018-02-07 21:01 - 2018-02-07 21:01 - 000000901 _____ C:\Users\ADMINPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zona.lnk 2018-02-07 21:00 - 2018-02-10 21:31 - 000000000 ____D C:\Users\ADMINPC\AppData\Roaming\Zona 2018-02-07 21:00 - 2018-02-07 21:01 - 000000000 ____D C:\Program Files\Zona 2018-02-06 14:00 - 2018-02-06 14:00 - 000000000 ____D C:\Users\Все пользователи\MB2Migration 2018-02-06 14:00 - 2018-02-06 14:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2018-02-06 14:00 - 2018-02-06 14:00 - 000000000 ____D C:\ProgramData\MB2Migration 2018-02-06 14:00 - 2018-02-06 14:00 - 000000000 ____D C:\Program Files\Malwarebytes 2018-02-06 14:00 - 2017-11-29 09:11 - 000059896 _____ C:\Windows\system32\Drivers\mbae.sys 2018-02-03 16:45 - 2018-02-10 17:43 - 000000000 ____D C:\Users\ADMINPC\AppData\Roaming\ViberPC 2018-02-03 16:45 - 2018-02-04 09:22 - 000000000 ____D C:\Users\ADMINPC\AppData\Local\Viber 2018-02-03 16:45 - 2018-02-03 16:45 - 000000943 _____ C:\Users\ADMINPC\AppData\Roaming\Microsoft\Windows\Start Menu\Viber.lnk 2018-02-03 16:45 - 2018-02-03 16:45 - 000000000 ____D C:\Users\ADMINPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-02-10 23:06 - 2015-12-05 13:08 - 000000000 ____D C:\FRST 2018-02-10 22:40 - 2009-07-14 09:34 - 000021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-02-10 22:40 - 2009-07-14 09:34 - 000021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-02-10 22:32 - 2013-05-11 23:23 - 000000000 ____D C:\Users\Все пользователи\NVIDIA 2018-02-10 22:32 - 2013-05-11 23:23 - 000000000 ____D C:\ProgramData\NVIDIA 2018-02-10 22:32 - 2009-07-14 09:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-02-10 22:31 - 2012-12-19 21:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RaidCall 2018-02-10 22:30 - 2013-01-26 14:58 - 000000000 ____D C:\Windows\Minidump 2018-02-10 22:28 - 2012-12-19 17:47 - 000000000 ____D C:\Windows\system32\Macromed 2018-02-10 22:26 - 2013-09-23 21:17 - 000000000 ____D C:\Program Files\Steam 2018-02-10 21:08 - 2017-09-09 20:31 - 000000000 ____D C:\Users\ADMINPC\Desktop\флеха 2018-02-10 21:07 - 2017-06-09 11:48 - 000000000 ____D C:\Users\ADMINPC\Documents\ViberDownloads 2018-02-10 21:04 - 2013-07-21 21:07 - 000000000 ___RD C:\Users\ADMINPC\Desktop\Программы 2018-02-10 20:57 - 2013-12-15 23:23 - 000000000 ____D C:\Windows\hsperfdata_ADMINPC 2018-02-10 20:56 - 2017-01-03 22:56 - 000000000 ____D C:\Zona Downloads 2018-02-09 12:18 - 2013-01-26 16:12 - 000000000 ____D C:\Program Files\Opera 2018-02-08 23:13 - 2013-07-21 20:40 - 000000000 ____D C:\Users\ADMINPC 2018-02-08 17:10 - 2015-12-09 16:47 - 000002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-02-07 20:57 - 2013-01-26 14:21 - 000011264 _____ C:\Windows\system32\Drivers\uzm2nzqw.sys 2018-02-07 16:43 - 2015-03-07 23:37 - 000000000 ____D C:\Users\Все пользователи\IObit 2018-02-07 16:43 - 2015-03-07 23:37 - 000000000 ____D C:\ProgramData\IObit 2018-02-07 16:39 - 2015-12-05 12:55 - 000000000 ____D C:\AdwCleaner 2018-02-06 20:32 - 2012-12-19 17:47 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2018-02-06 20:32 - 2012-12-19 17:47 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2018-02-06 14:05 - 2013-08-01 02:08 - 000000000 ____D C:\Users\ADMINPC\AppData\Roaming\uTorrent 2018-02-06 14:00 - 2013-01-26 15:46 - 000000000 ____D C:\Users\Все пользователи\Malwarebytes 2018-02-06 14:00 - 2013-01-26 15:46 - 000000000 ____D C:\ProgramData\Malwarebytes 2018-02-06 13:57 - 2015-11-24 11:43 - 000000000 ____D C:\Users\ADMINPC\AppData\Local\Unity 2018-02-06 13:57 - 2009-07-14 07:37 - 000000000 ___HD C:\Windows\system32\GroupPolicy 2018-02-03 16:45 - 2017-06-09 11:48 - 000000000 ____D C:\Users\ADMINPC\AppData\Local\Package Cache 2018-01-31 20:51 - 2009-07-14 09:53 - 000032510 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2018-01-24 19:49 - 2011-04-12 03:46 - 000724664 _____ C:\Windows\system32\perfh019.dat 2018-01-24 19:49 - 2011-04-12 03:46 - 000150980 _____ C:\Windows\system32\perfc019.dat 2018-01-24 19:49 - 2010-11-21 02:01 - 001649532 _____ C:\Windows\system32\PerfStringBackup.INI 2018-01-24 19:49 - 2009-07-14 07:37 - 000000000 ____D C:\Windows\inf 2018-01-21 22:05 - 2017-10-05 07:33 - 329552444 _____ C:\Windows\MEMORY.DMP 2018-01-16 22:07 - 2015-06-26 02:10 - 000000000 ____D C:\Users\Все пользователи\firebird 2018-01-16 22:07 - 2015-06-26 02:10 - 000000000 ____D C:\ProgramData\firebird 2018-01-12 22:44 - 2013-07-21 22:18 - 000000000 ____D C:\Users\ADMINPC\AppData\Local\eclipse 2018-01-11 14:56 - 2012-12-19 19:38 - 000000000 ____D C:\Program Files\CCleaner ==================== Files in the root of some directories ======= 2009-11-02 08:36 - 2009-11-02 08:36 - 000053248 _____ (INISoft) C:\Users\ADMINPC\Anycall_Land.dll 2010-03-29 17:16 - 2010-03-29 17:16 - 000081920 _____ (Mobile Leader) C:\Users\ADMINPC\BackupRestoreWM.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000033280 _____ (TODO: ) C:\Users\ADMINPC\BackupSYM.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000274432 _____ () C:\Users\ADMINPC\bfldongle.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000282624 _____ () C:\Users\ADMINPC\bfluart.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000274432 _____ () C:\Users\ADMINPC\bflusb.dll 2009-05-04 08:23 - 2009-05-04 08:23 - 000253952 _____ (TODO: ) C:\Users\ADMINPC\Buckingham_HomeDL.dll 2008-08-03 23:48 - 2008-08-03 23:48 - 000075144 _____ (Microsoft Corporation) C:\Users\ADMINPC\ceutil.dll 2010-03-29 17:37 - 2010-03-29 17:37 - 000032256 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\Common.dll 2010-03-29 17:16 - 2010-03-29 17:16 - 000222001 _____ () C:\Users\ADMINPC\connect_ani.dat 2010-02-11 13:37 - 2010-02-11 13:37 - 000408489 _____ () C:\Users\ADMINPC\Connect_ATT.dat 2009-07-31 12:53 - 2009-07-31 12:53 - 000248239 _____ () C:\Users\ADMINPC\connect_vf.dat 2010-03-26 08:40 - 2010-03-26 08:40 - 000036864 _____ () C:\Users\ADMINPC\ConvLunar.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000086016 _____ () C:\Users\ADMINPC\cryptoloader.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000012800 _____ () C:\Users\ADMINPC\dmstpb.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000237568 _____ () C:\Users\ADMINPC\drmcm.dll 2010-03-29 17:34 - 2010-03-29 17:34 - 000012288 _____ () C:\Users\ADMINPC\Dump.dll 2010-03-29 17:47 - 2010-03-29 17:47 - 000233472 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\EmailAdaptor.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000476160 _____ (Eznix) C:\Users\ADMINPC\EzNpsSharedLib.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000094208 _____ (Optimay GmbH) C:\Users\ADMINPC\flashdll.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000207360 _____ (Teruten Inc) C:\Users\ADMINPC\FsDeviceLib64.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000242176 _____ (Teruten Inc) C:\Users\ADMINPC\FsDeviceLib64Ex.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000110592 _____ () C:\Users\ADMINPC\FsUsbExDevice.Dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000126976 _____ (Teruten) C:\Users\ADMINPC\FsUsbExDeviceLib.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000249856 _____ (Mobileleader) C:\Users\ADMINPC\fun_id3tag.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000244736 _____ (TODO: ) C:\Users\ADMINPC\FUSCrypt.dll 2009-02-16 15:12 - 2009-02-16 15:12 - 000114688 _____ (TODO: ) C:\Users\ADMINPC\FUSCryptForLimo.dll 2004-08-05 20:00 - 2004-08-05 20:00 - 001712128 _____ (Microsoft Corporation) C:\Users\ADMINPC\GdiPlus.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000208896 _____ (MobileTop) C:\Users\ADMINPC\HSPIO.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000118784 _____ (Flextronics International Sweden AB) C:\Users\ADMINPC\imPowerSupply.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000027648 _____ (TODO: ) C:\Users\ADMINPC\InstallSYM.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000086016 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\InstAppWM.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000180224 _____ (Ericsson Mobile Communications AB) C:\Users\ADMINPC\InstrumentServer.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000482816 _____ () C:\Users\ADMINPC\JSRHandler.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000904192 _____ () C:\Users\ADMINPC\JSRHandler_SP.dll 2008-08-25 17:21 - 2008-08-25 17:21 - 000162816 _____ (MobileTop) C:\Users\ADMINPC\KMPWebModule.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000221281 _____ (고려미디어) C:\Users\ADMINPC\KRCaptionDll.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000012800 _____ (MDS) C:\Users\ADMINPC\ksmsbackupapi_f.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000016896 _____ (MDS) C:\Users\ADMINPC\ksmsbackupapi_l.dll 2009-11-02 08:36 - 2009-11-02 08:36 - 000540672 _____ (INIsoft Co., Ltd.) C:\Users\ADMINPC\KTFDRM20.dll 2009-11-02 08:36 - 2009-11-02 08:36 - 000659456 _____ (inisoft) C:\Users\ADMINPC\KTFDRM_UCC.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000266752 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\LComm3.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000022368 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfani15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000030048 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfbmp15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000390496 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfcmp15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000423264 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfcmw15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000054624 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfdrw15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000099680 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lffax15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000018272 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lffit15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000034656 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfgif15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000017248 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfimg15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000017248 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfitg15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000067936 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfjbg15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000128352 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfpng15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000014176 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfraw15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000020320 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lftga15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000152928 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lftif15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000015712 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Lfwmp15u.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 001085440 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Users\ADMINPC\libeay32.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000503808 _____ () C:\Users\ADMINPC\libpin3_dll.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000267616 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltdis15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000259424 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltefx15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000185696 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltfil15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000214368 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltimgclr15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000353632 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltimgcor15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000214368 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltimgefx15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000447840 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltimgsfx15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000128352 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltimgutl15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000488800 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltkrn15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000107872 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltpnt15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 002241888 _____ (LEAD Technologies, Inc.) C:\Users\ADMINPC\Ltwvc15u.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 001097728 _____ (YAMAHA CORPORATION) C:\Users\ADMINPC\M5_EmuHw.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000507904 _____ (YAMAHA CORPORATION) C:\Users\ADMINPC\M5_EmuMapi30.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 001998848 _____ (Yamaha Corporation) C:\Users\ADMINPC\M5_EmuSmw5.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000307200 _____ ( MarkAny.) C:\Users\ADMINPC\MACSSDK.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000040960 _____ (MARKANY) C:\Users\ADMINPC\MAMACExtract.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000114688 _____ (Ericsson AB) C:\Users\ADMINPC\master utmcommon_cxc4010104.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 001241088 _____ (http://mediainfo.sourceforge.net) C:\Users\ADMINPC\MediaInfo.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000159744 _____ () C:\Users\ADMINPC\MedicDll.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000094208 _____ (Ericsson AB) C:\Users\ADMINPC\meflash.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000057344 _____ (Ericsson AB) C:\Users\ADMINPC\meflash_jni.dll 2008-04-14 10:26 - 2008-04-14 10:26 - 001028096 _____ (Microsoft Corporation) C:\Users\ADMINPC\mfc42.dll 2007-04-03 11:14 - 2007-04-03 11:14 - 000981760 _____ (Microsoft Corporation) C:\Users\ADMINPC\mfc42u.dll 2009-05-04 08:23 - 2009-05-04 08:23 - 000253952 _____ (TODO: ) C:\Users\ADMINPC\MID_HomeDL.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000159744 _____ () C:\Users\ADMINPC\Mirage.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000294912 _____ (TMI) C:\Users\ADMINPC\MMTCM3EncoderDLL.dll 2010-03-29 17:45 - 2010-03-29 17:45 - 000327680 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\MObexDll.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000184320 _____ () C:\Users\ADMINPC\Modem.dll 2009-05-20 08:36 - 2009-05-20 08:36 - 000539136 _____ (Microsoft Corporation) C:\Users\ADMINPC\msftedit.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000499712 _____ (Microsoft Corporation) C:\Users\ADMINPC\msvcp71.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000348160 _____ (Microsoft Corporation) C:\Users\ADMINPC\msvcr71.dll 2008-04-14 10:26 - 2008-04-14 10:26 - 000343040 _____ (Microsoft Corporation) C:\Users\ADMINPC\msvcrt.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000028672 _____ () C:\Users\ADMINPC\MTDES.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000692224 _____ (SECUi.COM) C:\Users\ADMINPC\NeoCertDll.dll 2010-03-30 11:57 - 2010-03-30 11:57 - 001220608 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NLANG_Scheduler.dll 2010-03-30 10:29 - 2010-03-30 10:29 - 002138112 _____ (Microsoft) C:\Users\ADMINPC\NPS.dat 2010-03-29 17:16 - 2010-03-29 17:16 - 000013057 _____ () C:\Users\ADMINPC\NPS.reg 2010-03-26 08:37 - 2010-03-26 08:37 - 000287232 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSACDMADownloader.dll 2008-07-08 13:20 - 2008-07-08 13:20 - 000569344 _____ (PeeringPortal) C:\Users\ADMINPC\npsadec.dll 2008-07-08 13:22 - 2008-07-08 13:22 - 000139264 _____ (PeeringPortal) C:\Users\ADMINPC\npsaef.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000288256 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSAndroidDownloader.dll 2008-08-01 13:23 - 2008-08-01 13:23 - 000471040 _____ (PeeringPortal) C:\Users\ADMINPC\npsappactl.dll 2010-03-29 17:35 - 2010-03-29 17:35 - 000077824 _____ () C:\Users\ADMINPC\NPSArbiter.dll 2008-07-08 13:29 - 2008-07-08 13:29 - 000139264 _____ (PeeringPortal) C:\Users\ADMINPC\npsasrc.dll 2008-07-08 13:23 - 2008-07-08 13:23 - 000192512 _____ (PeeringPortal) C:\Users\ADMINPC\npsawms.dll 2010-03-29 17:48 - 2010-03-29 17:48 - 000102400 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryInfo_AndroidCDMA.dll 2010-03-29 17:49 - 2010-03-29 17:49 - 000102400 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryInfo_AndroidGSM.dll 2010-03-29 17:45 - 2010-03-29 17:45 - 000094208 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryInfo_ATNT.dll 2010-03-29 17:49 - 2010-03-29 17:49 - 000053248 _____ (TODO: ) C:\Users\ADMINPC\NPSBinaryInfo_DU.dll 2010-03-29 17:49 - 2010-03-29 17:49 - 000098304 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryInfo_IFX.dll 2010-03-29 17:37 - 2010-03-29 17:37 - 000098304 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryInfo_Limo.dll 2010-03-29 17:40 - 2010-03-29 17:40 - 000102400 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryInfo_LimoGSM.dll 2010-03-29 17:48 - 2010-03-29 17:48 - 000098304 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryInfo_NLCDMA.dll 2010-03-29 17:49 - 2010-03-29 17:49 - 000098304 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSBinaryInfo_NLKR.dll 2010-03-29 17:40 - 2010-03-29 17:40 - 000098304 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSBinaryInfo_Qualcomm.dll 2010-03-29 17:46 - 2010-03-29 17:46 - 000098304 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryinfo_SecCDMA.dll 2010-03-29 17:49 - 2010-03-29 17:49 - 000094208 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBinaryInfo_Symbian.dll 2010-03-29 17:49 - 2010-03-29 17:49 - 000051712 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSBinaryInfo_WM.dll 2008-11-25 15:51 - 2008-11-25 15:51 - 000086016 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBSCKoreaUMS.dll 2008-11-25 15:52 - 2008-11-25 15:52 - 000016384 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSBVCKoreaUMS.dll 2010-03-29 17:34 - 2010-03-29 17:34 - 000155648 _____ (Mobileleader Co., Ltd.) C:\Users\ADMINPC\NPSCBT.dll 2010-03-30 16:28 - 2010-03-30 16:28 - 000565248 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSCommon5.dll 2010-03-30 16:28 - 2010-03-30 16:28 - 001495040 _____ (TODO: ) C:\Users\ADMINPC\NPSComnCtrl.dll 2010-03-30 16:29 - 2010-03-30 16:29 - 000348160 _____ (TODO: ) C:\Users\ADMINPC\NPSConverter.dll 2010-03-30 16:29 - 2010-03-30 16:29 - 001830912 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSConvey.dll 2010-03-29 17:34 - 2010-03-29 17:34 - 000057344 _____ (Mobileleader Co., Ltd.) C:\Users\ADMINPC\NPSCore.dll 2010-03-30 16:29 - 2010-03-30 16:29 - 001060864 _____ (TODO: ) C:\Users\ADMINPC\NPSCustomCtrl.dll 2010-03-29 17:35 - 2010-03-29 17:35 - 000090112 _____ (TODO: ) C:\Users\ADMINPC\NPSDBProxy.dll 2010-03-29 18:03 - 2010-03-29 18:03 - 000462848 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAATCDMA.dll 2010-03-29 18:11 - 2010-03-29 18:11 - 000884736 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAATOBEX.dll 2010-03-29 18:11 - 2010-03-29 18:11 - 000286720 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCACDMAVIA.dll 2010-03-29 17:55 - 2010-03-29 17:55 - 000634880 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCACHINA2HSP.dll 2010-03-29 17:57 - 2010-03-29 17:57 - 000802816 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCACHINAHSP.dll 2010-03-29 17:36 - 2010-03-29 17:36 - 000737280 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCADU.dll 2010-03-29 17:37 - 2010-03-29 17:37 - 000540672 _____ (Mobileleader Co., Ltd.) C:\Users\ADMINPC\NPSDCAGM.dll 2010-03-29 18:06 - 2010-03-29 18:06 - 000823296 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAGMOBEX.dll 2010-03-29 18:17 - 2010-03-29 18:17 - 000344064 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAHSP.dll 2010-02-08 10:46 - 2010-02-08 10:46 - 000507904 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAKOREAHSP.dll 2010-03-29 18:24 - 2010-03-29 18:24 - 000933888 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAMITS2OBEX.dll 2010-03-29 18:09 - 2010-03-29 18:09 - 000897024 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAMITSOBEX.dll 2010-03-29 18:15 - 2010-03-29 18:15 - 000991232 _____ (TODO: ) C:\Users\ADMINPC\NPSDCAOBEX.dll 2010-03-29 18:45 - 2010-03-29 18:45 - 000532480 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAPARAGONATGM.dll 2010-02-08 11:54 - 2010-02-08 11:54 - 000978944 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAPARAGONATOBEX.dll 2010-03-29 18:44 - 2010-03-29 18:44 - 000958464 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSDCAPARAGONOBEX.dll 2010-03-29 18:29 - 2010-03-29 18:29 - 000663552 _____ (Mobileleader Co., Ltd.) C:\Users\ADMINPC\NPSDCASW.dll 2010-03-29 18:01 - 2010-03-29 18:01 - 000421888 _____ (TODO: ) C:\Users\ADMINPC\NPSDCASYM.dll 2010-03-29 18:47 - 2010-03-29 18:47 - 000598016 _____ (TODO: ) C:\Users\ADMINPC\NPSDCAWM.dll 2010-03-29 17:35 - 2010-03-29 17:35 - 000061440 _____ (Mobileleader Co., Ltd.) C:\Users\ADMINPC\NPSDCM.dll 2010-03-29 17:49 - 2010-03-29 17:49 - 000765952 _____ (TODO: ) C:\Users\ADMINPC\NPSDeviceDRM3rd.dll 2010-03-30 16:30 - 2010-03-30 16:30 - 000786432 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSDeviceList.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000073728 _____ () C:\Users\ADMINPC\NPSEffectFilter.dll 2010-03-29 17:41 - 2010-03-29 17:41 - 000069632 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSEmpLoader.dll 2010-03-30 16:28 - 2010-03-30 16:28 - 000159744 _____ (TODO: ) C:\Users\ADMINPC\NPSFunction5.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 002652906 _____ () C:\Users\ADMINPC\NPSGuide.dat 2010-03-31 10:30 - 2010-03-31 10:30 - 000001474 _____ () C:\Users\ADMINPC\NPSGuide2.dat 2010-03-29 17:34 - 2010-03-29 17:34 - 000114688 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSHSPAgent.dll 2010-03-30 10:27 - 2010-03-30 10:27 - 003293184 _____ () C:\Users\ADMINPC\NPSLang.dll 2010-03-31 08:45 - 2010-03-31 08:45 - 000946176 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSLang_BackupAndRestore.dll 2010-03-29 17:40 - 2010-03-29 17:40 - 000618496 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSLang_DDay.dll 2010-03-30 19:13 - 2010-03-30 19:13 - 000720896 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSLang_EmailSync.dll 2010-03-30 19:21 - 2010-03-30 19:21 - 000352256 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSLang_InstApp.dll 2010-03-30 10:43 - 2010-03-30 10:43 - 000737280 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSLang_InternetConnector.dll 2010-03-29 17:46 - 2010-03-29 17:46 - 000516096 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSLang_Memo.dll 2010-03-29 18:12 - 2010-03-29 18:12 - 000712704 _____ () C:\Users\ADMINPC\NPSLang_MessageManager.dll 2010-03-29 18:11 - 2010-03-29 18:11 - 001441792 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSLang_MyDiary.dll 2010-03-30 10:28 - 2010-03-30 10:28 - 000782336 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSLang_MyExplorer.dll 2010-02-08 10:18 - 2010-02-08 10:18 - 001732608 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSLang_Phonebook.dll 2010-03-30 10:38 - 2010-03-30 10:38 - 002412544 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSLang_Phonebook2.dll 2010-03-29 18:12 - 2010-03-29 18:12 - 000360448 _____ () C:\Users\ADMINPC\NPSLang_SMSSender.dll 2010-03-29 18:01 - 2010-03-29 18:01 - 000552960 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSLang_TimeTable.dll 2010-03-29 17:48 - 2010-03-29 17:48 - 000688128 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSLang_ToDo.dll 2010-03-29 18:02 - 2010-03-29 18:02 - 000344064 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSLang_VoiceMemo.dll 2010-03-26 08:38 - 2010-03-26 08:38 - 000285184 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSLinuxMitsDownloader.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000282112 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSLinuxMitsNpDownloader.dll 2010-03-30 16:29 - 2010-03-30 16:29 - 000249856 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSMMSPlay.dll 2010-03-29 17:34 - 2010-03-29 17:34 - 000065536 _____ (Mobileleader Co., Ltd.) C:\Users\ADMINPC\NPSModelDB.dll 2008-07-08 13:24 - 2008-07-08 13:24 - 000131072 _____ (PeeringPortal) C:\Users\ADMINPC\npsmpgs.dll 2008-12-30 00:41 - 2008-12-30 00:41 - 000094208 _____ (TODO: ) C:\Users\ADMINPC\NPSMusicManager.dll 2010-03-30 16:28 - 2010-03-30 16:28 - 000090112 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\NPSMyComputer.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000851968 _____ () C:\Users\ADMINPC\NPSNetworkProviderDB.dat 2010-03-26 08:40 - 2010-03-26 08:40 - 000324480 _____ (Mobileleader) C:\Users\ADMINPC\NPSRapiServer.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000335232 _____ (Mobileleader) C:\Users\ADMINPC\NPSRapiServer_f.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000329088 _____ (Mobileleader) C:\Users\ADMINPC\NPSRapiServer_k.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000337280 _____ (Mobileleader) C:\Users\ADMINPC\NPSRapiServer_k2.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000316288 _____ (Mobileleader) C:\Users\ADMINPC\NPSRapiServer_l.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000286592 _____ (Mobileleader) C:\Users\ADMINPC\NPSRapiServer_m.dll 2010-03-29 17:16 - 2010-03-29 17:16 - 001576960 _____ () C:\Users\ADMINPC\npssamsungmodeldb.dat 2010-03-26 08:37 - 2010-03-26 08:37 - 000065536 _____ (mobileleader) C:\Users\ADMINPC\NPSSubPicture.dll 2010-03-30 10:50 - 2010-03-30 10:50 - 000655360 _____ (Mobileleader Co., Ltd.) C:\Users\ADMINPC\NPSSync.dll 2010-03-30 16:28 - 2010-03-30 16:28 - 000041472 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSToWebBtn.dll 2008-07-08 16:23 - 2008-07-08 16:23 - 000139264 _____ (PeeringPortal) C:\Users\ADMINPC\npsvae.dll 2008-08-01 11:25 - 2008-08-01 11:25 - 000839680 _____ (PeeringPortal) C:\Users\ADMINPC\npsvctl.dll 2008-07-08 17:15 - 2008-07-08 17:15 - 000143360 _____ (PeeringPortal) C:\Users\ADMINPC\npsvsrc.dll 2008-07-08 16:19 - 2008-07-08 16:19 - 000167936 _____ (PeeringPortal) C:\Users\ADMINPC\npsvve.dll 2008-07-08 16:26 - 2008-07-08 16:26 - 000200704 _____ (PeeringPortal) C:\Users\ADMINPC\npsvwms.dll 2010-03-29 17:39 - 2010-03-29 17:39 - 000245760 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\NPSWMBinaryEngine.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000667648 _____ () C:\Users\ADMINPC\NPS_MEDIA_USER_DB.dat 2007-04-10 09:40 - 2007-04-10 09:40 - 000074240 _____ (Netscape Communications Corporation) C:\Users\ADMINPC\nsldap32v11.dll 2010-03-29 17:47 - 2010-03-29 17:47 - 000027136 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\ObexInterface.dll 2009-05-04 08:23 - 2009-05-04 08:23 - 000274432 _____ (TODO: ) C:\Users\ADMINPC\Octans_HomeDL.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000090112 _____ () C:\Users\ADMINPC\PC_Download_DLL_AP.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000094208 _____ () C:\Users\ADMINPC\proghelp.dll 2008-08-03 23:48 - 2008-08-03 23:48 - 000105352 _____ (Microsoft Corporation) C:\Users\ADMINPC\rapi.dll 2009-08-03 08:22 - 2009-08-03 08:22 - 000380928 _____ (STE&Samsung) C:\Users\ADMINPC\realDLL.dll 2009-08-31 08:23 - 2009-08-31 08:23 - 000536576 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\RecurrenceUtil.dll 2009-05-20 08:36 - 2009-05-20 08:36 - 000433664 _____ (Microsoft Corporation) C:\Users\ADMINPC\riched20.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000360448 _____ () C:\Users\ADMINPC\SamsungMediaServer.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000384512 _____ (Mobiletop.co.kr) C:\Users\ADMINPC\SAPEncoder.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000712704 _____ () C:\Users\ADMINPC\SHOWDRM_UCC.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 002367488 _____ (Yamaha Corporation) C:\Users\ADMINPC\SMAFMMS5EMU.dll 2010-03-29 17:37 - 2010-03-29 17:37 - 000122880 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\Smllib.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000383488 _____ (Mobiletop.CO,.LTD) C:\Users\ADMINPC\SMPDecoder.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000434176 _____ (Mobiletop.co.kr) C:\Users\ADMINPC\SMPEncoder.dll 2010-02-08 09:27 - 2010-02-08 09:27 - 000904332 _____ () C:\Users\ADMINPC\splash.dat 2010-03-26 08:38 - 2010-03-26 08:38 - 002326528 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\SS_DL.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000624640 _____ (Rocket Division Software) C:\Users\ADMINPC\StarBurn.dll 2009-11-23 08:40 - 2009-11-23 08:40 - 000380928 _____ (STE&Samsung) C:\Users\ADMINPC\STE2GDll.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000131072 _____ () C:\Users\ADMINPC\Sub3.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000208896 _____ () C:\Users\ADMINPC\Symbian_Downloader_DLL.dll 2010-03-29 17:38 - 2010-03-29 17:38 - 000094208 _____ (Samsung Electronics Co., Ltd.) C:\Users\ADMINPC\SyncEngine.dll 2010-03-26 08:40 - 2010-03-26 08:40 - 000038400 _____ () C:\Users\ADMINPC\TCLAppointment.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000040960 _____ (Thin Multimedia Inc.) C:\Users\ADMINPC\TCM2Decoder12.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000040960 _____ (Thin Multimedia Inc.) C:\Users\ADMINPC\TCM2Decoder16.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000036864 _____ (Thin Multimedia Inc.) C:\Users\ADMINPC\TCM2Decoder2.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000036864 _____ (Thin Multimedia Inc.) C:\Users\ADMINPC\TCM2Decoder24.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000040960 _____ (Thin Multimedia Inc.) C:\Users\ADMINPC\TCM2Decoder8.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000098304 _____ () C:\Users\ADMINPC\TCM2Encoder.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000229376 _____ (Thin Multimedia Inc.) C:\Users\ADMINPC\TCMSEncoder.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000094208 _____ (Ericsson AB) C:\Users\ADMINPC\tmcommon_cxc4010103.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000184320 _____ (Ericsson AB) C:\Users\ADMINPC\tmload_cxc4010130.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000147456 _____ (Ericsson AB) C:\Users\ADMINPC\tmtsconfig_cxc4010209.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000036864 _____ () C:\Users\ADMINPC\tn30CSTK.dll 2010-03-16 14:36 - 2010-03-16 14:36 - 007176192 _____ (Codejock Software) C:\Users\ADMINPC\ToolkitPro1331vc80U.dll 2010-03-29 17:35 - 2010-03-29 17:35 - 000114688 _____ () C:\Users\ADMINPC\Type.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000086016 _____ (Ericsson AB) C:\Users\ADMINPC\uddutCommon_CXC4010135.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000192512 _____ (Ericsson AB) C:\Users\ADMINPC\uddutload_cxc4010108.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000049152 _____ (Flextronics International Sweden AB) C:\Users\ADMINPC\udfamsterdamusbrouter.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000139264 _____ (Ericsson AB) C:\Users\ADMINPC\udsonicfixture_cxc4010132.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000057344 _____ (Ericsson Mobile Communications AB) C:\Users\ADMINPC\udTelephone.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000118784 _____ (Ericsson AB) C:\Users\ADMINPC\utmcommon_cxc4010104.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000176128 _____ (Ericsson AB) C:\Users\ADMINPC\utmLoad_CXC4010131.dll 2010-03-29 17:36 - 2010-03-29 17:36 - 000102400 _____ () C:\Users\ADMINPC\vObject.dll 2010-03-31 14:48 - 2010-03-31 14:48 - 000049496 _____ (TODO: <회사 이름>) C:\Users\ADMINPC\WBUSV.dll 2010-03-26 08:39 - 2010-03-26 08:39 - 000016384 _____ (Microsoft Corporation) C:\Users\ADMINPC\winusb.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000126976 _____ (Rocket Division Software) C:\Users\ADMINPC\WnASPI32.dll 2010-03-26 08:37 - 2010-03-26 08:37 - 000151552 _____ () C:\Users\ADMINPC\XSYNCClt.dll 2015-12-09 16:43 - 2015-12-09 16:44 - 006420480 _____ () C:\Program Files\GUTE35D.tmp 2015-02-13 20:49 - 2015-02-13 20:49 - 000003584 _____ () C:\Users\ADMINPC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-08-08 02:31 - 2013-10-10 19:57 - 000040459 _____ () C:\Users\ADMINPC\AppData\Local\Perfmon.PerfmonCfg 2013-10-30 20:59 - 2013-10-30 20:59 - 000007609 _____ () C:\Users\ADMINPC\AppData\Local\Resmon.ResmonCfg 2016-05-31 09:46 - 2016-05-31 09:46 - 000000000 _____ () C:\Users\ADMINPC\AppData\Local\{0C4E023D-48ED-48A0-8977-8F1BC524147C} 2016-09-01 05:15 - 2016-09-01 05:15 - 000000000 _____ () C:\Users\ADMINPC\AppData\Local\{B845016A-8F5D-4B18-9C8D-4725A91703EB} 2015-05-20 10:15 - 2015-05-20 10:15 - 000000000 _____ () C:\Users\ADMINPC\AppData\Local\{DA4A5843-972D-4203-8EC0-330A16FA3B12} ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\dnsapi.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed ==================== BCD ================================ „ЁбЇҐвзҐа § Јаг§ЄЁ Windows -------------------- Ё¤Ґ­вЁдЁЄ в®а {bootmgr} device partition=\Device\HarddiskVolume1 description Windows Boot Manager locale ru-RU inherit {globalsettings} default {current} resumeobject {47b5ddb4-d196-11e0-8977-b2cbbbee963d} displayorder {current} toolsdisplayorder {memdiag} timeout 30 ‡ Јаг§Є  Windows ------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddaa-d196-11e0-8977-b2cbbbee963d} device ramdisk=[C:]\Recovery\47b5ddaa-d196-11e0-8977-b2cbbbee963d\Winre.wim,{47b5ddab-d196-11e0-8977-b2cbbbee963d} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\47b5ddaa-d196-11e0-8977-b2cbbbee963d\Winre.wim,{47b5ddab-d196-11e0-8977-b2cbbbee963d} systemroot \windows nx OptIn winpe Yes ‡ Јаг§Є  Windows ------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddae-d196-11e0-8977-b2cbbbee963d} device ramdisk=[C:]\Recovery\47b5ddae-d196-11e0-8977-b2cbbbee963d\Winre.wim,{47b5ddaf-d196-11e0-8977-b2cbbbee963d} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\47b5ddae-d196-11e0-8977-b2cbbbee963d\Winre.wim,{47b5ddaf-d196-11e0-8977-b2cbbbee963d} systemroot \windows nx OptIn winpe Yes ‡ Јаг§Є  Windows ------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddb2-d196-11e0-8977-b2cbbbee963d} device ramdisk=[C:]\Recovery\47b5ddb2-d196-11e0-8977-b2cbbbee963d\Winre.wim,{47b5ddb3-d196-11e0-8977-b2cbbbee963d} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\47b5ddb2-d196-11e0-8977-b2cbbbee963d\Winre.wim,{47b5ddb3-d196-11e0-8977-b2cbbbee963d} systemroot \windows nx OptIn winpe Yes ‡ Јаг§Є  Windows ------------------- Ё¤Ґ­вЁдЁЄ в®а {current} device partition=C: path \Windows\system32\winload.exe description Windows 7 locale ru-RU inherit {bootloadersettings} recoverysequence {47b5ddb6-d196-11e0-8977-b2cbbbee963d} recoveryenabled Yes osdevice partition=C: systemroot \Windows resumeobject {47b5ddb4-d196-11e0-8977-b2cbbbee963d} nx OptIn ‡ Јаг§Є  Windows ------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddb6-d196-11e0-8977-b2cbbbee963d} device ramdisk=[C:]\Recovery\47b5ddb6-d196-11e0-8977-b2cbbbee963d\Winre.wim,{47b5ddb7-d196-11e0-8977-b2cbbbee963d} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\47b5ddb6-d196-11e0-8977-b2cbbbee963d\Winre.wim,{47b5ddb7-d196-11e0-8977-b2cbbbee963d} systemroot \windows nx OptIn winpe Yes ‚л室 Ё§ ०Ё¬  ЈЁЎҐа­ жЁЁ -------------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddb4-d196-11e0-8977-b2cbbbee963d} device partition=C: path \Windows\system32\winresume.exe description Windows Resume Application locale ru-RU inherit {resumeloadersettings} filedevice partition=C: filepath \hiberfil.sys pae Yes debugoptionenabled No Џа®ўҐаЄ  Ї ¬пвЁ Windows --------------------- Ё¤Ґ­вЁдЁЄ в®а {memdiag} device partition=\Device\HarddiskVolume1 path \boot\memtest.exe description „Ё Ј­®бвЁЄ  Ї ¬пвЁ locale ru-RU inherit {globalsettings} badmemoryaccess Yes Џ а ¬Ґвал EMS ------------- Ё¤Ґ­вЁдЁЄ в®а {emssettings} bootems Yes Џ а ¬Ґвал ®в« ¤зЁЄ  ------------------- Ё¤Ґ­вЁдЁЄ в®а {dbgsettings} debugtype Serial debugport 1 baudrate 115200 „ҐдҐЄвл Ћ‡“ ----------- Ё¤Ґ­вЁдЁЄ в®а {badmemory} ѓ«®Ў «м­лҐ Ї а ¬Ґвал -------------------- Ё¤Ґ­вЁдЁЄ в®а {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Џ а ¬Ґвал § Јаг§зЁЄ  -------------------- Ё¤Ґ­вЁдЁЄ в®а {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Џ а ¬Ґвал ЈЁЇҐаўЁ§®а  ------------------- Ё¤Ґ­вЁдЁЄ в®а {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Џ а ¬Ґвал § Јаг§зЁЄ  ў®ббв ­®ў«Ґ­Ёп ----------------------------------- Ё¤Ґ­вЁдЁЄ в®а {resumeloadersettings} inherit {globalsettings} Џ а ¬Ґвал гбва®©бвў ------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddab-d196-11e0-8977-b2cbbbee963d} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\47b5ddaa-d196-11e0-8977-b2cbbbee963d\boot.sdi Џ а ¬Ґвал гбва®©бвў ------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddaf-d196-11e0-8977-b2cbbbee963d} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\47b5ddae-d196-11e0-8977-b2cbbbee963d\boot.sdi Џ а ¬Ґвал гбва®©бвў ------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddb3-d196-11e0-8977-b2cbbbee963d} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\47b5ddb2-d196-11e0-8977-b2cbbbee963d\boot.sdi Џ а ¬Ґвал гбва®©бвў ------------------- Ё¤Ґ­вЁдЁЄ в®а {47b5ddb7-d196-11e0-8977-b2cbbbee963d} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\47b5ddb6-d196-11e0-8977-b2cbbbee963d\boot.sdi LastRegBack: 2018-02-07 00:49 ==================== End of FRST.txt ============================