Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosím o kontrolu logu - pomalý počítač

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
viva2212
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 17 pro 2011 15:40

prosím o kontrolu logu - pomalý počítač

#1 Příspěvek od viva2212 »

Zdravím,

prosím o kontrolu logu, počítač je spomalený, mrzne a objavil sa mi na ploche program OptimizerPro. pravdepodobne to bude vírus :?: Malwarebites odstránil nejakú "havěť" ale
ešte to nestačí.

Ďakujem :)

Viva

Logfile of random's system information tool 1.09 (written by random/random)
Run by ViVa at 2012-04-22 16:01:58
Microsoft Windows 7 Ultimate
System drive C: has 81 GB (17%) free of 477 GB
Total RAM: 1791 MB (28% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:02:08, on 22. 4. 2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\Optimizer Pro\OptProSmartScan.exe
C:\Users\ViVa\AppData\Local\Akamai\netsession_win.exe
C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe
C:\Program Files (x86)\lg_fwupdate\fwupdate.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\MagicDisc\MagicDisc.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Users\ViVa\AppData\Local\Akamai\netsession_win.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files (x86)\Common Files\Nokia\NoA\nokiaaserver.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\ViVa.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.runescape.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {687578b9-7132-4a7a-80e4-30ee31099e03} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Windows\WebIE.dll
O2 - BHO: Pomocník pri prihlasovaní v sieti Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: RewardsArcadeSuite - {B6EF6C45-5E8D-4c3b-B580-A5073261A381} - C:\Program Files (x86)\RewardsArcadeSuite\RewardsArcadeSuite.dll
O2 - BHO: QUICKfind BHO Object - {C08DF07A-3E49-4E25-9AB0-D3882835F153} - C:\PROGRA~2\IDM\QUICKF~1\PlugIns\IEHelp.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Windows\WebIE.dll
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [RemoteControl8] "C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe"
O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe"
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files (x86)\lg_fwupdate\fwupdate.exe" blrun
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [NSU_agent] "C:\Program Files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe"
O4 - HKLM\..\Run: [Protection0] C:\WINDOWS\protections.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Windows Keyboard] C:\Users\ViVa\AppData\Local\Temp\/Windows Keyboard.exe
O4 - HKCU\..\Run: [Windows Mouse] C:\Users\ViVa\AppData\Local\Temp\/Windows Mouse.exe
O4 - HKCU\..\Run: [Optimizer Pro] C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\ViVa\AppData\Local\Akamai\netsession_win.exe"
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] "C:\Program Files (x86)\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] "C:\Program Files (x86)\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'Default user')
O4 - Startup: MagicDisc.lnk = C:\Program Files (x86)\MagicDisc\MagicDisc.exe
O4 - Global Startup: SDL Trados 2007 Speed Launcher.lnk = C:\Program Files (x86)\SDL International\SDL Trados Synergy 2007\Synergy.exe
O4 - Global Startup: TMMonitor.lnk = C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe
O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Program Files (x86)\MP3 Player Utilities 4.00\AMVConverter\grab.html
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files (x86)\MP3 Player Utilities 4.00\MediaManager\grab.html
O9 - Extra button: Pridať do blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Pridať do blogu v programe Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Windows\WebIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Windows\WebIE.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6\ICQ.exe
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\PROGRA~2\Bandoo\BndHook.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: Bandoo Coordinator - Unknown owner - C:\PROGRA~2\Bandoo\Bandoo.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SDL FLEXlm License Server - Macrovision Corporation - C:\Program Files (x86)\SDL International\License Server\Lmgrd.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15622 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\System32\svchost.exe -k HPZ12
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm112.dll,CMICtrlWnd
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" -tray
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files (x86)\Optimizer Pro\OptProSmartScan.exe"
"C:\Users\ViVa\AppData\Local\Akamai\netsession_win.exe"
"C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe"
"C:\Program Files (x86)\lg_fwupdate\fwupdate.exe" blrun
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe"
"C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe"
"C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
"C:\Program Files (x86)\MagicDisc\MagicDisc.exe"
ArcCon.ac 65948 0
"C:\Program Files (x86)\Winamp\winampa.exe"
"C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe" /watchfiles startup
"C:/Users/ViVa/AppData/Local/Akamai/netsession_win.exe" --client
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_000007d0
\??\C:\Windows\system32\conhost.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE"
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
{6D68776B-383F-4CA9-88AD-E2B3C569FF9F}
{AEF4A7D0-C5EF-437F-945D-463F446D372A}
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Common Files\Nokia\NoA\nokiaaserver.exe"
{94FE46FE-896D-4A77-8941-A09C5C68C34B}
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3788.110892e0.959306352 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 3788 "\\.\pipe\gecko-crash-server-pipe.3788" plugin
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Nokia\Nokia Software Updater\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default

prefs.js - "browser.startup.homepage" - "http://www.google.sk/"
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... ource=2&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.228 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.228 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_228.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
exeImagine.IMD
npdeployJava1.dll
npImagine.dll
nppdf32.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
babylon.xml
dunaj-sk.xml
eBay.xml
google.xml
Search_Results.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml

C:\Users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default\extensions\
4f874ac72b520@4f874ac72b522.info
4f9059d0262f0@4f9059d0262f2.info
engine@conduit.com
ffxtlbr@babylon.com
{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}
{687578b9-7132-4a7a-80e4-30ee31099e03}
{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}

C:\Users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default\searchplugins\
conduit.xml
Search_Results.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 132456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\Windows\WebIE.dll [2010-03-28 491520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v sieti Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B6EF6C45-5E8D-4c3b-B580-A5073261A381}]
RewardsArcadeSuite - C:\Program Files (x86)\RewardsArcadeSuite\RewardsArcadeSuite.dll [2011-11-02 523264]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C08DF07A-3E49-4E25-9AB0-D3882835F153}]
QUICKfind BHO Object - C:\PROGRA~2\IDM\QUICKF~1\PlugIns\IEHelp.dll [2003-06-30 337920]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Windows\WebIE.dll [2010-03-28 491520]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm112Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"driver.exe"=C:\WINDOWS\driver.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-08-20 2363392]
"NokiaOviSuite2"=C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2011-01-31 703360]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2011-12-16 1508408]
"DAEMON Tools Pro Agent"=C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2011-03-17 842048]
"Windows Keyboard"=C:\Users\ViVa\AppData\Local\Temp\/Windows Keyboard.exe []
"Windows Mouse"=C:\Users\ViVa\AppData\Local\Temp\/Windows Mouse.exe []
"Optimizer Pro"=C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [2012-01-02 81912]
"Akamai NetSession Interface"=C:\Users\ViVa\AppData\Local\Akamai\netsession_win.exe [2012-03-13 3331872]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATICustomerCare"=C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe [2009-06-14 307200]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"CLMLServer"=C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-06-03 103720]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"RemoteControl8"=C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe [2009-04-16 91432]
"PDVD8LanguageShortcut"=C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe [2009-04-16 50472]
"UpdatePPShortCut"=C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-02-17 218408]
"LGODDFU"=C:\Program Files (x86)\lg_fwupdate\fwupdate.exe [2010-03-05 557056]
"UpdatePSTShortCut"=C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [2009-09-29 210216]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"EEventManager"=C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe [2008-05-07 591696]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2010-09-08 421888]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2010-11-30 74752]
"NokiaMServer"=C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2011-10-11 258512]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]
"NSU_agent"=C:\Program Files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe [2012-02-28 190768]
"Protection0"=C:\WINDOWS\protections.exe []
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-06-27 336384]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SDL Trados 2007 Speed Launcher.lnk - C:\Program Files (x86)\SDL International\SDL Trados Synergy 2007\Synergy.exe
TMMonitor.lnk - C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe

C:\Users\ViVa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MagicDisc.lnk - C:\Program Files (x86)\MagicDisc\MagicDisc.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2009-07-14 290304]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe"="C:\Windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe:*:Enabled:Windows Messanger"
"C:\Users\ViVa\AppData\Local\Temp\8QGWJLO1XF.exe"="C:\Users\ViVa\AppData\Local\Temp\8QGWJLO1XF.exe:*:Enabled:Windows Messanger"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux4"=wdmaud.drv
"wave7"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux5"=wdmaud.drv
"VIDC.XFR1"=xfcodec64.dll
"wave8"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux6"=wdmaud.drv
"wave9"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux7"=wdmaud.drv
"midi9"=wdmaud.drv
"aux8"=wdmaud.drv
"aux9"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2012-04-21 14:49:46 ----D---- C:\Users\ViVa\AppData\Roaming\Optimizer Pro
2012-04-21 14:47:24 ----D---- C:\AeriaGames
2012-04-21 14:47:18 ----A---- C:\Program Files (x86)\wolfteam_us_downloader.exe
2012-04-21 14:42:34 ----D---- C:\Program Files (x86)\Optimizer Pro
2012-04-21 14:42:16 ----D---- C:\ProgramData\ADDICT-THING
2012-04-17 15:45:53 ----D---- C:\Users\ViVa\AppData\Roaming\TeamViewer
2012-04-16 15:23:33 ----A---- C:\CS16 GS pre Marz(us)a.exe
2012-04-16 15:05:00 ----D---- C:\Program Files (x86)\VIVA USB
2012-04-14 23:49:44 ----D---- C:\ProgramData\ATI
2012-04-14 23:49:42 ----D---- C:\Program Files (x86)\AMD APP
2012-04-14 23:48:16 ----D---- C:\ProgramData\AMD
2012-04-14 23:48:12 ----A---- C:\Windows\system32\drivers\amdiox64.sys
2012-04-14 23:48:07 ----D---- C:\Program Files (x86)\ATI Technologies
2012-04-14 23:47:25 ----D---- C:\Program Files\Common Files\ATI Technologies
2012-04-14 23:42:21 ----D---- C:\AMD
2012-04-14 19:29:17 ----D---- C:\ProgramData\Bcool
2012-04-14 19:28:06 ----D---- C:\ProgramData\InstallMate
2012-04-14 19:24:00 ----D---- C:\C
2012-04-14 19:20:48 ----A---- C:\Program Files (x86)\steaminstall_full.exe
2012-04-14 13:11:54 ----D---- C:\ProgramData\media center programs
2012-04-14 13:11:51 ----D---- C:\Program Files (x86)\Funcom
2012-04-14 09:32:35 ----A---- C:\Program Files (x86)\SteamInstall_CS.exe
2012-04-06 21:08:37 ----A---- C:\commettostrifegirlweb.txt
2012-04-02 08:18:42 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-04-01 21:12:30 ----D---- C:\Users\ViVa\AppData\Roaming\Hamachi
2012-03-29 19:52:50 ----A---- C:\SPUSTIT.EXE
2012-03-29 19:48:36 ----D---- C:\Users\ViVa\AppData\Roaming\Canneverbe Limited
2012-03-29 19:47:34 ----A---- C:\Program Files (x86)\spustit.exe
2012-03-29 17:41:24 ----A---- C:\Windows\system32\drivers\hamachi.sys
2012-03-29 17:40:18 ----A---- C:\Hamachi-1.0.1.5.exe
2012-03-29 16:52:05 ----A---- C:\Program Files (x86)\Hamachi-full-cz.exe
2012-03-28 15:00:15 ----A---- C:\Program Files (x86)\CS16 GS pre Marz(us)a.exe
2012-03-28 14:58:02 ----A---- C:\Program Files (x86)\CS16 NS pre marz(us)a.exe
2012-03-23 19:48:12 ----D---- C:\ProgramData\iMesh
2012-03-23 19:48:12 ----D---- C:\Program Files (x86)\iMesh Applications
2012-03-23 19:47:17 ----HDC---- C:\ProgramData\{6DFE6B59-3F4E-45AF-A9D0-5EDC43DD23AF}
2012-03-23 19:46:48 ----A---- C:\iMeshV11.exe

======List of files/folders modified in the last 1 month======

2012-04-22 16:02:05 ----D---- C:\Windows\temp
2012-04-22 16:02:04 ----D---- C:\Program Files\trend micro
2012-04-22 15:58:43 ----D---- C:\Users\ViVa\AppData\Roaming\Skype
2012-04-22 15:54:52 ----A---- C:\Windows\lgfwup.ini
2012-04-22 15:54:45 ----D---- C:\Program Files (x86)\lg_fwupdate
2012-04-22 15:54:05 ----D---- C:\Windows
2012-04-22 15:51:25 ----RD---- C:\Program Files (x86)
2012-04-22 15:20:07 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-04-22 15:17:23 ----D---- C:\Windows\system32\drivers
2012-04-22 02:36:36 ----SHD---- C:\Windows\Installer
2012-04-22 02:36:35 ----D---- C:\Program Files (x86)\Opera
2012-04-22 02:35:29 ----D---- C:\Program Files (x86)\Sony Ericsson
2012-04-22 02:33:58 ----D---- C:\ProgramData
2012-04-22 02:33:56 ----D---- C:\Program Files (x86)\Ubisoft
2012-04-22 02:33:20 ----D---- C:\Windows\system32\Tasks
2012-04-22 02:32:52 ----SHD---- C:\System Volume Information
2012-04-22 02:31:38 ----D---- C:\Users\ViVa\AppData\Roaming\BitTorrent
2012-04-22 02:31:27 ----D---- C:\Program Files (x86)\Valkyrie Mt2
2012-04-22 02:31:17 ----RD---- C:\Program Files
2012-04-22 02:30:34 ----D---- C:\Program Files (x86)\Scorpions WinCheater
2012-04-22 02:30:16 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2012-04-22 02:27:28 ----D---- C:\Program Files (x86)\AOM - Titans
2012-04-22 02:11:08 ----D---- C:\Program Files (x86)\OmniHawk
2012-04-22 02:02:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-04-21 22:50:49 ----D---- C:\Windows\ModemLogs
2012-04-21 20:11:48 ----D---- C:\Windows\Prefetch
2012-04-21 19:36:35 ----A---- C:\Windows\MAILTRAN.INI
2012-04-21 19:31:59 ----D---- C:\Windows\System32
2012-04-21 19:31:59 ----D---- C:\Windows\inf
2012-04-21 19:31:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-04-21 19:24:07 ----RD---- C:\Miša
2012-04-21 15:18:54 ----D---- C:\Windows\system32\NDF
2012-04-21 10:10:48 ----A---- C:\Windows\WDICT32.INI
2012-04-21 04:30:51 ----D---- C:\Windows\system32\config
2012-04-15 09:35:08 ----D---- C:\Windows\SysWOW64
2012-04-15 00:17:24 ----D---- C:\Windows\LiveKernelReports
2012-04-14 23:49:30 ----D---- C:\Program Files (x86)\Common Files
2012-04-14 23:49:08 ----D---- C:\Program Files\ATI Technologies
2012-04-14 23:48:17 ----D---- C:\Windows\system32\DriverStore
2012-04-14 23:48:17 ----D---- C:\Windows\system32\catroot
2012-04-14 23:47:40 ----RSD---- C:\Windows\assembly
2012-04-14 23:47:25 ----D---- C:\Program Files\Common Files
2012-04-14 23:44:20 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-04-14 13:11:57 ----HD---- C:\Windows\msdownld.tmp
2012-04-14 13:11:55 ----D---- C:\Windows\SYSWOW64\directx
2012-04-11 14:34:51 ----D---- C:\Windows\system32\catroot2
2012-04-10 20:20:28 ----A---- C:\Windows\SYSWOW64\~.tmp
2012-04-02 08:18:44 ----D---- C:\Windows\Tasks
2012-03-29 19:48:22 ----D---- C:\Program Files (x86)\CDBurnerXP
2012-03-29 17:41:24 ----D---- C:\TEMP

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-02-26 834544]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2012-02-15 132320]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2011-10-11 27760]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-02-02 272448]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2011-10-11 97312]
R3 3xHybr64;SAA713x TV Card Service; C:\Windows\system32\DRIVERS\3xHybr64.sys [2007-07-06 1168384]
R3 Afc;PPdus ASPI Shell; C:\Windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-06-27 9883136]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-06-27 307712]
R3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
R3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2009-07-14 19968]
R3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2009-02-24 255552]
R3 PciPPorts;PCI ECP Parallel Port; C:\Windows\system32\DRIVERS\PciPPorts.sys [2009-07-23 96768]
R3 PciSPorts;High-Speed PCI Serial Port; C:\Windows\system32\DRIVERS\PciSPorts.sys [2008-12-19 122880]
R3 RTL2832U_IRHID;HID Infrared Remote Receiver; C:\Windows\system32\DRIVERS\RTL2832U_IRHID.sys [2009-07-13 42912]
R3 RTL2832UBDA;REALTEK 2832U BDA Driver; C:\Windows\system32\drivers\RTL2832UBDA.sys [2009-07-06 114080]
R3 RTL2832UUSB;REALTEK 2832U USB Driver; C:\Windows\System32\Drivers\RTL2832UUSB.sys [2009-07-06 38944]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-11-05 291328]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2010-10-30 34032]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2009-09-30 121872]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-06-27 9883136]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 61280]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2010-10-30 13352]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2010-10-30 27176]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2012-03-29 21832]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-01-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-01-09 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2012-01-09 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2012-01-09 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s0016bus;Sony Ericsson Device 0016 driver (WDM); C:\Windows\system32\DRIVERS\s0016bus.sys [2008-05-16 115240]
S3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s0016mdfl.sys [2008-05-16 19496]
S3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s0016mdm.sys [2008-05-16 158760]
S3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s0016mgmt.sys [2008-05-16 137256]
S3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS); C:\Windows\system32\DRIVERS\s0016nd5.sys [2008-05-16 34344]
S3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s0016obex.sys [2008-05-16 136744]
S3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM); C:\Windows\system32\DRIVERS\s0016unic.sys [2008-05-16 151592]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); C:\Windows\system32\DRIVERS\s116bus.sys [2007-04-03 108296]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s116mdfl.sys [2007-04-03 19720]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s116mdm.sys [2007-04-03 144648]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s116mgmt.sys [2007-04-03 126216]
S3 s116nd5;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS); C:\Windows\system32\DRIVERS\s116nd5.sys [2007-04-03 31496]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s116obex.sys [2007-04-03 123656]
S3 s116unic;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM); C:\Windows\system32\DRIVERS\s116unic.sys [2007-04-03 130824]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2009-09-28 5504]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-01-09 9216]
S3 USBADVAU;USB Advance Audio Interface; C:\Windows\system32\drivers\cm11264.sys [2009-09-25 1307648]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-01-09 9216]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-06-27 204288]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-06-27 365568]
R2 AntiVirService;Avira Realtime Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2011-10-11 110032]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-11 86224]
R2 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2011-10-11 463824]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2009-09-10 185632]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-04-15 271760]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 TeamViewer7;TeamViewer 7; C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2011-12-14 2984832]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-01-04 718888]
S2 Bandoo Coordinator;Bandoo Coordinator; C:\PROGRA~2\Bandoo\Bandoo.exe []
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SDL FLEXlm License Server;SDL FLEXlm License Server; C:\Program Files (x86)\SDL International\License Server\Lmgrd.exe [2008-07-01 1372160]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-02-15 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 253600]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-05-27 647680]
S3 fsssvc;Služba Bezpečnosť rodiny v službe Windows Live; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu - pomalý počítač

#2 Příspěvek od Rudy »

Také zdravím!
Poprosím o log ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware
OptimizerPro by měl být program pro optimalizaci webových stránek.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

viva2212
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 17 pro 2011 15:40

Re: prosím o kontrolu logu - pomalý počítač

#3 Příspěvek od viva2212 »

Rudy píše:Také zdravím!
Poprosím o log ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware
OptimizerPro by měl být program pro optimalizaci webových stránek.
ďakujem Rudy, Combofix log posielam v prílohe, je to dosť dlhé takže to musím rozdeliť na 2 časti :

ComboFix 12-04-22.01 - ViVa . 04. 2012 17:44:11.3.2 - x64
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1033.18.1791.810 [GMT 2:00]
Running from: c:\program files (x86)\Nokia\Nokia Software Updater\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\CFLog
C:\Install.exe
c:\windows\SysWow64\~.inf
.
.
((((((((((((((((((((((((( Files Created from 2012-03-22 to 2012-04-22 )))))))))))))))))))))))))))))))
.
.
2012-04-22 15:54 . 2012-04-22 15:54 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-04-22 15:54 . 2012-04-22 15:54 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-04-22 15:54 . 2012-04-22 15:54 -------- d-----w- c:\users\AppData\AppData\Local\temp
2012-04-22 15:31 . 2012-04-22 15:31 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{94A326E7-955D-406B-BDE1-7D630DBB04B4}\offreg.dll
2012-04-22 15:25 . 2012-04-22 15:25 -------- d-----w- c:\programdata\Nokia
2012-04-21 12:49 . 2012-04-21 12:49 -------- d-----w- c:\users\ViVa\AppData\Roaming\Optimizer Pro
2012-04-21 12:47 . 2012-04-21 12:51 -------- d-----w- c:\users\ViVa\AppData\Local\Akamai
2012-04-21 12:47 . 2012-04-21 12:47 -------- d-----w- C:\AeriaGames
2012-04-21 12:47 . 2012-04-21 12:47 468088 ----a-w- c:\program files (x86)\wolfteam_us_downloader.exe
2012-04-21 12:42 . 2012-04-21 12:42 -------- d-----w- c:\program files (x86)\Optimizer Pro
2012-04-21 12:42 . 2012-04-22 00:24 -------- d-----w- c:\programdata\ADDICT-THING
2012-04-21 01:38 . 2012-04-13 08:46 8917360 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{94A326E7-955D-406B-BDE1-7D630DBB04B4}\mpengine.dll
2012-04-17 13:45 . 2012-04-17 13:45 -------- d-----w- c:\users\ViVa\AppData\Roaming\TeamViewer
2012-04-16 13:05 . 2012-04-16 13:12 -------- d-----w- c:\program files (x86)\VIVA USB
2012-04-14 23:13 . 2012-04-14 23:13 -------- d-----w- c:\users\ViVa\AppData\Local\Chromium
2012-04-14 21:49 . 2012-04-14 21:49 -------- d-----w- c:\users\ViVa\AppData\Local\AMD
2012-04-14 21:49 . 2012-04-14 21:49 -------- d-----w- c:\programdata\ATI
2012-04-14 21:49 . 2012-04-14 21:49 -------- d-----w- c:\program files (x86)\AMD APP
2012-04-14 21:49 . 2012-04-14 21:49 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2012-04-14 21:48 . 2012-04-14 21:48 -------- d-----w- c:\programdata\AMD
2012-04-14 21:48 . 2010-02-18 07:18 46136 ----a-w- c:\windows\system32\drivers\amdiox64.sys
2012-04-14 21:48 . 2012-04-14 21:49 -------- d-----w- c:\program files (x86)\ATI Technologies
2012-04-14 21:47 . 2012-04-14 21:47 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-04-14 21:42 . 2012-04-14 21:42 -------- d-----w- C:\AMD
2012-04-14 17:29 . 2012-04-22 00:25 -------- d-----w- c:\programdata\Bcool
2012-04-14 17:28 . 2012-04-21 12:41 -------- d-----w- c:\programdata\InstallMate
2012-04-14 17:24 . 2012-04-14 17:24 -------- d-----w- C:\C
2012-04-14 17:20 . 2012-04-14 17:25 12763189 ----a-w- c:\program files (x86)\steaminstall_full.exe
2012-04-14 11:12 . 2012-04-14 11:12 -------- d-----w- c:\users\ViVa\AppData\Local\Funcom
2012-04-14 11:11 . 2012-04-14 11:11 -------- d-----w- c:\programdata\media center programs
2012-04-14 11:11 . 2012-04-14 11:11 -------- d-----w- c:\program files (x86)\Funcom
2012-04-14 07:32 . 2012-04-14 07:52 397857244 ----a-w- c:\program files (x86)\SteamInstall_CS.exe
2012-04-04 05:53 . 2012-04-04 05:53 182160 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\nppdf32.dll
2012-04-04 05:53 . 2012-04-04 05:53 182160 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\nppdf32.dll
2012-04-02 06:18 . 2012-04-02 06:18 418464 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-04-01 19:12 . 2012-04-07 01:57 -------- d-----w- c:\users\ViVa\AppData\Roaming\Hamachi
2012-03-29 17:52 . 2012-03-29 17:52 685056 ----a-w- C:\SPUSTIT.EXE
2012-03-29 17:48 . 2012-03-29 17:48 -------- d-----w- c:\users\ViVa\AppData\Roaming\Canneverbe Limited
2012-03-29 17:47 . 2012-03-29 17:52 685056 ----a-w- c:\program files (x86)\spustit.exe
2012-03-29 15:41 . 2012-03-29 15:41 21832 ----a-w- c:\windows\system32\drivers\hamachi.sys
2012-03-29 15:40 . 2012-03-29 15:40 918400 ----a-w- C:\Hamachi-1.0.1.5.exe
2012-03-29 14:52 . 2012-03-29 14:52 1010488 ----a-w- c:\program files (x86)\Hamachi-full-cz.exe
2012-03-28 13:00 . 2012-03-28 13:12 290662712 ----a-w- c:\program files (x86)\CS16 GS pre Marz(us)a.exe
2012-03-28 12:58 . 2012-03-28 12:58 21663328 ----a-w- c:\program files (x86)\CS16 NS pre marz(us)a.exe
2012-03-23 17:49 . 2012-03-23 18:23 -------- d-----w- c:\users\ViVa\AppData\Local\iMesh
2012-03-23 17:48 . 2012-03-23 17:48 -------- d-----w- c:\programdata\iMesh
2012-03-23 17:48 . 2012-03-23 17:48 -------- d-----w- c:\program files (x86)\iMesh Applications
2012-03-23 17:47 . 2012-03-23 17:49 -------- dc-h--w- c:\programdata\{6DFE6B59-3F4E-45AF-A9D0-5EDC43DD23AF}
2012-03-23 17:46 . 2012-03-23 17:46 2413528 ----a-w- C:\iMeshV11.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-21 22:59 . 2012-03-09 09:42 73728 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\NewShortcut47_74B9CE5DF1F4447F982DCA29A461B529.exe
2012-04-21 22:59 . 2012-03-09 09:42 73728 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\NewShortcut46_74B9CE5DF1F4447F982DCA29A461B529.exe
2012-04-21 22:59 . 2012-03-09 09:42 53248 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\ARPPRODUCTICON.exe
2012-04-21 22:59 . 2012-03-09 09:42 49152 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Uninstall_QA_OTI_H_FE5D756F71E147C4972AD6775344B40B.exe
2012-04-21 22:59 . 2012-03-09 09:42 49152 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\NewShortcut2_1C7B7089989A424FB39D41A32581C775.exe
2012-04-10 18:20 . 2012-01-02 09:04 95324 ----a-w- c:\windows\SysWow64\~.tmp
2012-04-04 13:56 . 2011-12-17 15:20 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-02 06:18 . 2011-07-02 06:01 70304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-03-23 12:15 . 2010-04-09 19:09 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2012-03-23 11:13 . 2012-03-23 11:13 458064 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2012-03-21 16:46 . 2012-03-21 16:45 17888302 ----a-w- c:\program files (x86)\Croc_3_part_1.exe
2012-03-13 20:54 . 2012-03-13 20:54 235520 ----a-w- c:\program files (x86)\Metin2-Yang-GM.exe
2012-03-13 13:29 . 2012-03-13 13:29 367918 ----a-w- C:\Brothersoftdownloader_for_Final_Fantasy_VII.exe
2012-03-11 15:14 . 2012-03-11 15:13 8389664 ----a-w- c:\program files\Driver_Genius.exe
2012-03-09 09:24 . 2012-03-09 09:19 50282056 ----a-w- c:\program files (x86)\NokiaSoftwareUpdaterSetup_SK.exe
2012-03-08 09:57 . 2012-03-08 09:47 27043000 ----a-w- c:\program files (x86)\PC_Companion_2.02.015_Web.exe
2012-03-04 05:57 . 2012-03-04 05:57 881664 ----a-w- c:\program files (x86)\LicensingServiceInstaller.msi
2012-02-27 15:22 . 2012-02-27 15:20 5561300 ----a-w- C:\370hook.zip
2012-02-25 18:54 . 2012-02-25 18:54 5566548 ----a-w- C:\CD-Hack_Knife_Aim.zip
2012-02-23 08:18 . 2009-11-24 11:45 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-02-17 18:12 . 2012-02-17 17:55 290661897 ----a-w- C:\counter-strike-1-6-non-stream-09-21-2011-10-29-1018.exe
2012-02-15 19:56 . 2011-10-15 12:41 132320 ----a-w- c:\windows\system32\drivers\avipbb.sys
2012-02-09 19:25 . 2012-02-09 19:25 1628672 ----a-w- c:\program files (x86)\artragesetup.msi
2012-02-07 16:33 . 2012-02-07 16:33 77910 ----a-w- C:\Fruit_Ninja.exe
2012-02-02 17:20 . 2012-02-02 17:20 272448 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-01-29 18:54 . 2010-03-06 19:39 2516 --sha-w- c:\programdata\KGyGaAvL.sys
2012-01-29 18:54 . 2012-01-29 18:54 88 --sh--r- c:\programdata\27C51ED492.sys
2012-01-16 17:34 . 2012-01-16 17:33 14122048 ----a-w- c:\program files (x86)\HyperCam 3.exe
.
.
((((((((((((((((((((((((((((( SnapShot@2011-12-17_18.46.16 )))))))))))))))))))))))))))))))))))))))))
.
+ 2012-01-03 10:56 . 2008-07-24 08:00 36352 c:\windows\SysWOW64\SX32W.DLL
+ 2012-01-03 10:56 . 2008-07-24 08:00 22528 c:\windows\SysWOW64\RHMMPLAY.DLL
+ 2011-06-27 14:23 . 2011-06-27 14:23 53760 c:\windows\SysWOW64\OVDecode.dll
+ 2011-06-27 14:23 . 2011-06-27 14:23 43520 c:\windows\SysWOW64\OpenCL.dll
+ 2009-01-22 02:12 . 2009-01-22 02:12 88904 c:\windows\SysWOW64\msxml4r.dll
+ 1998-05-01 09:37 . 2008-07-24 08:00 49152 c:\windows\SysWOW64\INETWH32.DLL
+ 2012-01-03 10:56 . 2008-07-24 08:00 92672 c:\windows\SysWOW64\haspvb32.dll
+ 2011-10-22 11:05 . 2011-10-22 11:05 65536 c:\windows\SysWOW64\frapsvid.dll
+ 2011-08-17 07:20 . 2012-02-29 13:13 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2011-08-17 07:20 . 2011-11-12 07:28 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2009-07-14 04:54 . 2011-12-17 18:19 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-04-22 15:26 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2011-12-17 18:19 49152 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-04-22 15:26 49152 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-04-22 15:26 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-12-17 18:19 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-06-27 19:01 . 2011-06-27 19:01 31744 c:\windows\SysWOW64\atiuxpag.dll
+ 2011-06-27 19:01 . 2011-06-27 19:01 29184 c:\windows\SysWOW64\atiu9pag.dll
+ 2011-06-27 19:00 . 2011-06-27 19:00 52736 c:\windows\SysWOW64\atimpc32.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 13312 c:\windows\SysWOW64\atiglpxx.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 32768 c:\windows\SysWOW64\atigktxx.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 46080 c:\windows\SysWOW64\aticalrt.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 44032 c:\windows\SysWOW64\aticalcl.dll
+ 2011-06-27 19:42 . 2011-06-27 19:42 43520 c:\windows\SysWOW64\ati2edxx.dll
- 2009-11-04 15:42 . 2009-11-04 15:42 43520 c:\windows\SysWOW64\ati2edxx.dll
+ 2011-06-27 19:00 . 2011-06-27 19:00 52736 c:\windows\SysWOW64\amdpcom32.dll
+ 2009-11-24 11:48 . 2012-04-22 13:57 73486 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-04-22 13:57 40556 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-11-24 11:36 . 2012-04-22 13:57 20244 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1822403914-3001825825-2752914720-1000_UserData.bin
+ 2010-03-18 07:36 . 2010-03-18 07:36 57168 c:\windows\system32\vcomp100.dll
+ 2011-06-27 14:23 . 2011-06-27 14:23 60416 c:\windows\system32\OVDecode64.dll
+ 2011-06-27 14:23 . 2011-06-27 14:23 51200 c:\windows\system32\OpenCL.dll
- 2011-03-08 13:25 . 2010-07-30 13:18 57856 c:\windows\system32\nmwcdclsX64.dll
+ 2011-03-08 13:25 . 2012-01-09 16:28 57856 c:\windows\system32\nmwcdclsX64.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 91472 c:\windows\system32\mfcm100u.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 91472 c:\windows\system32\mfcm100.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 60752 c:\windows\system32\mfc100rus.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 43344 c:\windows\system32\mfc100kor.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 43856 c:\windows\system32\mfc100jpn.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 62288 c:\windows\system32\mfc100ita.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 36176 c:\windows\system32\mfc100cht.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 36176 c:\windows\system32\mfc100chs.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 64336 c:\windows\system32\mfc100fra.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 63824 c:\windows\system32\mfc100esn.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 55120 c:\windows\system32\mfc100enu.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 64336 c:\windows\system32\mfc100deu.dll
+ 2012-02-09 13:28 . 2009-03-18 15:35 33856 c:\windows\system32\hamachi.sys
+ 2011-10-22 11:05 . 2011-10-22 11:05 71680 c:\windows\system32\frapsv64.dll
- 2011-03-08 13:26 . 2008-08-28 10:44 25600 c:\windows\system32\DRVSTORE\pccsmcfdx6_8A3BAB842294F8D9255C3CF2A3B1CECAEEB8EA7E\pccsmcfdx64.sys
+ 2012-03-09 09:50 . 2008-08-28 10:44 25600 c:\windows\system32\DRVSTORE\pccsmcfdx6_8A3BAB842294F8D9255C3CF2A3B1CECAEEB8EA7E\pccsmcfdx64.sys
- 2009-07-14 05:30 . 2011-12-13 22:07 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2009-07-14 05:30 . 2012-04-14 21:48 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2010-03-15 10:38 . 2010-03-15 10:38 34416 c:\windows\system32\DriverStore\FileRepository\s1039xndis.inf_amd64_neutral_596fac6a450984e0\amd64\s1039nd5.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 15984 c:\windows\system32\DriverStore\FileRepository\s1039unic.inf_amd64_neutral_973ae564ff63eda4\amd64\s1039whnt.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 14960 c:\windows\system32\DriverStore\FileRepository\s1039unic.inf_amd64_neutral_973ae564ff63eda4\amd64\s1039crnt.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 15472 c:\windows\system32\DriverStore\FileRepository\s1039sdm2.inf_amd64_neutral_d0d5003e8e19bd4c\amd64\s1039cmnt.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 15472 c:\windows\system32\DriverStore\FileRepository\s1039obx2.inf_amd64_neutral_a0895eb730199c14\amd64\s1039cmnt.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 19568 c:\windows\system32\DriverStore\FileRepository\s1039mdm2.inf_amd64_neutral_80ed30e8e2cd927c\amd64\s1039mdfl.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 15472 c:\windows\system32\DriverStore\FileRepository\s1039mdm2.inf_amd64_neutral_80ed30e8e2cd927c\amd64\s1039cmnt.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 15984 c:\windows\system32\DriverStore\FileRepository\s1039bus.inf_amd64_neutral_77abbd4ad95f8b5f\amd64\s1039whnt.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 57856 c:\windows\system32\DriverStore\FileRepository\nmwcdnsux64.inf_amd64_neutral_4259ea4c69c9f29d\nmwcdclsx64.dll
+ 2012-01-09 16:28 . 2012-01-09 16:28 12800 c:\windows\system32\DriverStore\FileRepository\nmwcdnsucx64.inf_amd64_neutral_daae934e8ec5ff07\nmwcdnsucx64.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 57856 c:\windows\system32\DriverStore\FileRepository\nmwcdnsucx64.inf_amd64_neutral_daae934e8ec5ff07\nmwcdclsx64.dll
+ 2012-03-29 15:41 . 2012-03-29 15:41 21832 c:\windows\system32\DriverStore\FileRepository\hamachi.inf_amd64_neutral_2df2e427e6b5e20c\hamachi.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 57856 c:\windows\system32\DriverStore\FileRepository\ccdcmbx64.inf_amd64_neutral_efbbad5cb9e97c7a\nmwcdclsx64.dll
+ 2012-01-09 16:28 . 2012-01-09 16:28 19968 c:\windows\system32\DriverStore\FileRepository\ccdcmbx64.inf_amd64_neutral_efbbad5cb9e97c7a\ccdcmbx64.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 57856 c:\windows\system32\DriverStore\FileRepository\ccdcmbox64.inf_amd64_neutral_c9e64608231643b2\nmwcdclsx64.dll
+ 2012-01-09 16:28 . 2012-01-09 16:28 27136 c:\windows\system32\DriverStore\FileRepository\ccdcmbox64.inf_amd64_neutral_c9e64608231643b2\ccdcmbox64.sys
+ 2011-06-27 19:10 . 2011-06-27 19:10 58880 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\coinst.dll
+ 2011-06-27 19:01 . 2011-06-27 19:01 31744 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiuxpag.dll
+ 2011-06-27 19:01 . 2011-06-27 19:01 40960 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiuxp64.dll
+ 2011-06-27 19:01 . 2011-06-27 19:01 29184 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiu9pag.dll
+ 2011-06-27 19:01 . 2011-06-27 19:01 38912 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiu9p64.dll
+ 2009-06-22 15:34 . 2009-06-22 15:34 51200 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\ATIODCLI.exe
+ 2011-06-27 19:42 . 2011-06-27 19:42 16384 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atimuixx.dll
+ 2011-06-27 19:00 . 2011-06-27 19:00 53760 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atimpc64.dll
+ 2011-06-27 19:00 . 2011-06-27 19:00 52736 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atimpc32.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 13312 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiglpxx.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 32768 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atigktxx.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 39936 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atig6txx.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 15360 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atig6pxx.dll
+ 2011-06-27 19:42 . 2011-06-27 19:42 59392 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiedu64.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 51200 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\aticalrt64.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 46080 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\aticalrt.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 44544 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\aticalcl64.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 44032 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\aticalcl.dll
+ 2011-06-27 19:00 . 2011-06-27 19:00 53248 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\ati2erec.dll
+ 2011-06-27 19:42 . 2011-06-27 19:42 43520 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\ati2edxx.dll
+ 2012-04-14 21:48 . 2010-02-18 07:18 46136 c:\windows\system32\DriverStore\FileRepository\amdio.inf_amd64_neutral_ed49fa1e44cc7356\amd64\amdiox64.sys
- 2011-03-08 13:26 . 2008-08-28 10:44 25600 c:\windows\system32\drivers\pccsmcfdx64.sys
+ 2012-03-09 09:50 . 2008-08-28 10:44 25600 c:\windows\system32\drivers\pccsmcfdx64.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 12800 c:\windows\system32\drivers\nmwcdnsucx64.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 19968 c:\windows\system32\drivers\ccdcmbx64.sys
- 2010-12-02 10:14 . 2010-12-02 10:14 19968 c:\windows\system32\drivers\ccdcmbx64.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 27136 c:\windows\system32\drivers\ccdcmbox64.sys
- 2010-12-02 10:14 . 2010-12-02 10:14 27136 c:\windows\system32\drivers\ccdcmbox64.sys
- 2009-11-04 14:37 . 2009-11-04 14:37 53248 c:\windows\system32\drivers\ati2erec.dll
+ 2011-06-27 19:00 . 2011-06-27 19:00 53248 c:\windows\system32\drivers\ati2erec.dll
+ 2009-11-24 11:31 . 2012-04-22 15:13 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-24 11:31 . 2011-12-17 08:37 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-24 11:31 . 2011-12-17 08:37 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-24 11:31 . 2012-04-22 15:13 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-04-22 15:13 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-12-17 08:37 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-06-27 19:10 . 2011-06-27 19:10 58880 c:\windows\system32\coinst.dll
+ 2011-06-27 19:01 . 2011-06-27 19:01 40960 c:\windows\system32\atiuxp64.dll
+ 2011-06-27 19:01 . 2011-06-27 19:01 38912 c:\windows\system32\atiu9p64.dll
- 2009-02-03 19:52 . 2009-02-03 19:52 51200 c:\windows\system32\ATIODCLI.exe
+ 2009-06-22 15:34 . 2009-06-22 15:34 51200 c:\windows\system32\ATIODCLI.exe
+ 2011-06-27 19:42 . 2011-06-27 19:42 16384 c:\windows\system32\atimuixx.dll
+ 2011-06-27 19:00 . 2011-06-27 19:00 53760 c:\windows\system32\atimpc64.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 13312 c:\windows\system32\atiglpxx.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 39936 c:\windows\system32\atig6txx.dll
+ 2011-06-27 19:02 . 2011-06-27 19:02 15360 c:\windows\system32\atig6pxx.dll
+ 2011-06-27 19:42 . 2011-06-27 19:42 59392 c:\windows\system32\atiedu64.dll
- 2009-11-04 15:42 . 2009-11-04 15:42 59392 c:\windows\system32\atiedu64.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 51200 c:\windows\system32\aticalrt64.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 44544 c:\windows\system32\aticalcl64.dll
+ 2011-06-27 19:00 . 2011-06-27 19:00 53760 c:\windows\system32\amdpcom64.dll
- 2009-11-24 11:35 . 2011-12-17 18:22 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-11-24 11:35 . 2012-04-22 13:56 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:46 . 2012-03-15 02:06 76384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
- 2009-11-24 11:35 . 2011-12-17 18:22 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-24 11:35 . 2012-04-22 13:56 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-24 11:35 . 2012-04-22 13:56 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-11-24 11:35 . 2011-12-17 18:22 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-11-24 11:36 . 2011-12-17 18:22 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-11-24 11:36 . 2012-04-22 13:56 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-11-24 11:36 . 2012-04-22 13:56 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-11-24 11:36 . 2011-12-17 18:22 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2005-09-23 06:01 . 2005-09-23 06:01 97472 c:\windows\Microsoft.NET\Framework\v2.0.50727\gacutil.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 10134 c:\windows\Installer\{E8627DF4-F0B2-E7C1-0E66-2779E4F0AAC8}\ARPPRODUCTICON.exe
+ 2012-04-14 21:44 . 2012-04-14 21:44 77542 c:\windows\Installer\{E6560A56-6135-872B-DE43-C0D1FFBE5D35}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-04-14 21:44 . 2012-04-14 21:44 77542 c:\windows\Installer\{E6560A56-6135-872B-DE43-C0D1FFBE5D35}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-04-14 21:44 . 2012-04-14 21:44 77542 c:\windows\Installer\{E6560A56-6135-872B-DE43-C0D1FFBE5D35}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-04-14 21:44 . 2012-04-14 21:44 77542 c:\windows\Installer\{E6560A56-6135-872B-DE43-C0D1FFBE5D35}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-04-14 21:44 . 2012-04-14 21:44 77542 c:\windows\Installer\{E6560A56-6135-872B-DE43-C0D1FFBE5D35}\ARPPRODUCTICON.exe
+ 2012-03-09 09:50 . 2012-03-09 09:50 10134 c:\windows\Installer\{A2AA4204-C05A-4013-888A-AD153139297F}\ARPPRODUCTICON.exe
+ 2012-04-22 15:25 . 2012-04-22 15:25 54489 c:\windows\Installer\{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}\ARPPRODUCTICON.exe
- 2010-06-04 08:52 . 2011-11-12 07:28 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2010-06-04 08:52 . 2012-03-20 08:36 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2012-01-03 10:54 . 2012-01-03 10:54 22486 c:\windows\Installer\{7E62742F-1EEF-4532-B7FF-2D58004BDEAE}\SynergyICON.exe
+ 2012-01-03 10:54 . 2012-01-03 10:54 25214 c:\windows\Installer\{7E62742F-1EEF-4532-B7FF-2D58004BDEAE}\FlashICON.exe
+ 2012-01-03 10:42 . 2012-01-03 10:42 26694 c:\windows\Installer\{69C76448-D4B8-4886-A848-61CD4EB4B2C7}\NewShortcut5_7A7079F73FC549F39B0BADCA800793E8.exe
+ 2012-01-03 10:42 . 2012-01-03 10:42 22486 c:\windows\Installer\{69C76448-D4B8-4886-A848-61CD4EB4B2C7}\NewShortcut10_DF379D0C8079441FB3BF518F30629C5C.exe
+ 2012-01-03 10:42 . 2012-01-03 10:42 22486 c:\windows\Installer\{69C76448-D4B8-4886-A848-61CD4EB4B2C7}\Key.SDLTradosGlue_DF379D0C8079441FB3BF518F30629C5C.exe
+ 2012-01-03 10:42 . 2012-01-03 10:42 14230 c:\windows\Installer\{69C76448-D4B8-4886-A848-61CD4EB4B2C7}\Key.LicenseManager_DF379D0C8079441FB3BF518F30629C5C.exe
+ 2012-01-03 10:42 . 2012-01-03 10:42 22486 c:\windows\Installer\{69C76448-D4B8-4886-A848-61CD4EB4B2C7}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 10134 c:\windows\Installer\{503F672D-6C84-448A-8F8F-4BC35AC83441}\ARPPRODUCTICON.exe
+ 2012-01-03 10:29 . 2012-01-03 10:29 40960 c:\windows\Installer\{465B20FE-0674-4399-AA03-98E1FDA47CA9}\FLEXlm.Licensing.Too_465B20FE06744399AA0398E1FDA47CA9.exe
+ 2012-01-26 10:33 . 2012-01-26 10:33 15086 c:\windows\Installer\{41313863-5170-4D7E-AD60-3CDF4DEBA81F}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 10134 c:\windows\Installer\{19A492A0-888F-44A0-9B21-D91700763F62}\ARPPRODUCTICON.exe
+ 2012-01-05 13:19 . 2012-01-05 13:19 12800 c:\windows\Installer\$PatchCache$\Managed\CBEC1D2927C7FCE4FB6C1C13FEF36E7A\3.3.89\tca_releaseversion.dll
+ 2011-06-06 10:55 . 2011-06-06 10:55 64952 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA71501B744AA0100000010\10.1.0\armsvc.exe
+ 2012-01-03 10:44 . 2012-01-03 10:44 24576 c:\windows\assembly\GAC_MSIL\WordSpellCheck2\8.3.0.863__4316ebe69d6f1d49\WordSpellCheck2.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 20480 c:\windows\assembly\GAC_MSIL\Trados.TranslationMemory.TPACoreInterfaces\1.0.0.0__4316ebe69d6f1d49\Trados.TranslationMemory.TPACoreInterfaces.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 28672 c:\windows\assembly\GAC_MSIL\Trados.TranslationMemory.TPACore\1.0.0.0__4316ebe69d6f1d49\Trados.TranslationMemory.TPACore.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 32768 c:\windows\assembly\GAC_MSIL\Trados.TranslationMemory.TPAConnectorETS\1.0.0.0__4316ebe69d6f1d49\Trados.TranslationMemory.TPAConnectorETS.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 20480 c:\windows\assembly\GAC_MSIL\Trados.TmAnywhere.Interface\6.5.0.0__4316ebe69d6f1d49\Trados.TmAnywhere.Interface.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 81920 c:\windows\assembly\GAC_MSIL\Trados.Interop.XConvert\8.1.0.0__4316ebe69d6f1d49\Trados.Interop.XConvert.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 65536 c:\windows\assembly\GAC_MSIL\Trados.Interop.TagEditor\5.10.0.0__4316ebe69d6f1d49\Trados.Interop.TagEditor.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 28672 c:\windows\assembly\GAC_MSIL\Trados.Interop.FilterFrameworkComApi\2.0.0.0__4316ebe69d6f1d49\Trados.Interop.FilterFrameworkComApi.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 40960 c:\windows\assembly\GAC_MSIL\Trados.Interop.AmTypes\2.0.0.0__4316ebe69d6f1d49\Trados.Interop.AmTypes.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 81920 c:\windows\assembly\GAC_MSIL\Trados.Filters.PlugIns.OfficeCore\8.0.0.822__4316ebe69d6f1d49\Trados.Filters.PlugIns.OfficeCore.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 86016 c:\windows\assembly\GAC_MSIL\SnippetMarkup\1.0.0.0__170474dc500d26f2\SnippetMarkup.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 20480 c:\windows\assembly\GAC_MSIL\SDLZipUtil\1.0.0.0__4316ebe69d6f1d49\SDLZipUtil.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 32768 c:\windows\assembly\GAC_MSIL\RegExFile\1.0.0.1__4316ebe69d6f1d49\RegExFile.dll
- 2011-10-10 13:11 . 2011-10-10 13:11 45056 c:\windows\assembly\GAC_MSIL\EncodingTools\1.0.0.0__4316ebe69d6f1d49\EncodingTools.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 45056 c:\windows\assembly\GAC_MSIL\EncodingTools\1.0.0.0__4316ebe69d6f1d49\EncodingTools.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 90112 c:\windows\assembly\GAC\Trados.Filters.PlugIns.OfficeCore\6.5.2.417__4316ebe69d6f1d49\Trados.Filters.PlugIns.OfficeCore.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2012-02-29 13:14 . 2012-02-29 13:14 9893 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Mozilla\Firefox\Profiles\d5q706rn.default\pluginreg.dat
+ 2011-03-17 17:51 . 2011-03-17 17:51 3929 c:\windows\SysWOW64\atipblag.dat
+ 2010-04-28 11:13 . 2012-04-22 13:53 9054 c:\windows\system32\wdi\ERCQueuedResolutions.dat
+ 2012-01-09 16:28 . 2012-01-09 16:28 9216 c:\windows\system32\DriverStore\FileRepository\ccdcmbmx64.inf_amd64_neutral_497ff2d07ef7670b\usbser_lowerfltx64.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 9216 c:\windows\system32\DriverStore\FileRepository\ccdcmbjx64.inf_amd64_neutral_e5d7fc3a48f8ce17\usbser_lowerfltjx64.sys
+ 2011-03-17 17:51 . 2011-03-17 17:51 3929 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atipblag.dat
+ 2012-01-09 16:28 . 2012-01-09 16:28 9216 c:\windows\system32\drivers\usbser_lowerfltx64.sys
- 2010-12-02 10:14 . 2010-12-02 10:14 9216 c:\windows\system32\drivers\usbser_lowerfltx64.sys
- 2010-12-02 10:14 . 2010-12-02 10:14 9216 c:\windows\system32\drivers\usbser_lowerfltjx64.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 9216 c:\windows\system32\drivers\usbser_lowerfltjx64.sys
+ 2011-03-17 17:51 . 2011-03-17 17:51 3929 c:\windows\system32\atipblag.dat
- 2011-12-17 18:19 . 2011-12-17 18:19 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-04-22 13:54 . 2012-04-22 13:54 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-12-17 18:19 . 2011-12-17 18:19 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-04-22 13:54 . 2012-04-22 13:54 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{FE386918-377B-B94A-504B-064CFB00799D}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 9158 c:\windows\Installer\{F480BE66-C9F2-608F-A47A-E9F966080883}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{F15CED14-5BB9-65C7-122E-8A8499E2FF48}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{E6195FA5-1049-EC5F-3AD1-C570D38AC28E}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{DB766BE3-CD84-18EE-6665-B9F836A7FDB4}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{D7778B61-4D55-6290-7A37-993C91276039}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{C1ACD2C6-909C-EAD9-9AF6-C37318311BA7}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{BE6E693C-F64D-702A-FE70-3D840094F882}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{B501D576-E145-AD74-9C12-18DDB082E87D}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{B4C4A2CE-F4A4-D2E7-85A5-828932A59D20}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 9158 c:\windows\Installer\{A97FB5C1-1064-7046-8806-F19B51D7FC7D}\ARPPRODUCTICON.exe
+ 2012-03-09 09:48 . 2012-03-09 09:48 3262 c:\windows\Installer\{A57025CC-5F2E-4D01-B387-06DB10500D43}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{95CA013B-0AAE-E2F0-82CE-97160DDA9796}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{82A1CEEC-19D4-E243-82B6-A780DE1FC389}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{7CA1DEB6-FEDE-84E1-EAC3-F8C01D1DE1F2}\ARPPRODUCTICON.exe
+ 2012-04-14 21:47 . 2012-04-14 21:47 9158 c:\windows\Installer\{6A7F7056-14E1-D8E4-0B87-BC3F18EAC8AC}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 9158 c:\windows\Installer\{66EA0C27-9DE8-0390-9BD9-58F5F472F531}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{64F0B15A-A3BF-7943-2937-7DA4C2F0B2DC}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 4846 c:\windows\Installer\{5E2EA26B-D8B0-0EB0-D2F1-0EBB99C83B98}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{5CBBB59D-45C5-1FDF-B8B0-8176A2691C2F}\ARPPRODUCTICON.exe
+ 2012-04-14 21:44 . 2012-04-14 21:44 9158 c:\windows\Installer\{592853AA-D990-339D-98B7-0F784A49C100}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{5352A52A-751E-FD13-7BF4-FC97A38E077F}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 9158 c:\windows\Installer\{51989139-5EBD-F77E-FE25-588CBC39078A}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{5047CFAD-8181-5563-68E0-EE3558E251AB}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{48C19885-4773-5A0B-4373-7F33594B195D}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 9158 c:\windows\Installer\{3F829160-B531-B9F0-5BC7-918167BB5DCE}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{3D8AAFC2-4DD0-89BB-5738-8FFC250918FE}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 9158 c:\windows\Installer\{2C5FF744-EE63-D37C-09B6-8DD5DD192578}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{298EEE62-A419-E250-9D01-58DFA08E0D11}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 9158 c:\windows\Installer\{1B7A4B3C-9A00-123A-1BC8-AD5DB6517EE4}\ARPPRODUCTICON.exe
+ 2012-04-14 21:48 . 2012-04-14 21:48 9158 c:\windows\Installer\{19D41B9A-C474-D1A9-CAA1-499D362F2DD1}\ARPPRODUCTICON.exe
+ 2012-04-14 21:49 . 2012-04-14 21:49 9158 c:\windows\Installer\{09F75D2E-0393-CE6B-C01A-79008E91B6EF}\ARPPRODUCTICON.exe
+ 2012-01-03 10:44 . 2012-01-03 10:44 8704 c:\windows\assembly\GAC_MSIL\Trados.Interop.SpellChk\1.0.0.0__4316ebe69d6f1d49\Trados.Interop.SpellChk.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 5120 c:\windows\assembly\GAC_MSIL\Trados.Interop.SingletonResource\1.0.0.0__4316ebe69d6f1d49\Trados.Interop.SingletonResource.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 9216 c:\windows\assembly\GAC_MSIL\Trados.Interop.MessageCollection\1.0.0.0__4316ebe69d6f1d49\Trados.Interop.MessageCollection.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 5120 c:\windows\assembly\GAC_MSIL\Trados.Interop.ExcelFileSniffer\1.0.0.0__4316ebe69d6f1d49\Trados.Interop.ExcelFileSniffer.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 9216 c:\windows\assembly\GAC_MSIL\Sdl.Interop.ConfigurablePlugins\1.0.0.0__4316ebe69d6f1d49\Sdl.Interop.ConfigurablePlugins.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 9728 c:\windows\assembly\GAC\Trados.Interop.DsoFile\1.4.0.0__4316ebe69d6f1d49\Trados.Interop.DsoFile.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 4608 c:\windows\assembly\GAC\Sdl.Interop.s42gdf\1.0.0.0__4316ebe69d6f1d49\Sdl.Interop.s42gdf.dll
+ 2005-10-25 13:27 . 2005-10-25 13:27 327680 c:\windows\SysWOW64\QFClient2.dll
+ 2011-06-27 19:42 . 2011-06-27 19:42 278528 c:\windows\SysWOW64\Oemdspif.dll
+ 2002-01-05 02:37 . 2002-01-05 02:37 344064 c:\windows\SysWOW64\msvcr70.dll
+ 2012-04-02 06:18 . 2012-04-02 06:18 353440 c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_11_2_202_228_Plugin.exe
+ 2011-12-17 21:53 . 2011-12-17 21:53 247968 c:\windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe
+ 2011-12-17 21:53 . 2011-12-17 21:53 335520 c:\windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.dll
+ 2012-04-02 06:18 . 2012-04-02 06:18 253600 c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
+ 2011-12-31 12:43 . 2003-04-29 18:09 205312 c:\windows\SysWOW64\Illprs.dll
+ 2011-12-31 12:43 . 2002-08-01 15:44 160768 c:\windows\SysWOW64\ILLKRN.DLL
- 2009-11-04 15:43 . 2009-11-04 15:43 356352 c:\windows\SysWOW64\atipdlxx.dll
+ 2011-06-27 19:43 . 2011-06-27 19:43 356352 c:\windows\SysWOW64\atipdlxx.dll
+ 2011-06-27 19:49 . 2011-06-27 19:49 689152 c:\windows\SysWOW64\aticfx32.dll
+ 2011-06-27 19:03 . 2011-06-27 19:03 266240 c:\windows\SysWOW64\atiadlxy.dll
+ 2010-03-29 01:49 . 2012-04-21 10:24 746792 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
- 2009-07-14 02:36 . 2011-12-17 14:05 618714 c:\windows\system32\perfh009.dat
+ 2009-07-14 02:36 . 2012-04-21 17:31 618714 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2011-12-17 14:05 107034 c:\windows\system32\perfc009.dat
+ 2009-07-14 02:36 . 2012-04-21 17:31 107034 c:\windows\system32\perfc009.dat
+ 2011-11-01 09:07 . 2011-11-01 09:07 640000 c:\windows\system32\nmwcdcoclsx64.dll
+ 2011-02-18 22:52 . 2011-02-18 22:52 829264 c:\windows\system32\msvcr100.dll
+ 2011-02-19 20:51 . 2011-02-19 20:51 608080 c:\windows\system32\msvcp100.dll
+ 2012-04-02 06:18 . 2012-04-02 06:18 630432 c:\windows\system32\Macromed\Flash\FlashUtil64_11_2_202_228_Plugin.exe
+ 2009-07-14 05:30 . 2012-04-14 21:48 239616 c:\windows\system32\DriverStore\infstrng.dat
+ 2009-07-14 05:30 . 2012-04-14 21:48 143360 c:\windows\system32\DriverStore\infstor.dat
- 2009-07-14 05:30 . 2011-12-13 22:07 143360 c:\windows\system32\DriverStore\infstor.dat
+ 2009-09-02 19:34 . 2009-09-02 19:34 708168 c:\windows\system32\DriverStore\FileRepository\sa0102adb.inf_amd64_neutral_cdd95df2ee8e8592\amd64\WinUSBCoInstaller.dll
+ 2009-09-03 03:34 . 2009-09-03 03:34 708168 c:\windows\system32\DriverStore\FileRepository\sa0102adb.inf_amd64_neutral_bdd7b60949226e6d\amd64\WinUSBCoInstaller.dll
+ 2011-06-20 10:20 . 2011-06-20 10:20 708168 c:\windows\system32\DriverStore\FileRepository\sa0102adb.inf_amd64_neutral_ac427f334844232e\amd64\WinUSBCoInstaller.dll
+ 2009-09-03 03:34 . 2009-09-03 03:34 708168 c:\windows\system32\DriverStore\FileRepository\sa0101usb.inf_amd64_neutral_b989cfbd0db69b20\amd64\WinUSBCoInstaller.dll
+ 2010-03-15 10:38 . 2010-03-15 10:38 158320 c:\windows\system32\DriverStore\FileRepository\s1039unic.inf_amd64_neutral_973ae564ff63eda4\amd64\s1039unic.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 141424 c:\windows\system32\DriverStore\FileRepository\s1039sdm2.inf_amd64_neutral_d0d5003e8e19bd4c\amd64\s1039mgmt.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 137328 c:\windows\system32\DriverStore\FileRepository\s1039obx2.inf_amd64_neutral_a0895eb730199c14\amd64\s1039obex.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 161904 c:\windows\system32\DriverStore\FileRepository\s1039mdm2.inf_amd64_neutral_80ed30e8e2cd927c\amd64\s1039mdm.sys
+ 2010-03-15 10:38 . 2010-03-15 10:38 127600 c:\windows\system32\DriverStore\FileRepository\s1039bus.inf_amd64_neutral_77abbd4ad95f8b5f\amd64\s1039bus.sys
+ 2011-01-03 12:51 . 2011-01-03 12:51 759296 c:\windows\system32\DriverStore\FileRepository\pccswpddriver.inf_amd64_neutral_6a1c3221782e911c\PCCSWpdDriver.dll
+ 2012-01-09 16:28 . 2012-01-09 16:28 171008 c:\windows\system32\DriverStore\FileRepository\nmwcdnsux64.inf_amd64_neutral_4259ea4c69c9f29d\nmwcdnsux64.sys
+ 2012-02-02 17:20 . 2012-02-02 17:20 272448 c:\windows\system32\DriverStore\FileRepository\dtsoftbus01.inf_amd64_neutral_4baca17e76db849b\dtsoftbus01.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 640000 c:\windows\system32\DriverStore\FileRepository\ccdcmbx64.inf_amd64_neutral_efbbad5cb9e97c7a\nmwcdcoclsx64.dll
+ 2012-01-09 16:28 . 2012-01-09 16:28 166912 c:\windows\system32\DriverStore\FileRepository\ccdcmbx64.inf_amd64_neutral_efbbad5cb9e97c7a\ccdcmbwux64.dll
+ 2011-06-27 19:42 . 2011-06-27 19:42 278528 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\Oemdspif.dll
+ 2011-06-27 19:43 . 2011-06-27 19:43 120320 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atitmm64.dll
+ 2011-06-27 19:43 . 2011-06-27 19:43 356352 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atipdlxx.dll
+ 2011-06-27 19:43 . 2011-06-27 19:43 423424 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atipdl64.dll
+ 2010-08-27 18:33 . 2010-08-27 18:33 332800 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\ATIODE.exe
+ 2011-06-27 19:02 . 2011-06-27 19:02 307712 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atikmpag.sys
+ 2011-05-13 15:01 . 2011-05-13 15:01 234142 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiicdxx.dat
+ 2011-06-27 19:44 . 2011-06-27 19:44 204288 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiesrxx.exe
+ 2011-06-27 19:45 . 2011-06-27 19:45 485376 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atieclxx.exe
+ 2011-06-27 19:45 . 2011-06-27 19:45 462848 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\ATIDEMGX.dll
+ 2011-06-27 19:48 . 2011-06-27 19:48 814080 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\aticfx64.dll
+ 2011-06-27 19:49 . 2011-06-27 19:49 689152 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\aticfx32.dll
+ 2009-05-11 21:35 . 2009-05-11 21:35 118784 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atibtmon.exe
+ 2011-06-27 19:50 . 2011-06-27 19:50 151552 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiapfxx.exe
+ 2011-06-27 19:03 . 2011-06-27 19:03 266240 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiadlxy.dll
+ 2011-06-27 19:03 . 2011-06-27 19:03 375808 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiadlxx.dll
+ 2009-07-14 00:07 . 2009-07-14 00:07 184576 c:\windows\system32\drivers\usbvideo.sys
+ 2012-01-09 16:28 . 2012-01-09 16:28 171008 c:\windows\system32\drivers\nmwcdnsux64.sys
+ 2011-06-27 19:02 . 2011-06-27 19:02 307712 c:\windows\system32\drivers\atikmpag.sys
+ 2009-07-14 05:12 . 2012-03-08 10:03 245760 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2009-07-14 05:12 . 2010-08-25 16:59 245760 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2010-03-19 18:07 . 2009-08-19 15:00 359424 c:\windows\system32\CmiInstallResAll64.dll
+ 2010-03-19 18:07 . 2010-01-22 06:17 359424 c:\windows\system32\CmiInstallResAll64.dll
+ 2011-11-01 09:07 . 2011-11-01 09:07 166912 c:\windows\system32\ccdcmbwux64.dll
+ 2011-02-19 20:51 . 2011-02-19 20:51 158536 c:\windows\system32\atl100.dll
- 2009-11-04 15:43 . 2009-11-04 15:43 120320 c:\windows\system32\atitmm64.dll
+ 2011-06-27 19:43 . 2011-06-27 19:43 120320 c:\windows\system32\atitmm64.dll
+ 2011-06-27 19:43 . 2011-06-27 19:43 423424 c:\windows\system32\atipdl64.dll
+ 2010-08-27 18:33 . 2010-08-27 18:33 332800 c:\windows\system32\ATIODE.exe
+ 2011-05-13 15:01 . 2011-05-13 15:01 234142 c:\windows\system32\atiicdxx.dat
+ 2011-06-27 19:44 . 2011-06-27 19:44 204288 c:\windows\system32\atiesrxx.exe
+ 2011-06-27 19:45 . 2011-06-27 19:45 485376 c:\windows\system32\atieclxx.exe
+ 2011-06-27 19:45 . 2011-06-27 19:45 462848 c:\windows\system32\ATIDEMGX.dll
+ 2011-06-27 19:48 . 2011-06-27 19:48 814080 c:\windows\system32\aticfx64.dll
+ 2011-06-27 19:50 . 2011-06-27 19:50 151552 c:\windows\system32\atiapfxx.exe
+ 2011-06-27 19:03 . 2011-06-27 19:03 375808 c:\windows\system32\atiadlxx.dll
+ 2012-01-05 12:11 . 2012-01-05 12:11 236904 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\reliability\Sqm\Manifest\Sqm25.bin
+ 2011-06-20 02:40 . 2012-04-22 13:53 478584 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- 2009-07-14 05:01 . 2011-12-05 09:24 417228 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-04-22 13:53 417228 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-04-22 15:23 . 2012-04-22 15:23 536064 c:\windows\Installer\5207ab.msi
+ 2012-04-22 15:23 . 2012-04-22 15:23 503808 c:\windows\Installer\5207a3.msi
+ 2011-07-04 20:18 . 2011-07-04 20:18 282112 c:\windows\Installer\339a821.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 866816 c:\windows\Installer\339a812.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 634368 c:\windows\Installer\339a7c2.msi
+ 2011-03-14 19:37 . 2011-03-14 19:37 528896 c:\windows\Installer\339a79e.msi
+ 2011-07-04 20:18 . 2011-07-04 20:18 514560 c:\windows\Installer\339a6ee.msi
+ 2010-04-20 20:48 . 2010-04-20 20:48 168960 c:\windows\Installer\339a680.msi
+ 2012-03-23 17:48 . 2012-03-23 17:48 331776 c:\windows\Installer\2a451c9.msi
+ 2012-03-04 05:57 . 2012-03-04 05:57 881664 c:\windows\Installer\2142bf.msi
+ 2012-03-06 19:27 . 2012-03-06 19:27 371272 c:\windows\Installer\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeIcon.exe
+ 2012-01-03 20:15 . 2012-01-03 20:15 116767 c:\windows\Installer\{9E4167F2-E1E9-4941-9214-399DDBAEA988}\_F16EA01FED4D09F8CAFCC8.exe
+ 2012-01-03 20:15 . 2012-01-03 20:15 116767 c:\windows\Installer\{9E4167F2-E1E9-4941-9214-399DDBAEA988}\_2BAB6AE22A7B4E11994E10.exe
+ 2010-10-26 23:30 . 2010-10-26 23:30 253952 c:\windows\Installer\$PatchCache$\UnManaged\S-1-5-21-1822403914-3001825825-2752914720-1000\578E3553E00F1304DBCE57BFD1EF0B39\2.6.6\cmn_usbdcm.dll
- 2010-03-19 18:07 . 2006-10-06 04:45 524768 c:\windows\difxapi.dll
+ 2012-03-11 15:44 . 2010-01-22 06:17 524768 c:\windows\difxapi.dll

viva2212
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 17 pro 2011 15:40

Re: prosím o kontrolu logu - pomalý počítač

#4 Příspěvek od viva2212 »

[quote="Rudy"]Také zdravím!

a tu je druhá časť ComboFix log:

c:\windows\assembly\GAC_MSIL\TradosWord2007Filter\1.0.8.12__4316ebe69d6f1d49\TradosWord2007Filter.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 430080 c:\windows\assembly\GAC_MSIL\TradosPowerPoint2007Filter\1.0.16.11__4316ebe69d6f1d49\TradosPowerPoint2007Filter.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 565248 c:\windows\assembly\GAC_MSIL\TradosExcel2007Filter\1.0.11.9__4316ebe69d6f1d49\TradosExcel2007Filter.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 114688 c:\windows\assembly\GAC_MSIL\Trados.Interop.TRADOSTagApi\2.0.0.0__4316ebe69d6f1d49\Trados.Interop.TRADOSTAGApi.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 241664 c:\windows\assembly\GAC_MSIL\Trados.Interop.PowerPoint12\2.9.0.0__4316ebe69d6f1d49\Trados.Interop.PowerPoint12.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 143360 c:\windows\assembly\GAC_MSIL\Trados.Filters.PlugIns.PowerPoint\8.0.0.822__4316ebe69d6f1d49\Trados.Filters.PlugIns.PowerPoint.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 163840 c:\windows\assembly\GAC_MSIL\Trados.Filters.PlugIns.Excel\8.0.0.822__4316ebe69d6f1d49\Trados.Filters.PlugIns.Excel.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 528384 c:\windows\assembly\GAC_MSIL\QAChecker\2.0.0.0__4316ebe69d6f1d49\QAChecker.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 585728 c:\windows\assembly\GAC\Trados.Interop.WinWord\8.2.0.0__4316ebe69d6f1d49\Trados.Interop.WinWord.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 212992 c:\windows\assembly\GAC\Trados.Interop.PowerPoint\2.8.0.0__4316ebe69d6f1d49\Trados.Interop.PowerPoint.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 217088 c:\windows\assembly\GAC\Trados.Interop.Office\2.3.0.0__4316ebe69d6f1d49\Trados.Interop.Office.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 196608 c:\windows\assembly\GAC\Trados.Interop.Office\2.2.0.0__4316ebe69d6f1d49\Trados.Interop.Office.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 163840 c:\windows\assembly\GAC\Trados.Filters.PlugIns.Excel\6.5.2.417__4316ebe69d6f1d49\Trados.Filters.PlugIns.Excel.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 143360 c:\windows\assembly\GAC\ICSharpCode.SharpZipLib\0.5.0.0__1b03e6acf1164f73\ICSharpCode.SharpZipLib.dll
+ 2000-11-07 15:54 . 2008-07-24 08:00 1044480 c:\windows\SysWOW64\Roboex32.dll
+ 2009-01-22 02:13 . 2009-01-22 02:13 1328968 c:\windows\SysWOW64\msxml4.dll
+ 2012-04-02 06:18 . 2012-04-02 06:18 8797344 c:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll
- 2009-11-24 12:45 . 2005-03-18 16:19 2337488 c:\windows\SysWOW64\d3dx9_25.dll
+ 2005-03-19 00:19 . 2005-03-19 00:19 2337488 c:\windows\SysWOW64\d3dx9_25.dll
+ 2009-11-04 15:05 . 2011-06-27 19:17 4039680 c:\windows\SysWOW64\atiumdva.dll
+ 2011-06-27 19:26 . 2011-06-27 19:26 1828864 c:\windows\SysWOW64\atiumdmv.dll
+ 2009-11-04 15:23 . 2011-06-27 19:17 4367360 c:\windows\SysWOW64\atiumdag.dll
+ 2011-06-27 19:39 . 2011-06-27 19:39 4275712 c:\windows\SysWOW64\atidxx32.dll
+ 2011-06-27 19:15 . 2011-06-27 19:15 6739968 c:\windows\SysWOW64\aticaldd.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 5522768 c:\windows\system32\mfc100u.dll
+ 2010-03-18 07:36 . 2010-03-18 07:36 5493576 c:\windows\system32\mfc100.dll
+ 2011-05-24 08:59 . 2011-05-24 08:59 1002728 c:\windows\system32\DriverStore\FileRepository\sa0104adb.inf_amd64_neutral_0a43a5a2361fbbe7\amd64\WinUSBCoInstaller2.dll
+ 2011-05-24 08:59 . 2011-05-24 08:59 1721576 c:\windows\system32\DriverStore\FileRepository\sa0104adb.inf_amd64_neutral_0a43a5a2361fbbe7\amd64\WdfCoInstaller01009.dll
+ 2012-01-27 10:05 . 2012-01-27 10:05 1002728 c:\windows\system32\DriverStore\FileRepository\sa0103adb.inf_amd64_neutral_4d87e0ca5a43092a\amd64\WinUSBCoInstaller2.dll
+ 2012-01-27 10:05 . 2012-01-27 10:05 1721576 c:\windows\system32\DriverStore\FileRepository\sa0103adb.inf_amd64_neutral_4d87e0ca5a43092a\amd64\WdfCoInstaller01009.dll
+ 2009-09-02 19:34 . 2009-09-02 19:34 1490656 c:\windows\system32\DriverStore\FileRepository\sa0102adb.inf_amd64_neutral_cdd95df2ee8e8592\amd64\WdfCoInstaller01007.dll
+ 2009-09-03 03:34 . 2009-09-03 03:34 1490656 c:\windows\system32\DriverStore\FileRepository\sa0102adb.inf_amd64_neutral_bdd7b60949226e6d\amd64\WdfCoInstaller01007.dll
+ 2011-06-20 10:20 . 2011-06-20 10:20 1490656 c:\windows\system32\DriverStore\FileRepository\sa0102adb.inf_amd64_neutral_ac427f334844232e\amd64\WdfCoInstaller01007.dll
+ 2009-09-03 03:34 . 2009-09-03 03:34 1490656 c:\windows\system32\DriverStore\FileRepository\sa0101usb.inf_amd64_neutral_b989cfbd0db69b20\amd64\WdfCoInstaller01007.dll
+ 2011-01-03 11:05 . 2011-01-03 11:05 2152176 c:\windows\system32\DriverStore\FileRepository\pccswpddriver.inf_amd64_neutral_6a1c3221782e911c\WUDFUpdate_01009.dll
+ 2012-01-09 16:28 . 2012-01-09 16:28 1721576 c:\windows\system32\DriverStore\FileRepository\ccdcmbx64.inf_amd64_neutral_efbbad5cb9e97c7a\wdfcoinstaller01009.dll
+ 2011-06-27 19:17 . 2011-06-27 19:17 4039680 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiumdva.dll
+ 2011-06-27 19:26 . 2011-06-27 19:26 1828864 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiumdmv.dll
+ 2011-06-27 19:17 . 2011-06-27 19:17 4367360 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiumdag.dll
+ 2011-06-27 19:27 . 2011-06-27 19:27 1113088 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiumd6v.dll
+ 2011-06-27 19:26 . 2011-06-27 19:26 3847680 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiumd6a.dll
+ 2011-06-27 19:11 . 2011-06-27 19:11 5540352 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atiumd64.dll
+ 2011-06-27 20:30 . 2011-06-27 20:30 9883136 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atikmdag.sys
+ 2011-06-27 19:29 . 2011-06-27 19:29 5072896 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atidxx64.dll
+ 2011-06-27 19:39 . 2011-06-27 19:39 4275712 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atidxx32.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 8134656 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\aticaldd64.dll
+ 2011-06-27 19:15 . 2011-06-27 19:15 6739968 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\aticaldd.dll
+ 2011-06-27 20:30 . 2011-06-27 20:30 9883136 c:\windows\system32\drivers\atikmdag.sys
+ 2011-06-27 19:27 . 2011-06-27 19:27 1113088 c:\windows\system32\atiumd6v.dll
+ 2011-06-27 19:26 . 2011-06-27 19:26 3847680 c:\windows\system32\atiumd6a.dll
+ 2011-06-27 19:11 . 2011-06-27 19:11 5540352 c:\windows\system32\atiumd64.dll
+ 2009-11-04 15:31 . 2011-06-27 19:29 5072896 c:\windows\system32\atidxx64.dll
+ 2011-06-27 19:19 . 2011-06-27 19:19 8134656 c:\windows\system32\aticaldd64.dll
- 2009-07-14 04:45 . 2011-11-28 05:00 3607991 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2009-07-14 04:45 . 2012-03-09 09:55 3607991 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2012-02-29 16:10 . 2012-02-29 16:10 3857920 c:\windows\Installer\e82c.msi
+ 2012-03-09 09:42 . 2012-03-09 09:42 2434048 c:\windows\Installer\e0a819.msi
+ 2012-03-09 09:42 . 2012-03-09 09:42 8047104 c:\windows\Installer\e0a7d2.msi
+ 2009-07-12 01:35 . 2009-07-12 01:35 2736640 c:\windows\Installer\d1a0b8.msi
+ 2012-01-03 10:25 . 2012-01-03 10:25 7348736 c:\windows\Installer\782640.msi
+ 2011-07-04 20:23 . 2011-07-04 20:23 1706496 c:\windows\Installer\339a836.msi
+ 2011-07-04 20:27 . 2011-07-04 20:27 1536512 c:\windows\Installer\339a831.msi
+ 2011-07-04 20:19 . 2011-07-04 20:19 2558464 c:\windows\Installer\339a82c.msi
+ 2011-07-04 20:18 . 2011-07-04 20:18 1108480 c:\windows\Installer\339a81c.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1169408 c:\windows\Installer\339a817.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1180160 c:\windows\Installer\339a80d.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1203712 c:\windows\Installer\339a808.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1172992 c:\windows\Installer\339a803.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1216000 c:\windows\Installer\339a7fe.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1183232 c:\windows\Installer\339a7f9.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1184768 c:\windows\Installer\339a7f4.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1170944 c:\windows\Installer\339a7ef.msi
+ 2011-07-04 20:17 . 2011-07-04 20:17 1183232 c:\windows\Installer\339a7ea.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1188352 c:\windows\Installer\339a7e5.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1203712 c:\windows\Installer\339a7e0.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1176576 c:\windows\Installer\339a7db.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1195008 c:\windows\Installer\339a7d6.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1185280 c:\windows\Installer\339a7d1.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1179136 c:\windows\Installer\339a7cc.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1175040 c:\windows\Installer\339a7c7.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1229312 c:\windows\Installer\339a7bd.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1158656 c:\windows\Installer\339a7b8.msi
+ 2011-07-04 20:16 . 2011-07-04 20:16 1175040 c:\windows\Installer\339a7b3.msi
+ 2011-07-04 20:15 . 2011-07-04 20:15 1190400 c:\windows\Installer\339a7ae.msi
+ 2011-07-04 20:19 . 2011-07-04 20:19 1778176 c:\windows\Installer\339a7a9.msi
+ 2011-07-04 20:19 . 2011-07-04 20:19 2326528 c:\windows\Installer\339a7a4.msi
+ 2011-07-04 20:22 . 2011-07-04 20:22 2526720 c:\windows\Installer\339a6f9.msi
+ 2011-07-04 20:23 . 2011-07-04 20:23 6740480 c:\windows\Installer\339a6f4.msi
+ 2012-01-03 20:14 . 2012-01-03 20:14 3359744 c:\windows\Installer\2948f63.msi
+ 2012-02-09 19:25 . 2012-02-09 19:25 1628672 c:\windows\Installer\149a2fc.msi
+ 2011-06-06 10:55 . 2011-06-06 10:55 1189004 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA71501B744AA0100000010\10.1.0\JSByteCodeWin.bin
- 2011-05-27 07:44 . 2011-11-26 22:37 7348736 c:\windows\Downloaded Installations\{9C438F1F-3431-4A74-9EE4-029D3A0754EA}\FLEXlm License Server.msi
+ 2011-05-27 07:44 . 2012-01-03 10:25 7348736 c:\windows\Downloaded Installations\{9C438F1F-3431-4A74-9EE4-029D3A0754EA}\FLEXlm License Server.msi
+ 2012-01-03 10:44 . 2012-01-03 10:44 1089536 c:\windows\assembly\GAC\Trados.Interop.Excel\1.5.0.0__4316ebe69d6f1d49\Trados.Interop.Excel.dll
+ 2012-01-03 10:44 . 2012-01-03 10:44 1044480 c:\windows\assembly\GAC\Trados.Interop.Excel\1.4.0.0__4316ebe69d6f1d49\Trados.Interop.Excel.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-02-13 17:29 . 2012-02-13 17:29 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-10-25 15:34 . 2011-10-25 15:34 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-06-27 19:52 . 2011-06-27 19:52 17940992 c:\windows\SysWOW64\atioglxx.dll
+ 2011-06-27 14:22 . 2011-06-27 14:22 13904896 c:\windows\SysWOW64\amdocl.dll
+ 2009-07-14 02:34 . 2012-04-22 15:25 10223616 c:\windows\system32\SMI\Store\Machine\schema.dat
- 2009-07-14 02:34 . 2011-12-14 01:12 10223616 c:\windows\system32\SMI\Store\Machine\schema.dat
+ 2012-04-02 06:18 . 2012-04-02 06:18 11588768 c:\windows\system32\Macromed\Flash\NPSWF64_11_2_202_228.dll
+ 2011-06-27 19:52 . 2011-06-27 19:52 17940992 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atioglxx.dll
+ 2011-06-27 20:16 . 2011-06-27 20:16 23385600 c:\windows\system32\DriverStore\FileRepository\c7121835.inf_amd64_neutral_960b2d5da5c708a5\B121468\atio6axx.dll
+ 2011-06-27 20:16 . 2011-06-27 20:16 23385600 c:\windows\system32\atio6axx.dll
+ 2011-06-27 14:22 . 2011-06-27 14:22 16906752 c:\windows\system32\amdocl64.dll
+ 2010-02-24 15:37 . 2012-04-22 13:53 14245961 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1822403914-3001825825-2752914720-1000-12288.dat
+ 2012-01-26 10:31 . 2012-01-26 10:31 69864960 c:\windows\Installer\f1bd01.msi
+ 2012-03-09 09:42 . 2012-03-09 09:42 25919488 c:\windows\Installer\e0a812.msi
+ 2012-03-09 09:42 . 2012-03-09 09:42 16465920 c:\windows\Installer\e0a7b5.msi
+ 2012-04-04 13:32 . 2012-04-04 13:32 16613376 c:\windows\Installer\cc0317.msp
+ 2012-03-20 08:35 . 2012-03-20 08:35 20333056 c:\windows\Installer\95864b.msp
+ 2009-11-19 18:11 . 2009-11-19 18:11 22918656 c:\windows\Installer\861586.msi
+ 2011-12-21 08:48 . 2011-12-21 08:48 20333568 c:\windows\Installer\806ed4.msp
+ 2011-07-04 20:23 . 2011-07-04 20:23 13730816 c:\windows\Installer\339a83b.msi
+ 2011-07-04 20:15 . 2011-07-04 20:15 11072512 c:\windows\Installer\339a827.msi
+ 2012-01-03 17:58 . 2012-01-03 17:58 15929344 c:\windows\Installer\3219f.msp
+ 2012-03-06 19:26 . 2012-03-06 19:26 18984960 c:\windows\Installer\2f771eb.msi
+ 2012-01-03 10:40 . 2012-01-03 10:40 147921920 c:\windows\Installer\861581.msi
+ 2012-04-22 15:23 . 2012-04-22 15:23 252248064 c:\windows\Installer\520a78.msi
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"="c:\program files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" [2009-11-15 33120]
"LightScribe Control Panel"="c:\program files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-08-20 2363392]
"DAEMON Tools Pro Agent"="c:\program files (x86)\DAEMON Tools Pro\DTAgent.exe" [2011-03-17 842048]
"Optimizer Pro"="c:\program files (x86)\Optimizer Pro\OptProLauncher.exe" [2012-01-02 81912]
"Akamai NetSession Interface"="c:\users\ViVa\AppData\Local\Akamai\netsession_win.exe" [2012-03-13 3331872]
"NokiaSuite.exe"="c:\program files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" [2012-02-01 1083264]
"PC Suite Tray"="c:\program files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" [2011-12-16 1508408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"ATICustomerCare"="c:\program files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe" [2009-06-14 307200]
"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"CLMLServer"="c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [2009-06-03 103720]
"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"RemoteControl8"="c:\program files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe" [2009-04-15 91432]
"PDVD8LanguageShortcut"="c:\program files (x86)\CyberLink\PowerDVD8\Language\Language.exe" [2009-04-15 50472]
"UpdatePPShortCut"="c:\program files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"UCam_Menu"="c:\program files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2009-02-17 218408]
"LGODDFU"="c:\program files (x86)\lg_fwupdate\fwupdate.exe" [2010-03-05 557056]
"UpdatePSTShortCut"="c:\program files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" [2009-09-29 210216]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"EEventManager"="c:\progra~2\EPSONS~1\EVENTM~1\EEventManager.exe" [2008-05-07 591696]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2010-09-08 421888]
"WinampAgent"="c:\program files (x86)\Winamp\winampa.exe" [2010-11-30 74752]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-10-11 258512]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"NSU_agent"="c:\program files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe" [2012-02-28 190768]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-06-27 336384]
.
c:\users\ViVa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
MagicDisc.lnk - c:\program files (x86)\MagicDisc\MagicDisc.exe [2010-2-26 576000]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
SDL Trados 2007 Speed Launcher.lnk - c:\program files (x86)\SDL International\SDL Trados Synergy 2007\Synergy.exe [2008-10-2 765952]
TMMonitor.lnk - c:\program files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe [2011-12-14 258048]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~2\Bandoo\BndHook.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux9"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SDL FLEXlm License Server;SDL FLEXlm License Server;c:\program files (x86)\SDL International\License Server\Lmgrd.exe [2008-07-01 1372160]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-02-15 158856]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 253600]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [x]
R3 nmwcdnsucx64;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsucx64.sys [x]
R3 nmwcdnsux64;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsux64.sys [x]
R3 s0016bus;Sony Ericsson Device 0016 driver (WDM);c:\windows\system32\DRIVERS\s0016bus.sys [x]
R3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;c:\windows\system32\DRIVERS\s0016mdfl.sys [x]
R3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;c:\windows\system32\DRIVERS\s0016mdm.sys [x]
R3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\s0016mgmt.sys [x]
R3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);c:\windows\system32\DRIVERS\s0016nd5.sys [x]
R3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\s0016obex.sys [x]
R3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);c:\windows\system32\DRIVERS\s0016unic.sys [x]
R3 USBADVAU;USB Advance Audio Interface;c:\windows\system32\drivers\cm11264.sys [x]
R3 X6va006;X6va006;c:\users\ViVa\AppData\Local\Temp\006E892.tmp [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-06-27 365568]
S2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-11 86224]
S2 AntiVirWebService;Avira Web Protection;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2011-10-11 463824]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2011-12-14 2984832]
S3 3xHybr64;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybr64.sys [x]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 PciPPorts;PCI ECP Parallel Port;c:\windows\system32\DRIVERS\PciPPorts.sys [x]
S3 PciSPorts;High-Speed PCI Serial Port;c:\windows\system32\DRIVERS\PciSPorts.sys [x]
S3 RTL2832U_IRHID;HID Infrared Remote Receiver;c:\windows\system32\DRIVERS\RTL2832U_IRHID.sys [2009-07-13 42912]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver;c:\windows\system32\drivers\RTL2832UBDA.sys [2009-07-06 114080]
S3 RTL2832UUSB;REALTEK 2832U USB Driver;c:\windows\system32\Drivers\RTL2832UUSB.sys [2009-07-06 38944]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-08-20 12:24 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder
.
2012-04-22 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 06:18]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Cm112Sound"="c:\windows\Syswow64\cm112.dll" [2009-10-09 8146944]
"driver.exe"="c:\windows\driver.exe" [BU]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.runescape.com/
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = <local>
IE: Add to AMV Convert Tool... - c:\program files (x86)\MP3 Player Utilities 4.00\AMVConverter\grab.html
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: MediaManager tool grab multimedia file - c:\program files (x86)\MP3 Player Utilities 4.00\MediaManager\grab.html
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\windows\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\windows\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\windows\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\windows\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\windows\WebIE.dll
LSP: c:\program files (x86)\Avira\AntiVir Desktop\avsda.dll
TCP: DhcpNameServer = 80.242.32.2 80.242.32.20
FF - ProfilePath - c:\users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=
.
.
------- File Associations -------
.
JSEFile=%SystemRoot%\SysWow64\CScript.exe "%1" %*
.
- - - - ORPHANS REMOVED - - - -
.
URLSearchHooks-{687578b9-7132-4a7a-80e4-30ee31099e03} - (no file)
Toolbar-10 - (no file)
Wow6432Node-HKLM-Run-Protection0 - c:\windows\protections.exe
Wow6432Node-HKU-Default-Run-Nokia.PCSync - c:\program files (x86)\Nokia\Nokia PC Suite 6\PcSync2.exe
AddRemove-Final Fantasy VII - c:\program files (x86)\Final Fantasy VII\Uninst.isu
AddRemove-Opera 11.62.1347 - c:\program files (x86)\Opera\Opera.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va006]
"ImagePath"="\??\c:\users\ViVa\AppData\Local\Temp\006E892.tmp"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-04-22 17:57:26
ComboFix-quarantined-files.txt 2012-04-22 15:57
ComboFix2.txt 2011-12-17 21:29
ComboFix3.txt 2011-12-17 18:49
.
Pre-Run: 85 208 965 120 bytes free
Post-Run: 87 258 492 928 bytes free
.
- - End Of File - - 828EE102870CCCF2B1EBC15F669ADBFC

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu - pomalý počítač

#5 Příspěvek od Rudy »

Ještě dočistíme. Přesuňte ComboFix na plochu. Otevřte poznámkový blok a zkopírujte do něj:
KillAll::

Collect::
c:\windows\SysWow64\~.tmp
c:\programdata\27C51ED492.sys
c:\users\ViVa\AppData\Local\Temp\006E892.tmp

Folder::
c:\users\ViVa\AppData\Local\Akamai

Driver::
X6va006

Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Akamai NetSession Interface"=-

Firefox::
FF - ProfilePath - c:\users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default\
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... ource=2&q=

RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

viva2212
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 17 pro 2011 15:40

Re: prosím o kontrolu logu - pomalý počítač

#6 Příspěvek od viva2212 »

Takže dočistila som to, a tu je log :

Logfile of random's system information tool 1.09 (written by random/random)
Run by ViVa at 2012-04-22 20:19:14
Microsoft Windows 7 Ultimate
System drive C: has 82 GB (17%) free of 477 GB
Total RAM: 1791 MB (33% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:19:19, on 22. 4. 2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe
C:\Program Files (x86)\MagicDisc\MagicDisc.exe
C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe
C:\Program Files (x86)\lg_fwupdate\fwupdate.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\ViVa.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.runescape.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Windows\WebIE.dll
O2 - BHO: Pomocník pri prihlasovaní v sieti Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QUICKfind BHO Object - {C08DF07A-3E49-4E25-9AB0-D3882835F153} - C:\PROGRA~2\IDM\QUICKF~1\PlugIns\IEHelp.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Windows\WebIE.dll
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [RemoteControl8] "C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe"
O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe"
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files (x86)\lg_fwupdate\fwupdate.exe" blrun
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [NSU_agent] "C:\Program Files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Optimizer Pro] C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
O4 - HKCU\..\Run: [NokiaSuite.exe] C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - Startup: MagicDisc.lnk = C:\Program Files (x86)\MagicDisc\MagicDisc.exe
O4 - Global Startup: SDL Trados 2007 Speed Launcher.lnk = C:\Program Files (x86)\SDL International\SDL Trados Synergy 2007\Synergy.exe
O4 - Global Startup: TMMonitor.lnk = C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe
O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Program Files (x86)\MP3 Player Utilities 4.00\AMVConverter\grab.html
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files (x86)\MP3 Player Utilities 4.00\MediaManager\grab.html
O9 - Extra button: Pridať do blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Pridať do blogu v programe Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Windows\WebIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Windows\WebIE.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6\ICQ.exe
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\PROGRA~2\Bandoo\BndHook.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: Bandoo Coordinator - Unknown owner - C:\PROGRA~2\Bandoo\Bandoo.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SDL FLEXlm License Server - Macrovision Corporation - C:\Program Files (x86)\SDL International\License Server\Lmgrd.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14310 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\System32\svchost.exe -k HPZ12
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm112.dll,CMICtrlWnd
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" -tray
"C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe"
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe"
"C:\Program Files (x86)\MagicDisc\MagicDisc.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe"
"C:\Program Files (x86)\lg_fwupdate\fwupdate.exe" blrun
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe"
"C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
ArcCon.ac 66050 0
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Program Files (x86)\Winamp\winampa.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_000001f8
\??\C:\Windows\system32\conhost.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
{1D7E24B8-9BF6-47AD-AE40-D57758AA6744}
{44A00315-E390-4FD5-B5A4-9F0C880FBF99}
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
{0FC4B009-5982-474D-AB4B-9C87F7AF108D}
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4000.1267ab70.648193947 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 4000 "\\.\pipe\gecko-crash-server-pipe.4000" plugin
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Users\ViVa\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default

prefs.js - "browser.startup.homepage" - "http://www.google.sk/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.228 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.228 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_228.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
exeImagine.IMD
npdeployJava1.dll
npImagine.dll
nppdf32.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
babylon.xml
dunaj-sk.xml
eBay.xml
google.xml
Search_Results.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml

C:\Users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default\extensions\
4f874ac72b520@4f874ac72b522.info
4f9059d0262f0@4f9059d0262f2.info
engine@conduit.com
ffxtlbr@babylon.com
{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}
{687578b9-7132-4a7a-80e4-30ee31099e03}
{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}

C:\Users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default\searchplugins\
conduit.xml
Search_Results.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 132456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\Windows\WebIE.dll [2010-03-28 491520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v sieti Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C08DF07A-3E49-4E25-9AB0-D3882835F153}]
QUICKfind BHO Object - C:\PROGRA~2\IDM\QUICKF~1\PlugIns\IEHelp.dll [2003-06-30 337920]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Windows\WebIE.dll [2010-03-28 491520]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm112Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"driver.exe"=C:\WINDOWS\driver.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-08-20 2363392]
"DAEMON Tools Pro Agent"=C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2011-03-17 842048]
"Optimizer Pro"=C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [2012-01-02 81912]
"NokiaSuite.exe"=C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [2012-02-01 1083264]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2011-12-16 1508408]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATICustomerCare"=C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe [2009-06-14 307200]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"CLMLServer"=C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-06-03 103720]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"RemoteControl8"=C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe [2009-04-16 91432]
"PDVD8LanguageShortcut"=C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe [2009-04-16 50472]
"UpdatePPShortCut"=C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-02-17 218408]
"LGODDFU"=C:\Program Files (x86)\lg_fwupdate\fwupdate.exe [2010-03-05 557056]
"UpdatePSTShortCut"=C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [2009-09-29 210216]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"EEventManager"=C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe [2008-05-07 591696]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2010-09-08 421888]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2010-11-30 74752]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2011-10-11 258512]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]
"NSU_agent"=C:\Program Files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe [2012-02-28 190768]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-06-27 336384]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SDL Trados 2007 Speed Launcher.lnk - C:\Program Files (x86)\SDL International\SDL Trados Synergy 2007\Synergy.exe
TMMonitor.lnk - C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe

C:\Users\ViVa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MagicDisc.lnk - C:\Program Files (x86)\MagicDisc\MagicDisc.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2009-07-14 290304]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe"="C:\Windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe:*:Enabled:Windows Messanger"
"C:\Users\ViVa\AppData\Local\Temp\8QGWJLO1XF.exe"="C:\Users\ViVa\AppData\Local\Temp\8QGWJLO1XF.exe:*:Enabled:Windows Messanger"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux4"=wdmaud.drv
"wave7"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux5"=wdmaud.drv
"VIDC.XFR1"=xfcodec64.dll
"wave8"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux6"=wdmaud.drv
"wave9"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux7"=wdmaud.drv
"midi9"=wdmaud.drv
"aux8"=wdmaud.drv
"aux9"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2012-04-22 20:11:53 ----D---- C:\Windows\temp
2012-04-22 20:06:33 ----A---- C:\ComboFix.txt
2012-04-22 20:00:49 ----D---- C:\Windows\LastGood
2012-04-22 19:58:03 ----SHD---- C:\$RECYCLE.BIN
2012-04-22 19:41:03 ----A---- C:\Windows\NIRCMD.exe
2012-04-22 17:41:31 ----A---- C:\Windows\zip.exe
2012-04-22 17:41:31 ----A---- C:\Windows\SWSC.exe
2012-04-22 17:41:31 ----A---- C:\Windows\SWREG.exe
2012-04-22 17:41:31 ----A---- C:\Windows\sed.exe
2012-04-22 17:41:31 ----A---- C:\Windows\PEV.exe
2012-04-22 17:41:31 ----A---- C:\Windows\MBR.exe
2012-04-22 17:41:31 ----A---- C:\Windows\grep.exe
2012-04-22 17:25:21 ----D---- C:\ProgramData\Nokia
2012-04-22 17:23:39 ----D---- C:\Config.Msi
2012-04-21 14:49:46 ----D---- C:\Users\ViVa\AppData\Roaming\Optimizer Pro
2012-04-21 14:47:24 ----D---- C:\AeriaGames
2012-04-21 14:47:18 ----A---- C:\Program Files (x86)\wolfteam_us_downloader.exe
2012-04-21 14:42:34 ----D---- C:\Program Files (x86)\Optimizer Pro
2012-04-21 14:42:16 ----D---- C:\ProgramData\ADDICT-THING
2012-04-17 15:45:53 ----D---- C:\Users\ViVa\AppData\Roaming\TeamViewer
2012-04-16 15:23:33 ----A---- C:\CS16 GS pre Marz(us)a.exe
2012-04-16 15:05:00 ----D---- C:\Program Files (x86)\VIVA USB
2012-04-14 23:49:44 ----D---- C:\ProgramData\ATI
2012-04-14 23:49:42 ----D---- C:\Program Files (x86)\AMD APP
2012-04-14 23:48:16 ----D---- C:\ProgramData\AMD
2012-04-14 23:48:12 ----A---- C:\Windows\system32\drivers\amdiox64.sys
2012-04-14 23:48:07 ----D---- C:\Program Files (x86)\ATI Technologies
2012-04-14 23:47:25 ----D---- C:\Program Files\Common Files\ATI Technologies
2012-04-14 23:42:21 ----D---- C:\AMD
2012-04-14 19:29:17 ----D---- C:\ProgramData\Bcool
2012-04-14 19:28:06 ----D---- C:\ProgramData\InstallMate
2012-04-14 19:24:00 ----D---- C:\C
2012-04-14 19:20:48 ----A---- C:\Program Files (x86)\steaminstall_full.exe
2012-04-14 13:11:54 ----D---- C:\ProgramData\media center programs
2012-04-14 13:11:51 ----D---- C:\Program Files (x86)\Funcom
2012-04-14 09:32:35 ----A---- C:\Program Files (x86)\SteamInstall_CS.exe
2012-04-06 21:08:37 ----A---- C:\commettostrifegirlweb.txt
2012-04-02 08:18:42 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-04-01 21:12:30 ----D---- C:\Users\ViVa\AppData\Roaming\Hamachi
2012-03-29 19:52:50 ----A---- C:\SPUSTIT.EXE
2012-03-29 19:48:36 ----D---- C:\Users\ViVa\AppData\Roaming\Canneverbe Limited
2012-03-29 19:47:34 ----A---- C:\Program Files (x86)\spustit.exe
2012-03-29 17:41:24 ----A---- C:\Windows\system32\drivers\hamachi.sys
2012-03-29 17:40:18 ----A---- C:\Hamachi-1.0.1.5.exe
2012-03-29 16:52:05 ----A---- C:\Program Files (x86)\Hamachi-full-cz.exe
2012-03-28 15:00:15 ----A---- C:\Program Files (x86)\CS16 GS pre Marz(us)a.exe
2012-03-28 14:58:02 ----A---- C:\Program Files (x86)\CS16 NS pre marz(us)a.exe
2012-03-23 19:48:12 ----D---- C:\ProgramData\iMesh
2012-03-23 19:48:12 ----D---- C:\Program Files (x86)\iMesh Applications
2012-03-23 19:47:17 ----HDC---- C:\ProgramData\{6DFE6B59-3F4E-45AF-A9D0-5EDC43DD23AF}
2012-03-23 19:46:48 ----A---- C:\iMeshV11.exe

======List of files/folders modified in the last 1 month======

2012-04-22 20:19:17 ----D---- C:\Program Files\trend micro
2012-04-22 20:11:54 ----D---- C:\Windows\system32\drivers
2012-04-22 20:11:54 ----D---- C:\Qoobox
2012-04-22 20:11:53 ----D---- C:\Windows
2012-04-22 20:00:56 ----D---- C:\Windows\system32\drivers\UMDF
2012-04-22 20:00:42 ----D---- C:\Windows\inf
2012-04-22 20:00:13 ----A---- C:\Windows\lgfwup.ini
2012-04-22 20:00:10 ----D---- C:\Program Files (x86)\lg_fwupdate
2012-04-22 19:56:54 ----A---- C:\Windows\system.ini
2012-04-22 19:56:49 ----D---- C:\Windows\system32\drivers\etc
2012-04-22 19:54:14 ----D---- C:\Users\ViVa\AppData\Roaming\Skype
2012-04-22 19:53:54 ----D---- C:\Windows\system32\config
2012-04-22 19:53:38 ----D---- C:\Windows\ERDNT
2012-04-22 19:53:08 ----D---- C:\Windows\SysWOW64
2012-04-22 19:52:55 ----D---- C:\ProgramData
2012-04-22 19:50:41 ----D---- C:\Windows\SYSWOW64\drivers
2012-04-22 19:50:41 ----D---- C:\Windows\System32
2012-04-22 19:50:41 ----D---- C:\Windows\AppPatch
2012-04-22 19:50:40 ----D---- C:\Program Files\Common Files
2012-04-22 19:50:40 ----D---- C:\Program Files (x86)\Common Files
2012-04-22 19:41:26 ----D---- C:\Windows\system32\catroot2
2012-04-22 17:26:32 ----SHD---- C:\Windows\Installer
2012-04-22 17:26:12 ----D---- C:\Users\ViVa\AppData\Roaming\Nokia
2012-04-22 17:25:21 ----D---- C:\Program Files (x86)\Nokia
2012-04-22 15:51:25 ----RD---- C:\Program Files (x86)
2012-04-22 15:20:07 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-04-22 02:36:35 ----D---- C:\Program Files (x86)\Opera
2012-04-22 02:35:29 ----D---- C:\Program Files (x86)\Sony Ericsson
2012-04-22 02:33:56 ----D---- C:\Program Files (x86)\Ubisoft
2012-04-22 02:33:20 ----D---- C:\Windows\system32\Tasks
2012-04-22 02:32:52 ----SHD---- C:\System Volume Information
2012-04-22 02:31:38 ----D---- C:\Users\ViVa\AppData\Roaming\BitTorrent
2012-04-22 02:31:27 ----D---- C:\Program Files (x86)\Valkyrie Mt2
2012-04-22 02:31:17 ----RD---- C:\Program Files
2012-04-22 02:30:34 ----D---- C:\Program Files (x86)\Scorpions WinCheater
2012-04-22 02:30:16 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2012-04-22 02:27:28 ----D---- C:\Program Files (x86)\AOM - Titans
2012-04-22 02:11:08 ----D---- C:\Program Files (x86)\OmniHawk
2012-04-22 02:02:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-04-21 22:50:49 ----D---- C:\Windows\ModemLogs
2012-04-21 20:11:48 ----D---- C:\Windows\Prefetch
2012-04-21 19:36:35 ----A---- C:\Windows\MAILTRAN.INI
2012-04-21 19:31:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-04-21 19:24:07 ----RD---- C:\Miša
2012-04-21 15:18:54 ----D---- C:\Windows\system32\NDF
2012-04-21 10:10:48 ----A---- C:\Windows\WDICT32.INI
2012-04-15 00:17:24 ----D---- C:\Windows\LiveKernelReports
2012-04-14 23:49:08 ----D---- C:\Program Files\ATI Technologies
2012-04-14 23:48:17 ----D---- C:\Windows\system32\DriverStore
2012-04-14 23:48:17 ----D---- C:\Windows\system32\catroot
2012-04-14 23:47:40 ----RSD---- C:\Windows\assembly
2012-04-14 23:44:20 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-04-14 13:11:57 ----HD---- C:\Windows\msdownld.tmp
2012-04-14 13:11:55 ----D---- C:\Windows\SYSWOW64\directx
2012-04-02 08:18:44 ----D---- C:\Windows\Tasks
2012-03-29 19:48:22 ----D---- C:\Program Files (x86)\CDBurnerXP
2012-03-29 17:41:24 ----D---- C:\TEMP

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-02-26 834544]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2012-02-15 132320]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2011-10-11 27760]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-02-02 272448]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2011-10-11 97312]
R3 3xHybr64;SAA713x TV Card Service; C:\Windows\system32\DRIVERS\3xHybr64.sys [2007-07-06 1168384]
R3 Afc;PPdus ASPI Shell; C:\Windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-06-27 9883136]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-06-27 307712]
R3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
R3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2009-07-14 19968]
R3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2009-02-24 255552]
R3 PciPPorts;PCI ECP Parallel Port; C:\Windows\system32\DRIVERS\PciPPorts.sys [2009-07-23 96768]
R3 PciSPorts;High-Speed PCI Serial Port; C:\Windows\system32\DRIVERS\PciSPorts.sys [2008-12-19 122880]
R3 RTL2832U_IRHID;HID Infrared Remote Receiver; C:\Windows\system32\DRIVERS\RTL2832U_IRHID.sys [2009-07-13 42912]
R3 RTL2832UBDA;REALTEK 2832U BDA Driver; C:\Windows\system32\drivers\RTL2832UBDA.sys [2009-07-06 114080]
R3 RTL2832UUSB;REALTEK 2832U USB Driver; C:\Windows\System32\Drivers\RTL2832UUSB.sys [2009-07-06 38944]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-11-05 291328]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2010-10-30 34032]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2009-09-30 121872]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-06-27 9883136]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 61280]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2010-10-30 13352]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2010-10-30 27176]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2012-03-29 21832]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-01-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-01-09 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2012-01-09 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2012-01-09 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s0016bus;Sony Ericsson Device 0016 driver (WDM); C:\Windows\system32\DRIVERS\s0016bus.sys [2008-05-16 115240]
S3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s0016mdfl.sys [2008-05-16 19496]
S3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s0016mdm.sys [2008-05-16 158760]
S3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s0016mgmt.sys [2008-05-16 137256]
S3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS); C:\Windows\system32\DRIVERS\s0016nd5.sys [2008-05-16 34344]
S3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s0016obex.sys [2008-05-16 136744]
S3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM); C:\Windows\system32\DRIVERS\s0016unic.sys [2008-05-16 151592]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); C:\Windows\system32\DRIVERS\s116bus.sys [2007-04-03 108296]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s116mdfl.sys [2007-04-03 19720]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s116mdm.sys [2007-04-03 144648]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s116mgmt.sys [2007-04-03 126216]
S3 s116nd5;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS); C:\Windows\system32\DRIVERS\s116nd5.sys [2007-04-03 31496]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s116obex.sys [2007-04-03 123656]
S3 s116unic;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM); C:\Windows\system32\DRIVERS\s116unic.sys [2007-04-03 130824]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2009-09-28 5504]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-01-09 9216]
S3 USBADVAU;USB Advance Audio Interface; C:\Windows\system32\drivers\cm11264.sys [2009-09-25 1307648]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-01-09 9216]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-06-27 204288]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-06-27 365568]
R2 AntiVirService;Avira Realtime Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2011-10-11 110032]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-11 86224]
R2 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2011-10-11 463824]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2009-09-10 185632]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-04-15 271760]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-01-04 718888]
S2 Bandoo Coordinator;Bandoo Coordinator; C:\PROGRA~2\Bandoo\Bandoo.exe []
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SDL FLEXlm License Server;SDL FLEXlm License Server; C:\Program Files (x86)\SDL International\License Server\Lmgrd.exe [2008-07-01 1372160]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-02-15 158856]
S2 TeamViewer7;TeamViewer 7; C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2011-12-14 2984832]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 253600]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-05-27 647680]
S3 fsssvc;Služba Bezpečnosť rodiny v službe Windows Live; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu - pomalý počítač

#7 Příspěvek od Rudy »

Toto je OK. Potřeboval bych ale log z posledního skenu CF. Najdete jej v C:\combofix.txt.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

viva2212
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 17 pro 2011 15:40

Re: prosím o kontrolu logu - pomalý počítač

#8 Příspěvek od viva2212 »

Rudy píše:Toto je OK. Potřeboval bych ale log z posledního skenu CF. Najdete jej v C:\combofix.txt.
Combofix log z posledného skenu :

ComboFix 12-04-22.01 - ViVa . 04. 2012 19:42:22.4.2 - x64
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1033.18.1791.809 [GMT 2:00]
Running from: c:\program files (x86)\Nokia\Nokia Software Updater\ComboFix.exe
Command switches used :: c:\users\ViVa\Desktop\CFScript.txt
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\27C51ED492.sys
c:\users\ViVa\AppData\Local\Akamai
c:\users\ViVa\AppData\Local\Akamai\admintool.exe
c:\users\ViVa\AppData\Local\Akamai\client.ini
c:\users\ViVa\AppData\Local\Akamai\ControlPanel.exe
c:\users\ViVa\AppData\Local\Akamai\ControlPanel_Installer.exe
c:\users\ViVa\AppData\Local\Akamai\CplTasks.xml
c:\users\ViVa\AppData\Local\Akamai\euc_state.json
c:\users\ViVa\AppData\Local\Akamai\guid.ini
c:\users\ViVa\AppData\Local\Akamai\installer.txt
c:\users\ViVa\AppData\Local\Akamai\Languages\csy.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\dan.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\deu.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\esp.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\fin.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\fra.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\chs.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\cht.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\ita.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\jpn.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\kor.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\nld.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\nor.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\plk.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\ptb.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\ptg.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\rus.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\sve.dll
c:\users\ViVa\AppData\Local\Akamai\Languages\trk.dll
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120421_125025.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120421_133543.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120421_133925.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120421_230846.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120421_231104.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120422_012409.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120422_080808.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120422_131819.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120422_132032.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120422_135215.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\daemon.debug.log.120422_135436.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_125047.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_125056.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_133543.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_133956.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_143956.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_153957.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_163958.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_173958.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_183959.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_193959.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_204000.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_214000.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_224000.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_230846.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120421_231142.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_001143.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_011144.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_012408.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_080829.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_090830.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_100830.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_110831.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_120831.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_130832.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_131817.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_132138.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_135214.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_135503.sent
c:\users\ViVa\AppData\Local\Akamai\Logs\debug.log.120422_145503.sent
c:\users\ViVa\AppData\Local\Akamai\netsession_installer.exe
c:\users\ViVa\AppData\Local\Akamai\netsession_win.exe
c:\users\ViVa\AppData\Local\Akamai\readme.txt
c:\users\ViVa\AppData\Local\Akamai\root.pem
c:\users\ViVa\AppData\Local\Akamai\rswinui.exe
c:\users\ViVa\AppData\Local\Akamai\uninstall.exe
c:\users\ViVa\AppData\Local\Akamai\user.dat
c:\windows\SysWow64\~.tmp
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_X6VA006
-------\Service_X6va006
.
.
((((((((((((((((((((((((( Files Created from 2012-03-22 to 2012-04-22 )))))))))))))))))))))))))))))))
.
.
2012-04-22 17:53 . 2012-04-22 17:53 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-04-22 17:53 . 2012-04-22 17:53 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-04-22 17:53 . 2012-04-22 17:53 -------- d-----w- c:\users\AppData\AppData\Local\temp
2012-04-22 15:25 . 2012-04-22 15:25 -------- d-----w- c:\programdata\Nokia
2012-04-21 12:49 . 2012-04-21 12:49 -------- d-----w- c:\users\ViVa\AppData\Roaming\Optimizer Pro
2012-04-21 12:47 . 2012-04-21 12:47 -------- d-----w- C:\AeriaGames
2012-04-21 12:47 . 2012-04-21 12:47 468088 ----a-w- c:\program files (x86)\wolfteam_us_downloader.exe
2012-04-21 12:42 . 2012-04-21 12:42 -------- d-----w- c:\program files (x86)\Optimizer Pro
2012-04-21 12:42 . 2012-04-22 00:24 -------- d-----w- c:\programdata\ADDICT-THING
2012-04-17 13:45 . 2012-04-17 13:45 -------- d-----w- c:\users\ViVa\AppData\Roaming\TeamViewer
2012-04-16 13:05 . 2012-04-16 13:12 -------- d-----w- c:\program files (x86)\VIVA USB
2012-04-14 23:13 . 2012-04-14 23:13 -------- d-----w- c:\users\ViVa\AppData\Local\Chromium
2012-04-14 21:49 . 2012-04-14 21:49 -------- d-----w- c:\users\ViVa\AppData\Local\AMD
2012-04-14 21:49 . 2012-04-14 21:49 -------- d-----w- c:\programdata\ATI
2012-04-14 21:49 . 2012-04-14 21:49 -------- d-----w- c:\program files (x86)\AMD APP
2012-04-14 21:49 . 2012-04-14 21:49 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2012-04-14 21:48 . 2012-04-14 21:48 -------- d-----w- c:\programdata\AMD
2012-04-14 21:48 . 2010-02-18 07:18 46136 ----a-w- c:\windows\system32\drivers\amdiox64.sys
2012-04-14 21:48 . 2012-04-14 21:49 -------- d-----w- c:\program files (x86)\ATI Technologies
2012-04-14 21:47 . 2012-04-14 21:47 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-04-14 21:42 . 2012-04-14 21:42 -------- d-----w- C:\AMD
2012-04-14 17:29 . 2012-04-22 00:25 -------- d-----w- c:\programdata\Bcool
2012-04-14 17:28 . 2012-04-21 12:41 -------- d-----w- c:\programdata\InstallMate
2012-04-14 17:24 . 2012-04-14 17:24 -------- d-----w- C:\C
2012-04-14 17:20 . 2012-04-14 17:25 12763189 ----a-w- c:\program files (x86)\steaminstall_full.exe
2012-04-14 11:12 . 2012-04-14 11:12 -------- d-----w- c:\users\ViVa\AppData\Local\Funcom
2012-04-14 11:11 . 2012-04-14 11:11 -------- d-----w- c:\programdata\media center programs
2012-04-14 11:11 . 2012-04-14 11:11 -------- d-----w- c:\program files (x86)\Funcom
2012-04-14 07:32 . 2012-04-14 07:52 397857244 ----a-w- c:\program files (x86)\SteamInstall_CS.exe
2012-04-04 05:53 . 2012-04-04 05:53 182160 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\nppdf32.dll
2012-04-04 05:53 . 2012-04-04 05:53 182160 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\nppdf32.dll
2012-04-02 06:18 . 2012-04-02 06:18 418464 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-04-01 19:12 . 2012-04-07 01:57 -------- d-----w- c:\users\ViVa\AppData\Roaming\Hamachi
2012-03-29 17:52 . 2012-03-29 17:52 685056 ----a-w- C:\SPUSTIT.EXE
2012-03-29 17:48 . 2012-03-29 17:48 -------- d-----w- c:\users\ViVa\AppData\Roaming\Canneverbe Limited
2012-03-29 17:47 . 2012-03-29 17:52 685056 ----a-w- c:\program files (x86)\spustit.exe
2012-03-29 15:41 . 2012-03-29 15:41 21832 ----a-w- c:\windows\system32\drivers\hamachi.sys
2012-03-29 15:40 . 2012-03-29 15:40 918400 ----a-w- C:\Hamachi-1.0.1.5.exe
2012-03-29 14:52 . 2012-03-29 14:52 1010488 ----a-w- c:\program files (x86)\Hamachi-full-cz.exe
2012-03-28 13:00 . 2012-03-28 13:12 290662712 ----a-w- c:\program files (x86)\CS16 GS pre Marz(us)a.exe
2012-03-28 12:58 . 2012-03-28 12:58 21663328 ----a-w- c:\program files (x86)\CS16 NS pre marz(us)a.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-21 22:59 . 2012-03-09 09:42 73728 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\NewShortcut47_74B9CE5DF1F4447F982DCA29A461B529.exe
2012-04-21 22:59 . 2012-03-09 09:42 73728 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\NewShortcut46_74B9CE5DF1F4447F982DCA29A461B529.exe
2012-04-21 22:59 . 2012-03-09 09:42 53248 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\ARPPRODUCTICON.exe
2012-04-21 22:59 . 2012-03-09 09:42 49152 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Uninstall_QA_OTI_H_FE5D756F71E147C4972AD6775344B40B.exe
2012-04-21 22:59 . 2012-03-09 09:42 49152 ----a-r- c:\users\ViVa\AppData\Roaming\Microsoft\Installer\{7130468A-F53F-4698-8C09-A339EA3B05E6}\NewShortcut2_1C7B7089989A424FB39D41A32581C775.exe
2012-04-04 13:56 . 2011-12-17 15:20 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-02 06:18 . 2011-07-02 06:01 70304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-03-23 17:46 . 2012-03-23 17:46 2413528 ----a-w- C:\iMeshV11.exe
2012-03-23 12:15 . 2010-04-09 19:09 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2012-03-23 11:13 . 2012-03-23 11:13 458064 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2012-03-21 16:46 . 2012-03-21 16:45 17888302 ----a-w- c:\program files (x86)\Croc_3_part_1.exe
2012-03-13 20:54 . 2012-03-13 20:54 235520 ----a-w- c:\program files (x86)\Metin2-Yang-GM.exe
2012-03-13 13:29 . 2012-03-13 13:29 367918 ----a-w- C:\Brothersoftdownloader_for_Final_Fantasy_VII.exe
2012-03-11 15:14 . 2012-03-11 15:13 8389664 ----a-w- c:\program files\Driver_Genius.exe
2012-03-09 09:24 . 2012-03-09 09:19 50282056 ----a-w- c:\program files (x86)\NokiaSoftwareUpdaterSetup_SK.exe
2012-03-08 09:57 . 2012-03-08 09:47 27043000 ----a-w- c:\program files (x86)\PC_Companion_2.02.015_Web.exe
2012-03-04 05:57 . 2012-03-04 05:57 881664 ----a-w- c:\program files (x86)\LicensingServiceInstaller.msi
2012-02-27 15:22 . 2012-02-27 15:20 5561300 ----a-w- C:\370hook.zip
2012-02-25 18:54 . 2012-02-25 18:54 5566548 ----a-w- C:\CD-Hack_Knife_Aim.zip
2012-02-23 08:18 . 2009-11-24 11:45 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-02-17 18:12 . 2012-02-17 17:55 290661897 ----a-w- C:\counter-strike-1-6-non-stream-09-21-2011-10-29-1018.exe
2012-02-15 19:56 . 2011-10-15 12:41 132320 ----a-w- c:\windows\system32\drivers\avipbb.sys
2012-02-09 19:25 . 2012-02-09 19:25 1628672 ----a-w- c:\program files (x86)\artragesetup.msi
2012-02-07 16:33 . 2012-02-07 16:33 77910 ----a-w- C:\Fruit_Ninja.exe
2012-02-02 17:20 . 2012-02-02 17:20 272448 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-01-29 18:54 . 2010-03-06 19:39 2516 --sha-w- c:\programdata\KGyGaAvL.sys
2012-01-16 17:34 . 2012-01-16 17:33 14122048 ----a-w- c:\program files (x86)\HyperCam 3.exe
.
.
((((((((((((((((((((((((((((( SnapShot_2012-04-22_15.54.52 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-14 04:46 . 2012-04-22 17:58 71736 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
- 2009-11-24 11:36 . 2012-04-22 13:56 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-11-24 11:36 . 2012-04-22 17:56 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-04-28 11:13 . 2012-04-22 13:53 9054 c:\windows\system32\wdi\ERCQueuedResolutions.dat
+ 2010-04-28 11:13 . 2012-04-22 17:55 9054 c:\windows\system32\wdi\ERCQueuedResolutions.dat
+ 2012-04-22 17:56 . 2012-04-22 17:56 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-04-22 13:54 . 2012-04-22 13:54 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-04-22 13:54 . 2012-04-22 13:54 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-04-22 17:56 . 2012-04-22 17:56 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2011-06-20 02:40 . 2012-04-22 13:53 478584 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
+ 2011-06-20 02:40 . 2012-04-22 17:55 478584 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- 2009-07-14 05:01 . 2012-04-22 13:53 417228 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-04-22 17:55 417228 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
- 2009-07-14 04:45 . 2012-03-09 09:55 3607991 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2009-07-14 04:45 . 2012-04-22 17:58 3607991 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2010-02-24 15:37 . 2012-04-22 17:55 15356232 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1822403914-3001825825-2752914720-1000-12288.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"="c:\program files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" [2009-11-15 33120]
"LightScribe Control Panel"="c:\program files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-08-20 2363392]
"DAEMON Tools Pro Agent"="c:\program files (x86)\DAEMON Tools Pro\DTAgent.exe" [2011-03-17 842048]
"Optimizer Pro"="c:\program files (x86)\Optimizer Pro\OptProLauncher.exe" [2012-01-02 81912]
"NokiaSuite.exe"="c:\program files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" [2012-02-01 1083264]
"PC Suite Tray"="c:\program files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" [2011-12-16 1508408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"ATICustomerCare"="c:\program files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe" [2009-06-14 307200]
"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"CLMLServer"="c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [2009-06-03 103720]
"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"RemoteControl8"="c:\program files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe" [2009-04-15 91432]
"PDVD8LanguageShortcut"="c:\program files (x86)\CyberLink\PowerDVD8\Language\Language.exe" [2009-04-15 50472]
"UpdatePPShortCut"="c:\program files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"UCam_Menu"="c:\program files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2009-02-17 218408]
"LGODDFU"="c:\program files (x86)\lg_fwupdate\fwupdate.exe" [2010-03-05 557056]
"UpdatePSTShortCut"="c:\program files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" [2009-09-29 210216]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"EEventManager"="c:\progra~2\EPSONS~1\EVENTM~1\EEventManager.exe" [2008-05-07 591696]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2010-09-08 421888]
"WinampAgent"="c:\program files (x86)\Winamp\winampa.exe" [2010-11-30 74752]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-10-11 258512]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"NSU_agent"="c:\program files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe" [2012-02-28 190768]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-06-27 336384]
.
c:\users\ViVa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
MagicDisc.lnk - c:\program files (x86)\MagicDisc\MagicDisc.exe [2010-2-26 576000]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
SDL Trados 2007 Speed Launcher.lnk - c:\program files (x86)\SDL International\SDL Trados Synergy 2007\Synergy.exe [2008-10-2 765952]
TMMonitor.lnk - c:\program files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe [2011-12-14 258048]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~2\Bandoo\BndHook.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux9"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SDL FLEXlm License Server;SDL FLEXlm License Server;c:\program files (x86)\SDL International\License Server\Lmgrd.exe [2008-07-01 1372160]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-02-15 158856]
R2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2011-12-14 2984832]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 253600]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [x]
R3 nmwcdnsucx64;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsucx64.sys [x]
R3 nmwcdnsux64;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsux64.sys [x]
R3 s0016bus;Sony Ericsson Device 0016 driver (WDM);c:\windows\system32\DRIVERS\s0016bus.sys [x]
R3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;c:\windows\system32\DRIVERS\s0016mdfl.sys [x]
R3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;c:\windows\system32\DRIVERS\s0016mdm.sys [x]
R3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\s0016mgmt.sys [x]
R3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);c:\windows\system32\DRIVERS\s0016nd5.sys [x]
R3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\s0016obex.sys [x]
R3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);c:\windows\system32\DRIVERS\s0016unic.sys [x]
R3 USBADVAU;USB Advance Audio Interface;c:\windows\system32\drivers\cm11264.sys [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-06-27 365568]
S2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-11 86224]
S2 AntiVirWebService;Avira Web Protection;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2011-10-11 463824]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
S3 3xHybr64;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybr64.sys [x]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 PciPPorts;PCI ECP Parallel Port;c:\windows\system32\DRIVERS\PciPPorts.sys [x]
S3 PciSPorts;High-Speed PCI Serial Port;c:\windows\system32\DRIVERS\PciSPorts.sys [x]
S3 RTL2832U_IRHID;HID Infrared Remote Receiver;c:\windows\system32\DRIVERS\RTL2832U_IRHID.sys [2009-07-13 42912]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver;c:\windows\system32\drivers\RTL2832UBDA.sys [2009-07-06 114080]
S3 RTL2832UUSB;REALTEK 2832U USB Driver;c:\windows\system32\Drivers\RTL2832UUSB.sys [2009-07-06 38944]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-08-20 12:24 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder
.
2012-04-22 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 06:18]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Cm112Sound"="c:\windows\Syswow64\cm112.dll" [2009-10-09 8146944]
"driver.exe"="c:\windows\driver.exe" [BU]
"combofix"="c:\combofix\CF15126.3XE" [2009-07-14 344576]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.runescape.com/
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = <local>
IE: Add to AMV Convert Tool... - c:\program files (x86)\MP3 Player Utilities 4.00\AMVConverter\grab.html
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: MediaManager tool grab multimedia file - c:\program files (x86)\MP3 Player Utilities 4.00\MediaManager\grab.html
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\windows\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\windows\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\windows\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\windows\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\windows\WebIE.dll
LSP: c:\program files (x86)\Avira\AntiVir Desktop\avsda.dll
TCP: DhcpNameServer = 80.242.32.2 80.242.32.20
FF - ProfilePath - c:\users\ViVa\AppData\Roaming\Mozilla\Firefox\Profiles\2wzobazb.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-10 - (no file)
AddRemove-Akamai - c:\users\ViVa\AppData\Local\Akamai\uninstall.exe
.
.
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
c:\program files (x86)\CyberLink\Shared files\RichVideo.exe
c:\program files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
c:\windows\SysWOW64\rundll32.exe
c:\program files (x86)\Optimizer Pro\OptProSmartScan.exe
c:\program files (x86)\Optimizer Pro\OptProReminder.exe
c:\program files (x86)\Epson Software\Event Manager\EEventManager.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
c:\program files (x86)\DAEMON Tools Pro\DTShellHlp.exe
c:\program files (x86)\PC Connectivity Solution\ServiceLayer.exe
c:\program files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\program files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
.
**************************************************************************
.
Completion time: 2012-04-22 20:06:33 - machine was rebooted
ComboFix-quarantined-files.txt 2012-04-22 18:06
ComboFix2.txt 2012-04-22 15:57
ComboFix3.txt 2011-12-17 21:29
ComboFix4.txt 2011-12-17 18:49
.
Pre-Run: 86 615 855 104 bytes free
Post-Run: 86 291 509 248 bytes free
.
- - End Of File - - 113E610268393E9CFF3FDFF64976F717
Upload was successful

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu - pomalý počítač

#9 Příspěvek od Rudy »

OK, vše smazáno. RSIT mi totiž některé položky neukáže. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

viva2212
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 17 pro 2011 15:40

Re: prosím o kontrolu logu - pomalý počítač

#10 Příspěvek od viva2212 »

Rudy píše:OK, vše smazáno. RSIT mi totiž některé položky neukáže. Nastala nějaká změna?
Ďakujem krásne :) už je to OK, beží ako má :happy:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu - pomalý počítač

#11 Příspěvek od Rudy »

Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět