
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
spam na Facebooku
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: spam na Facebooku
Logfile of random's system information tool 1.08 (written by random/random)
Run by tereza at 2013-04-18 21:29:20
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 67 GB (46%) free of 146 GB
Total RAM: 2927 MB (48% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:29:27, on 18.4.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe
C:\Program Files (x86)\GIGABYTE\U7300 Utilities\CONRCtl.exe
C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Miranda IM\miranda32.exe
C:\Program Files\trend micro\tereza.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: HP ProtectTools Security Manager Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [TiVme Agent] C:\Program Files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe srec
O4 - Global Startup: Canon LBP2900 Status Window.lnk = C:\Windows\System32\spool\drivers\x64\3\CNAB4LAD.EXE
O4 - Global Startup: Remote Control.lnk = C:\Program Files (x86)\GIGABYTE\U7300 Utilities\CONRCtl.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-137 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-137 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.mcafee.com (HKLM)
O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)
O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Manager - Motorola, Inc. - C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
O23 - Service: Bluetooth Media Service - Motorola, Inc. - C:\Program Files\Motorola\Bluetooth\audiosrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola, Inc. - C:\Program Files\Motorola\Bluetooth\obexsrv.exe
O23 - Service: DEBridge - McAfee, Inc. - c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - c:\Windows\SysWOW64\flcdlock.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - McAfee, Inc. - c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: File Sanitizer for HP ProtectTools (HPFSService) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\system\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14488 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe"
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
taskeng.exe {8DE598EC-D594-4AFF-ADA5-D41B716AA922}
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe"
"c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system\uArcCapture.exe
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Motorola\Bluetooth\obexsrv.exe"
C:\windows\system32\CNAB4RPD.EXE
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe"
"c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe"
"taskhost.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe" /hidden
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe" srec
"C:\Program Files\Motorola\Bluetooth\audiosrv.exe"
"C:\Program Files (x86)\GIGABYTE\U7300 Utilities\CONRCtl.exe"
"C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe" -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4688.6d89000.1152226960 "C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox" E7CF176E110C211B 4688 "\\.\pipe\gecko-crash-server-pipe.4688" plugin
"C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe" --proxy-stub-channel=Flash4896.65121D90.15333 --host-broker-channel=Flash4896.65121D90.14351 --host-pid=4896 --host-npapi-version=27 --plugin-path="C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll"
"C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe" --channel=3388.001AF87C.519399039 --proxy-stub-channel=Flash4896.65121D90.15333 --plugin-path="C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4688.59eb100.1214071044 "C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox" E7CF176E110C211B 4688 "\\.\pipe\gecko-crash-server-pipe.4688" plugin
"C:\Program Files (x86)\Miranda IM\miranda32.exe"
taskeng.exe {202E00E6-67FA-4CBA-B7CD-28E98A37D538}
"C:\windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe10_ Global\UsGthrCtrlFltPipeMssGthrPipe10 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 1B2E495E-DE69-3761-FC96-FF5C7DD00535 -Reinvoke
"C:\Users\tereza\Desktop\Downloads\RSITx64.exe"
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\HPCeeScheduleFortereza.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP ProtectTools Security Manager Extension - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll [2009-12-03 2187528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
File Sanitizer for HP ProtectTools - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2009-12-12 117248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP ProtectTools Security Manager Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll [2009-12-03 1471752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-06-19 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-03-24 166424]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-03-24 391192]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-03-24 410648]
"BTMTrayAgent"=C:\Program Files\Motorola\Bluetooth\btmshell.dll [2010-06-10 24783624]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"TiVme Agent"=C:\Program Files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe [2010-01-25 114688]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-04 284696]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2009-10-23 563736]
"File Sanitizer"=C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2009-12-12 11265536]
"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2009-11-18 518656]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"UpdatePPShortCut"=C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]
[HKEY_CURRENT_USER\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"TiVme Agent"=C:\Program Files (x86)\GIGABYTE\vivoTVScheduleAgent.exe []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Canon LBP2900 Status Window.lnk - C:\Windows\System32\spool\drivers\x64\3\CNAB4LAD.EXE
Remote Control.lnk - C:\Program Files (x86)\GIGABYTE\U7300 Utilities\CONRCtl.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-02-20 269824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-04-18 21:29:20 ----D---- C:\rsit
2013-04-18 21:29:20 ----D---- C:\Program Files\trend micro
2013-04-11 03:01:55 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-04-11 03:01:55 ----A---- C:\windows\system32\ieui.dll
2013-04-11 03:01:54 ----A---- C:\windows\system32\ie4uinit.exe
2013-04-11 03:01:52 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-04-11 03:01:52 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-04-11 03:01:52 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-04-11 03:01:52 ----A---- C:\windows\system32\iesetup.dll
2013-04-11 03:01:52 ----A---- C:\windows\system32\iernonce.dll
2013-04-11 03:01:51 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-04-11 03:01:51 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-04-11 03:01:51 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-04-11 03:01:51 ----A---- C:\windows\system32\iesysprep.dll
2013-04-11 03:01:50 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-04-11 03:01:50 ----A---- C:\windows\system32\msfeeds.dll
2013-04-11 03:01:50 ----A---- C:\windows\system32\iertutil.dll
2013-04-11 03:01:48 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-04-11 03:01:47 ----A---- C:\windows\system32\urlmon.dll
2013-04-11 03:01:46 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-04-11 03:01:46 ----A---- C:\windows\system32\jscript.dll
2013-04-11 03:01:44 ----A---- C:\windows\system32\jscript9.dll
2013-04-11 03:01:43 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-04-11 03:01:41 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-04-11 03:01:41 ----A---- C:\windows\system32\jsproxy.dll
2013-04-11 03:01:40 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-04-11 03:01:37 ----A---- C:\windows\system32\wininet.dll
2013-04-11 03:01:35 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-04-11 03:01:34 ----A---- C:\windows\system32\ieframe.dll
2013-04-11 03:01:26 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-04-11 03:01:24 ----A---- C:\windows\system32\mshtml.dll
2013-04-10 20:35:05 ----A---- C:\windows\SYSWOW64\mstscax.dll
2013-04-10 20:35:05 ----A---- C:\windows\system32\mstscax.dll
2013-04-10 20:35:04 ----A---- C:\windows\SYSWOW64\aaclient.dll
2013-04-10 20:34:55 ----A---- C:\windows\SYSWOW64\tsgqec.dll
2013-04-10 20:34:55 ----A---- C:\windows\system32\tsgqec.dll
2013-04-10 20:34:55 ----A---- C:\windows\system32\aaclient.dll
2013-04-10 20:34:50 ----A---- C:\windows\system32\win32k.sys
2013-04-10 20:34:48 ----A---- C:\windows\system32\drivers\ntfs.sys
2013-04-10 20:34:48 ----A---- C:\windows\system32\drivers\fvevol.sys
2013-04-10 20:34:45 ----A---- C:\windows\system32\ntoskrnl.exe
2013-04-10 20:34:42 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-04-10 20:34:41 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-04-10 20:34:39 ----A---- C:\windows\SYSWOW64\apisetschema.dll
2013-04-10 20:34:39 ----A---- C:\windows\system32\smss.exe
2013-04-10 20:34:39 ----A---- C:\windows\system32\csrsrv.dll
2013-04-10 20:06:37 ----D---- C:\ProgramData\Kaspersky Lab
2013-04-10 18:50:17 ----N---- C:\windows\system32\MpSigStub.exe
2013-04-10 18:34:11 ----A---- C:\windows\myClean.bat
2013-04-09 00:09:38 ----A---- C:\ComboFix.txt
2013-04-08 23:53:36 ----D---- C:\$RECYCLE.BIN
2013-04-08 23:50:49 ----D---- C:\windows\temp
2013-04-07 22:25:00 ----A---- C:\windows\zip.exe
2013-04-07 22:25:00 ----A---- C:\windows\SWSC.exe
2013-04-07 22:25:00 ----A---- C:\windows\SWREG.exe
2013-04-07 22:25:00 ----A---- C:\windows\sed.exe
2013-04-07 22:25:00 ----A---- C:\windows\PEV.exe
2013-04-07 22:25:00 ----A---- C:\windows\NIRCMD.exe
2013-04-07 22:25:00 ----A---- C:\windows\MBR.exe
2013-04-07 22:25:00 ----A---- C:\windows\grep.exe
2013-04-07 22:24:46 ----D---- C:\Qoobox
2013-04-07 22:24:26 ----D---- C:\windows\erdnt
2013-04-07 20:22:53 ----A---- C:\AdwCleaner[S1].txt
2013-04-07 19:05:27 ----A---- C:\AdwCleaner[R1].txt
2013-04-07 17:24:29 ----D---- C:\Users\tereza\AppData\Roaming\Malwarebytes
2013-04-07 17:24:18 ----D---- C:\ProgramData\Malwarebytes
2013-04-07 17:24:15 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-04-07 17:24:15 ----A---- C:\windows\system32\drivers\mbam.sys
2013-04-07 15:01:33 ----A---- C:\windows\system32\drivers\aswSP.sys
2013-04-07 15:01:33 ----A---- C:\windows\system32\drivers\aswFsBlk.sys
2013-04-07 15:01:32 ----A---- C:\windows\system32\drivers\aswTdi.sys
2013-04-07 15:01:32 ----A---- C:\windows\system32\drivers\aswRdr2.sys
2013-04-07 15:01:30 ----A---- C:\windows\system32\drivers\aswVmm.sys
2013-04-07 15:01:30 ----A---- C:\windows\system32\drivers\aswSnx.sys
2013-04-07 15:01:29 ----A---- C:\windows\system32\drivers\aswRvrt.sys
2013-04-07 15:01:28 ----A---- C:\windows\system32\drivers\aswMonFlt.sys
2013-04-07 13:48:59 ----D---- C:\Program Files (x86)\trend micro
2013-04-07 13:31:27 ----D---- C:\Program Files\CCleaner
2013-04-06 22:49:24 ----SD---- C:\windows\SYSWOW64\Microsoft
2013-04-06 13:03:47 ----D---- C:\Program Files\AVAST Software
2013-04-06 13:02:47 ----D---- C:\ProgramData\AVAST Software
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\occache.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-04-06 10:29:35 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-04-06 10:29:35 ----A---- C:\windows\system32\elshyph.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\url.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\wextract.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\webcheck.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\vbscript.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\url.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\pngfilt.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\occache.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\msrating.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\msls31.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\mshtmler.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\mshtmled.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\mshta.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\msfeedssync.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\msfeedsbs.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\licmgr10.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\inseng.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\imgutil.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\iexpress.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\ieUnatt.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\iepeers.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\iedkcs32.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\ieapfltr.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\IEAdvpack.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\icardie.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\dxtrans.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\dxtmsft.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\XpsPrint.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\XpsGdiConverter.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\DWrite.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\d3d11.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\XpsPrint.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\XpsGdiConverter.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\WMPhoto.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\msmpeg2vdec.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\dxgi.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\d3d10warp.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\d2d1.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\WindowsCodecsExt.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\UIAnimation.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\dxgi.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10core.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10_1core.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10_1.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d2d1.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\WindowsCodecsExt.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\WindowsCodecs.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\UIAnimation.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\FntCache.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\DWrite.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d11.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10level9.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10core.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10_1core.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10_1.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10.dll
2013-04-02 20:05:54 ----D---- C:\Program Files (x86)\Free YouTube Downloader
2013-04-02 20:04:58 ----A---- C:\windows\system32\roboot64.exe
2013-03-21 20:27:21 ----A---- C:\windows\SYSWOW64\dhcpcore6.dll
2013-03-21 20:27:21 ----A---- C:\windows\system32\dhcpcore6.dll
2013-03-21 20:27:20 ----A---- C:\windows\SYSWOW64\dhcpcsvc6.dll
2013-03-21 20:27:20 ----A---- C:\windows\system32\dhcpcsvc6.dll
2013-03-21 20:27:18 ----A---- C:\windows\system32\drivers\RNDISMP.sys
2013-03-21 20:27:18 ----A---- C:\windows\system32\drivers\ndis.sys
2013-03-21 20:27:15 ----A---- C:\windows\SYSWOW64\nlaapi.dll
2013-03-21 20:27:15 ----A---- C:\windows\SYSWOW64\netevent.dll
2013-03-21 20:27:15 ----A---- C:\windows\SYSWOW64\netcorehc.dll
2013-03-21 20:27:15 ----A---- C:\windows\SYSWOW64\ncsi.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\nlasvc.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\nlaapi.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\netevent.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\netcorehc.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\ncsi.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\iphlpsvc.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\drivers\tcpipreg.sys
2013-03-21 20:27:09 ----A---- C:\windows\system32\OxpsConverter.exe
2013-03-21 20:26:03 ----A---- C:\windows\system32\taskhost.exe
2013-03-21 00:11:01 ----D---- C:\windows\system32\SPReview
2013-03-21 00:09:41 ----D---- C:\windows\system32\EventProviders
2013-03-20 23:56:49 ----A---- C:\windows\system32\drivers\usb8023.sys
======List of files/folders modified in the last 1 months======
2013-04-18 21:29:20 ----RD---- C:\Program Files
2013-04-18 11:56:11 ----D---- C:\windows\system32\config
2013-04-18 09:15:07 ----D---- C:\windows\System32
2013-04-18 09:15:07 ----D---- C:\windows\inf
2013-04-18 09:15:07 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-04-18 00:26:08 ----D---- C:\ProgramData\HPQLOG
2013-04-18 00:25:52 ----A---- C:\windows\SYSWOW64\log.txt
2013-04-17 16:27:11 ----A---- C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-04-17 16:21:57 ----D---- C:\windows\Prefetch
2013-04-17 16:21:27 ----SHD---- C:\System Volume Information
2013-04-17 16:16:46 ----D---- C:\ProgramData\PDFC
2013-04-12 19:38:13 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-04-12 19:29:10 ----D---- C:\windows\system32\drivers
2013-04-11 03:25:07 ----D---- C:\windows\winsxs
2013-04-11 03:25:02 ----D---- C:\windows\Panther
2013-04-11 03:21:42 ----D---- C:\windows\SysWOW64
2013-04-11 03:21:41 ----D---- C:\Program Files\Internet Explorer
2013-04-11 03:21:41 ----D---- C:\Program Files (x86)\Internet Explorer
2013-04-11 03:03:27 ----D---- C:\windows\debug
2013-04-11 03:03:23 ----A---- C:\windows\system32\MRT.exe
2013-04-11 03:02:26 ----D---- C:\windows\system32\catroot
2013-04-11 03:02:25 ----D---- C:\windows\system32\catroot2
2013-04-10 20:34:14 ----RD---- C:\Program Files (x86)
2013-04-10 20:26:01 ----D---- C:\Program Files\Common Files\McAfee
2013-04-10 20:06:37 ----D---- C:\ProgramData
2013-04-10 19:46:27 ----D---- C:\windows\rescache
2013-04-10 19:06:12 ----D---- C:\windows\system32\Tasks
2013-04-10 18:34:23 ----SHD---- C:\windows\Installer
2013-04-10 18:34:11 ----D---- C:\Windows
2013-04-09 22:54:20 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-04-08 23:54:10 ----A---- C:\windows\system.ini
2013-04-08 23:53:29 ----D---- C:\windows\system32\drivers\etc
2013-04-08 23:38:47 ----D---- C:\windows\SYSWOW64\drivers
2013-04-08 23:38:47 ----D---- C:\windows\AppPatch
2013-04-08 23:38:45 ----D---- C:\Program Files (x86)\Common Files
2013-04-07 20:54:08 ----D---- C:\windows\Tasks
2013-04-07 13:44:04 ----D---- C:\Users\tereza\AppData\Roaming\DAEMON Tools Lite
2013-04-07 13:44:00 ----D---- C:\Users\tereza\AppData\Roaming\Skype
2013-04-07 13:43:12 ----D---- C:\windows\Minidump
2013-04-07 13:43:12 ----D---- C:\windows\Logs
2013-04-06 13:05:30 ----D---- C:\Program Files (x86)\Google
2013-04-06 12:52:27 ----SD---- C:\Users\tereza\AppData\Roaming\Microsoft
2013-04-06 11:59:53 ----D---- C:\Users\tereza\AppData\Roaming\Mozilla
2013-04-06 10:50:29 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-04-06 10:50:29 ----D---- C:\windows\system32\cs-CZ
2013-04-06 10:50:26 ----D---- C:\windows\SYSWOW64\migration
2013-04-06 10:50:26 ----D---- C:\windows\SYSWOW64\en-US
2013-04-06 10:50:24 ----D---- C:\windows\system32\migration
2013-04-06 10:50:24 ----D---- C:\windows\system32\en-US
2013-04-06 10:50:24 ----D---- C:\windows\PolicyDefinitions
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\zh-HK
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\pt-PT
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\pt-BR
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\pl-PL
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\nl-NL
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\ko-KR
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\it-IT
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\hu-HU
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\fr-FR
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\fi-FI
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\el-GR
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\zh-TW
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\zh-CN
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\tr-TR
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\sv-SE
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\ru-RU
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\nb-NO
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\ja-JP
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\es-ES
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\de-DE
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\da-DK
2013-04-06 10:50:15 ----D---- C:\windows\system32\zh-HK
2013-04-06 10:50:15 ----D---- C:\windows\system32\tr-TR
2013-04-06 10:50:15 ----D---- C:\windows\system32\sv-SE
2013-04-06 10:50:15 ----D---- C:\windows\system32\pt-PT
2013-04-06 10:50:15 ----D---- C:\windows\system32\pt-BR
2013-04-06 10:50:15 ----D---- C:\windows\system32\pl-PL
2013-04-06 10:50:15 ----D---- C:\windows\system32\nl-NL
2013-04-06 10:50:15 ----D---- C:\windows\system32\ko-KR
2013-04-06 10:50:15 ----D---- C:\windows\system32\it-IT
2013-04-06 10:50:15 ----D---- C:\windows\system32\hu-HU
2013-04-06 10:50:15 ----D---- C:\windows\system32\fr-FR
2013-04-06 10:50:15 ----D---- C:\windows\system32\fi-FI
2013-04-06 10:50:15 ----D---- C:\windows\system32\es-ES
2013-04-06 10:50:15 ----D---- C:\windows\system32\el-GR
2013-04-06 10:50:14 ----D---- C:\windows\system32\zh-TW
2013-04-06 10:50:14 ----D---- C:\windows\system32\zh-CN
2013-04-06 10:50:14 ----D---- C:\windows\system32\ru-RU
2013-04-06 10:50:14 ----D---- C:\windows\system32\nb-NO
2013-04-06 10:50:14 ----D---- C:\windows\system32\ja-JP
2013-04-06 10:50:14 ----D---- C:\windows\system32\de-DE
2013-04-06 10:50:14 ----D---- C:\windows\system32\da-DK
2013-03-30 21:56:33 ----D---- C:\windows\system32\NDF
2013-03-23 14:37:32 ----D---- C:\windows\Microsoft.NET
2013-03-23 14:37:02 ----RSD---- C:\windows\assembly
2013-03-21 09:39:08 ----D---- C:\windows\system32\DriverStore
2013-03-21 09:19:54 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-03-21 09:19:54 ----D---- C:\Program Files (x86)\Windows Mail
2013-03-21 09:19:53 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-03-21 09:19:53 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-03-21 09:19:53 ----D---- C:\Program Files (x86)\Windows Media Player
2013-03-21 09:19:46 ----D---- C:\Program Files\Windows Sidebar
2013-03-21 09:19:46 ----D---- C:\Program Files\Windows Mail
2013-03-21 09:19:45 ----D---- C:\Program Files\Windows Portable Devices
2013-03-21 09:19:45 ----D---- C:\Program Files\DVD Maker
2013-03-21 09:19:44 ----D---- C:\Program Files\Windows Photo Viewer
2013-03-21 09:19:44 ----D---- C:\Program Files\Windows Media Player
2013-03-21 09:19:43 ----D---- C:\Program Files\Windows Journal
2013-03-21 09:19:40 ----D---- C:\Program Files\Common Files\System
2013-03-21 09:19:33 ----D---- C:\windows\servicing
2013-03-21 09:19:33 ----D---- C:\Program Files\Windows Defender
2013-03-21 09:19:32 ----D---- C:\windows\ehome
2013-03-21 09:19:06 ----D---- C:\windows\SYSWOW64\oobe
2013-03-21 09:19:04 ----D---- C:\windows\SYSWOW64\Setup
2013-03-21 09:19:04 ----D---- C:\windows\SYSWOW64\cs
2013-03-21 09:19:04 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-03-21 09:19:01 ----D---- C:\windows\SYSWOW64\sppui
2013-03-21 09:19:01 ----D---- C:\windows\SYSWOW64\manifeststore
2013-03-21 09:19:00 ----D---- C:\windows\SYSWOW64\wbem
2013-03-21 09:18:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-03-21 09:18:58 ----D---- C:\windows\SYSWOW64\Dism
2013-03-21 09:17:59 ----D---- C:\windows\system32\oobe
2013-03-21 09:17:56 ----D---- C:\windows\system32\Setup
2013-03-21 09:17:56 ----D---- C:\windows\system32\cs
2013-03-21 09:17:56 ----D---- C:\windows\system32\AdvancedInstallers
2013-03-21 09:17:50 ----D---- C:\windows\system32\sppui
2013-03-21 09:17:50 ----D---- C:\windows\system32\manifeststore
2013-03-21 09:17:47 ----D---- C:\windows\system32\drivers\cs-CZ
2013-03-21 09:17:46 ----D---- C:\windows\system32\wbem
2013-03-21 09:17:44 ----D---- C:\windows\system32\migwiz
2013-03-21 09:17:42 ----D---- C:\windows\system32\Dism
2013-03-21 09:16:07 ----RSD---- C:\windows\Fonts
2013-03-21 09:15:39 ----D---- C:\windows\system32\Boot
2013-03-21 00:23:20 ----A---- C:\windows\SYSWOW64\msclmd.dll
2013-03-21 00:23:17 ----A---- C:\windows\system32\msclmd.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [2013-03-07 65336]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-04 540696]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SafeBoot;SafeBoot; C:\windows\system32\drivers\SafeBoot.sys [2009-12-16 56648]
R0 SbAlg;SbAlg; C:\windows\system32\drivers\SbAlg.sys [2009-06-04 60160]
R0 SbFsLock;SbFsLock; C:\windows\system32\drivers\SbFsLock.sys [2009-12-16 15688]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2011-01-04 834544]
R1 aswRdr;aswRdr; C:\windows\System32\Drivers\aswrdr2.sys [2013-03-07 70992]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2013-03-07 1025808]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2013-03-07 377920]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2013-03-07 68920]
R1 RsvLock;RsvLock; C:\windows\system32\drivers\RsvLock.sys [2009-12-16 58184]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2013-03-07 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2013-03-07 80816]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 Accelerometer;HP Accelerometer; C:\windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-11-02 1209856]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 BTMUSB;Motorola Bluetooth Radio Service; C:\windows\System32\Drivers\btmusb.sys [2010-06-29 3232768]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2010-02-20 10300800]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 MBAMProtector;MBAMProtector; \??\C:\windows\system32\drivers\mbam.sys [2012-12-14 24176]
R3 netr28x;Ralink 802.11n Extensible Wireless Driver; C:\windows\system32\DRIVERS\netr28x.sys [2010-06-29 931168]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2009-12-18 1803904]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 aswVmm;aswVmm; C:\windows\system32\drivers\aswVmm.sys [2013-03-07 178624]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 BTMCOM;Bluetooth Serial Port; C:\windows\System32\Drivers\btmcom.sys [2010-04-09 52736]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2009-10-21 40760]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver; C:\windows\system32\drivers\RTL2832UBDA.sys [2010-07-01 224488]
S3 RTL2832UUSB;REALTEK 2832U USB Driver; C:\windows\System32\Drivers\RTL2832UUSB.sys [2010-07-01 39016]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2010-01-13 325152]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2009-11-02 16896]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files\Motorola\Bluetooth\obexsrv.exe [2010-05-20 677128]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2009-11-25 462088]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-06-19 103992]
R2 HP ProtectTools Service;HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [2009-11-19 36864]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [2010-05-10 90112]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-08-10 197536]
R2 HpFkCryptService;Drive Encryption Service; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2009-12-16 281192]
R2 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2009-12-12 297984]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2009-07-08 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-12-14 682344]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-12-14 398184]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2009-10-23 635416]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 uArcCapture;ArcCapture; C:\windows\system\uArcCapture.exe [2009-12-04 506472]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-11-04 2320920]
R3 Bluetooth Device Manager;Bluetooth Device Manager; C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe [2010-06-29 4181256]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files\Motorola\Bluetooth\audiosrv.exe [2010-05-20 1096968]
R3 DEBridge;DEBridge; c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe [2009-12-16 704512]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-01-04 1028096]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2012-08-10 1001376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-04-04 136176]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-04-09 256904]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; c:\Windows\SysWOW64\flcdlock.exe [2009-11-17 362040]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-01-04 647680]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-04-04 136176]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-06-11 136120]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-01-05 1255736]
-----------------EOF-----------------
Run by tereza at 2013-04-18 21:29:20
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 67 GB (46%) free of 146 GB
Total RAM: 2927 MB (48% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:29:27, on 18.4.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe
C:\Program Files (x86)\GIGABYTE\U7300 Utilities\CONRCtl.exe
C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Miranda IM\miranda32.exe
C:\Program Files\trend micro\tereza.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: HP ProtectTools Security Manager Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [TiVme Agent] C:\Program Files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe srec
O4 - Global Startup: Canon LBP2900 Status Window.lnk = C:\Windows\System32\spool\drivers\x64\3\CNAB4LAD.EXE
O4 - Global Startup: Remote Control.lnk = C:\Program Files (x86)\GIGABYTE\U7300 Utilities\CONRCtl.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-137 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-137 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.mcafee.com (HKLM)
O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)
O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Manager - Motorola, Inc. - C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
O23 - Service: Bluetooth Media Service - Motorola, Inc. - C:\Program Files\Motorola\Bluetooth\audiosrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola, Inc. - C:\Program Files\Motorola\Bluetooth\obexsrv.exe
O23 - Service: DEBridge - McAfee, Inc. - c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - c:\Windows\SysWOW64\flcdlock.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - McAfee, Inc. - c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: File Sanitizer for HP ProtectTools (HPFSService) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\system\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14488 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe"
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
taskeng.exe {8DE598EC-D594-4AFF-ADA5-D41B716AA922}
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe"
"c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system\uArcCapture.exe
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Motorola\Bluetooth\obexsrv.exe"
C:\windows\system32\CNAB4RPD.EXE
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe"
"c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe"
"taskhost.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe" /hidden
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe" srec
"C:\Program Files\Motorola\Bluetooth\audiosrv.exe"
"C:\Program Files (x86)\GIGABYTE\U7300 Utilities\CONRCtl.exe"
"C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe" -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4688.6d89000.1152226960 "C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox" E7CF176E110C211B 4688 "\\.\pipe\gecko-crash-server-pipe.4688" plugin
"C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe" --proxy-stub-channel=Flash4896.65121D90.15333 --host-broker-channel=Flash4896.65121D90.14351 --host-pid=4896 --host-npapi-version=27 --plugin-path="C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll"
"C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe" --channel=3388.001AF87C.519399039 --proxy-stub-channel=Flash4896.65121D90.15333 --plugin-path="C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4688.59eb100.1214071044 "C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox" E7CF176E110C211B 4688 "\\.\pipe\gecko-crash-server-pipe.4688" plugin
"C:\Program Files (x86)\Miranda IM\miranda32.exe"
taskeng.exe {202E00E6-67FA-4CBA-B7CD-28E98A37D538}
"C:\windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe10_ Global\UsGthrCtrlFltPipeMssGthrPipe10 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 1B2E495E-DE69-3761-FC96-FF5C7DD00535 -Reinvoke
"C:\Users\tereza\Desktop\Downloads\RSITx64.exe"
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\HPCeeScheduleFortereza.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP ProtectTools Security Manager Extension - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll [2009-12-03 2187528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
File Sanitizer for HP ProtectTools - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2009-12-12 117248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP ProtectTools Security Manager Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll [2009-12-03 1471752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-06-19 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-03-24 166424]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-03-24 391192]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-03-24 410648]
"BTMTrayAgent"=C:\Program Files\Motorola\Bluetooth\btmshell.dll [2010-06-10 24783624]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"TiVme Agent"=C:\Program Files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe [2010-01-25 114688]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-04 284696]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2009-10-23 563736]
"File Sanitizer"=C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2009-12-12 11265536]
"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2009-11-18 518656]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"UpdatePPShortCut"=C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]
[HKEY_CURRENT_USER\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"TiVme Agent"=C:\Program Files (x86)\GIGABYTE\vivoTVScheduleAgent.exe []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Canon LBP2900 Status Window.lnk - C:\Windows\System32\spool\drivers\x64\3\CNAB4LAD.EXE
Remote Control.lnk - C:\Program Files (x86)\GIGABYTE\U7300 Utilities\CONRCtl.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-02-20 269824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-04-18 21:29:20 ----D---- C:\rsit
2013-04-18 21:29:20 ----D---- C:\Program Files\trend micro
2013-04-11 03:01:55 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-04-11 03:01:55 ----A---- C:\windows\system32\ieui.dll
2013-04-11 03:01:54 ----A---- C:\windows\system32\ie4uinit.exe
2013-04-11 03:01:52 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-04-11 03:01:52 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-04-11 03:01:52 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-04-11 03:01:52 ----A---- C:\windows\system32\iesetup.dll
2013-04-11 03:01:52 ----A---- C:\windows\system32\iernonce.dll
2013-04-11 03:01:51 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-04-11 03:01:51 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-04-11 03:01:51 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-04-11 03:01:51 ----A---- C:\windows\system32\iesysprep.dll
2013-04-11 03:01:50 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-04-11 03:01:50 ----A---- C:\windows\system32\msfeeds.dll
2013-04-11 03:01:50 ----A---- C:\windows\system32\iertutil.dll
2013-04-11 03:01:48 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-04-11 03:01:47 ----A---- C:\windows\system32\urlmon.dll
2013-04-11 03:01:46 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-04-11 03:01:46 ----A---- C:\windows\system32\jscript.dll
2013-04-11 03:01:44 ----A---- C:\windows\system32\jscript9.dll
2013-04-11 03:01:43 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-04-11 03:01:41 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-04-11 03:01:41 ----A---- C:\windows\system32\jsproxy.dll
2013-04-11 03:01:40 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-04-11 03:01:37 ----A---- C:\windows\system32\wininet.dll
2013-04-11 03:01:35 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-04-11 03:01:34 ----A---- C:\windows\system32\ieframe.dll
2013-04-11 03:01:26 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-04-11 03:01:24 ----A---- C:\windows\system32\mshtml.dll
2013-04-10 20:35:05 ----A---- C:\windows\SYSWOW64\mstscax.dll
2013-04-10 20:35:05 ----A---- C:\windows\system32\mstscax.dll
2013-04-10 20:35:04 ----A---- C:\windows\SYSWOW64\aaclient.dll
2013-04-10 20:34:55 ----A---- C:\windows\SYSWOW64\tsgqec.dll
2013-04-10 20:34:55 ----A---- C:\windows\system32\tsgqec.dll
2013-04-10 20:34:55 ----A---- C:\windows\system32\aaclient.dll
2013-04-10 20:34:50 ----A---- C:\windows\system32\win32k.sys
2013-04-10 20:34:48 ----A---- C:\windows\system32\drivers\ntfs.sys
2013-04-10 20:34:48 ----A---- C:\windows\system32\drivers\fvevol.sys
2013-04-10 20:34:45 ----A---- C:\windows\system32\ntoskrnl.exe
2013-04-10 20:34:42 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-04-10 20:34:41 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-04-10 20:34:39 ----A---- C:\windows\SYSWOW64\apisetschema.dll
2013-04-10 20:34:39 ----A---- C:\windows\system32\smss.exe
2013-04-10 20:34:39 ----A---- C:\windows\system32\csrsrv.dll
2013-04-10 20:06:37 ----D---- C:\ProgramData\Kaspersky Lab
2013-04-10 18:50:17 ----N---- C:\windows\system32\MpSigStub.exe
2013-04-10 18:34:11 ----A---- C:\windows\myClean.bat
2013-04-09 00:09:38 ----A---- C:\ComboFix.txt
2013-04-08 23:53:36 ----D---- C:\$RECYCLE.BIN
2013-04-08 23:50:49 ----D---- C:\windows\temp
2013-04-07 22:25:00 ----A---- C:\windows\zip.exe
2013-04-07 22:25:00 ----A---- C:\windows\SWSC.exe
2013-04-07 22:25:00 ----A---- C:\windows\SWREG.exe
2013-04-07 22:25:00 ----A---- C:\windows\sed.exe
2013-04-07 22:25:00 ----A---- C:\windows\PEV.exe
2013-04-07 22:25:00 ----A---- C:\windows\NIRCMD.exe
2013-04-07 22:25:00 ----A---- C:\windows\MBR.exe
2013-04-07 22:25:00 ----A---- C:\windows\grep.exe
2013-04-07 22:24:46 ----D---- C:\Qoobox
2013-04-07 22:24:26 ----D---- C:\windows\erdnt
2013-04-07 20:22:53 ----A---- C:\AdwCleaner[S1].txt
2013-04-07 19:05:27 ----A---- C:\AdwCleaner[R1].txt
2013-04-07 17:24:29 ----D---- C:\Users\tereza\AppData\Roaming\Malwarebytes
2013-04-07 17:24:18 ----D---- C:\ProgramData\Malwarebytes
2013-04-07 17:24:15 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-04-07 17:24:15 ----A---- C:\windows\system32\drivers\mbam.sys
2013-04-07 15:01:33 ----A---- C:\windows\system32\drivers\aswSP.sys
2013-04-07 15:01:33 ----A---- C:\windows\system32\drivers\aswFsBlk.sys
2013-04-07 15:01:32 ----A---- C:\windows\system32\drivers\aswTdi.sys
2013-04-07 15:01:32 ----A---- C:\windows\system32\drivers\aswRdr2.sys
2013-04-07 15:01:30 ----A---- C:\windows\system32\drivers\aswVmm.sys
2013-04-07 15:01:30 ----A---- C:\windows\system32\drivers\aswSnx.sys
2013-04-07 15:01:29 ----A---- C:\windows\system32\drivers\aswRvrt.sys
2013-04-07 15:01:28 ----A---- C:\windows\system32\drivers\aswMonFlt.sys
2013-04-07 13:48:59 ----D---- C:\Program Files (x86)\trend micro
2013-04-07 13:31:27 ----D---- C:\Program Files\CCleaner
2013-04-06 22:49:24 ----SD---- C:\windows\SYSWOW64\Microsoft
2013-04-06 13:03:47 ----D---- C:\Program Files\AVAST Software
2013-04-06 13:02:47 ----D---- C:\ProgramData\AVAST Software
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\occache.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-04-06 10:29:35 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-04-06 10:29:35 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-04-06 10:29:35 ----A---- C:\windows\system32\elshyph.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\url.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-04-06 10:29:34 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\wextract.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\webcheck.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\vbscript.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\url.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\pngfilt.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\occache.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\msrating.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\msls31.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\mshtmler.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\mshtmled.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\mshta.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\msfeedssync.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\msfeedsbs.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\licmgr10.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\inseng.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\imgutil.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\iexpress.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\ieUnatt.exe
2013-04-06 10:29:34 ----A---- C:\windows\system32\iepeers.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\iedkcs32.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\ieapfltr.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\IEAdvpack.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\icardie.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\dxtrans.dll
2013-04-06 10:29:34 ----A---- C:\windows\system32\dxtmsft.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-04-06 10:28:15 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\XpsPrint.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\XpsGdiConverter.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\DWrite.dll
2013-04-06 10:28:15 ----A---- C:\windows\SYSWOW64\d3d11.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\XpsPrint.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\XpsGdiConverter.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\WMPhoto.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\msmpeg2vdec.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\dxgi.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\d3d10warp.dll
2013-04-06 10:28:15 ----A---- C:\windows\system32\d2d1.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\WindowsCodecsExt.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\UIAnimation.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\dxgi.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10core.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10_1core.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10_1.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d3d10.dll
2013-04-06 10:28:14 ----A---- C:\windows\SYSWOW64\d2d1.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\WindowsCodecsExt.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\WindowsCodecs.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\UIAnimation.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\FntCache.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\DWrite.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d11.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10level9.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10core.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10_1core.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10_1.dll
2013-04-06 10:28:14 ----A---- C:\windows\system32\d3d10.dll
2013-04-02 20:05:54 ----D---- C:\Program Files (x86)\Free YouTube Downloader
2013-04-02 20:04:58 ----A---- C:\windows\system32\roboot64.exe
2013-03-21 20:27:21 ----A---- C:\windows\SYSWOW64\dhcpcore6.dll
2013-03-21 20:27:21 ----A---- C:\windows\system32\dhcpcore6.dll
2013-03-21 20:27:20 ----A---- C:\windows\SYSWOW64\dhcpcsvc6.dll
2013-03-21 20:27:20 ----A---- C:\windows\system32\dhcpcsvc6.dll
2013-03-21 20:27:18 ----A---- C:\windows\system32\drivers\RNDISMP.sys
2013-03-21 20:27:18 ----A---- C:\windows\system32\drivers\ndis.sys
2013-03-21 20:27:15 ----A---- C:\windows\SYSWOW64\nlaapi.dll
2013-03-21 20:27:15 ----A---- C:\windows\SYSWOW64\netevent.dll
2013-03-21 20:27:15 ----A---- C:\windows\SYSWOW64\netcorehc.dll
2013-03-21 20:27:15 ----A---- C:\windows\SYSWOW64\ncsi.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\nlasvc.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\nlaapi.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\netevent.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\netcorehc.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\ncsi.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\iphlpsvc.dll
2013-03-21 20:27:15 ----A---- C:\windows\system32\drivers\tcpipreg.sys
2013-03-21 20:27:09 ----A---- C:\windows\system32\OxpsConverter.exe
2013-03-21 20:26:03 ----A---- C:\windows\system32\taskhost.exe
2013-03-21 00:11:01 ----D---- C:\windows\system32\SPReview
2013-03-21 00:09:41 ----D---- C:\windows\system32\EventProviders
2013-03-20 23:56:49 ----A---- C:\windows\system32\drivers\usb8023.sys
======List of files/folders modified in the last 1 months======
2013-04-18 21:29:20 ----RD---- C:\Program Files
2013-04-18 11:56:11 ----D---- C:\windows\system32\config
2013-04-18 09:15:07 ----D---- C:\windows\System32
2013-04-18 09:15:07 ----D---- C:\windows\inf
2013-04-18 09:15:07 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-04-18 00:26:08 ----D---- C:\ProgramData\HPQLOG
2013-04-18 00:25:52 ----A---- C:\windows\SYSWOW64\log.txt
2013-04-17 16:27:11 ----A---- C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-04-17 16:21:57 ----D---- C:\windows\Prefetch
2013-04-17 16:21:27 ----SHD---- C:\System Volume Information
2013-04-17 16:16:46 ----D---- C:\ProgramData\PDFC
2013-04-12 19:38:13 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-04-12 19:29:10 ----D---- C:\windows\system32\drivers
2013-04-11 03:25:07 ----D---- C:\windows\winsxs
2013-04-11 03:25:02 ----D---- C:\windows\Panther
2013-04-11 03:21:42 ----D---- C:\windows\SysWOW64
2013-04-11 03:21:41 ----D---- C:\Program Files\Internet Explorer
2013-04-11 03:21:41 ----D---- C:\Program Files (x86)\Internet Explorer
2013-04-11 03:03:27 ----D---- C:\windows\debug
2013-04-11 03:03:23 ----A---- C:\windows\system32\MRT.exe
2013-04-11 03:02:26 ----D---- C:\windows\system32\catroot
2013-04-11 03:02:25 ----D---- C:\windows\system32\catroot2
2013-04-10 20:34:14 ----RD---- C:\Program Files (x86)
2013-04-10 20:26:01 ----D---- C:\Program Files\Common Files\McAfee
2013-04-10 20:06:37 ----D---- C:\ProgramData
2013-04-10 19:46:27 ----D---- C:\windows\rescache
2013-04-10 19:06:12 ----D---- C:\windows\system32\Tasks
2013-04-10 18:34:23 ----SHD---- C:\windows\Installer
2013-04-10 18:34:11 ----D---- C:\Windows
2013-04-09 22:54:20 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-04-08 23:54:10 ----A---- C:\windows\system.ini
2013-04-08 23:53:29 ----D---- C:\windows\system32\drivers\etc
2013-04-08 23:38:47 ----D---- C:\windows\SYSWOW64\drivers
2013-04-08 23:38:47 ----D---- C:\windows\AppPatch
2013-04-08 23:38:45 ----D---- C:\Program Files (x86)\Common Files
2013-04-07 20:54:08 ----D---- C:\windows\Tasks
2013-04-07 13:44:04 ----D---- C:\Users\tereza\AppData\Roaming\DAEMON Tools Lite
2013-04-07 13:44:00 ----D---- C:\Users\tereza\AppData\Roaming\Skype
2013-04-07 13:43:12 ----D---- C:\windows\Minidump
2013-04-07 13:43:12 ----D---- C:\windows\Logs
2013-04-06 13:05:30 ----D---- C:\Program Files (x86)\Google
2013-04-06 12:52:27 ----SD---- C:\Users\tereza\AppData\Roaming\Microsoft
2013-04-06 11:59:53 ----D---- C:\Users\tereza\AppData\Roaming\Mozilla
2013-04-06 10:50:29 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-04-06 10:50:29 ----D---- C:\windows\system32\cs-CZ
2013-04-06 10:50:26 ----D---- C:\windows\SYSWOW64\migration
2013-04-06 10:50:26 ----D---- C:\windows\SYSWOW64\en-US
2013-04-06 10:50:24 ----D---- C:\windows\system32\migration
2013-04-06 10:50:24 ----D---- C:\windows\system32\en-US
2013-04-06 10:50:24 ----D---- C:\windows\PolicyDefinitions
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\zh-HK
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\pt-PT
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\pt-BR
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\pl-PL
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\nl-NL
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\ko-KR
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\it-IT
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\hu-HU
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\fr-FR
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\fi-FI
2013-04-06 10:50:18 ----D---- C:\windows\SYSWOW64\el-GR
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\zh-TW
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\zh-CN
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\tr-TR
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\sv-SE
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\ru-RU
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\nb-NO
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\ja-JP
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\es-ES
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\de-DE
2013-04-06 10:50:17 ----D---- C:\windows\SYSWOW64\da-DK
2013-04-06 10:50:15 ----D---- C:\windows\system32\zh-HK
2013-04-06 10:50:15 ----D---- C:\windows\system32\tr-TR
2013-04-06 10:50:15 ----D---- C:\windows\system32\sv-SE
2013-04-06 10:50:15 ----D---- C:\windows\system32\pt-PT
2013-04-06 10:50:15 ----D---- C:\windows\system32\pt-BR
2013-04-06 10:50:15 ----D---- C:\windows\system32\pl-PL
2013-04-06 10:50:15 ----D---- C:\windows\system32\nl-NL
2013-04-06 10:50:15 ----D---- C:\windows\system32\ko-KR
2013-04-06 10:50:15 ----D---- C:\windows\system32\it-IT
2013-04-06 10:50:15 ----D---- C:\windows\system32\hu-HU
2013-04-06 10:50:15 ----D---- C:\windows\system32\fr-FR
2013-04-06 10:50:15 ----D---- C:\windows\system32\fi-FI
2013-04-06 10:50:15 ----D---- C:\windows\system32\es-ES
2013-04-06 10:50:15 ----D---- C:\windows\system32\el-GR
2013-04-06 10:50:14 ----D---- C:\windows\system32\zh-TW
2013-04-06 10:50:14 ----D---- C:\windows\system32\zh-CN
2013-04-06 10:50:14 ----D---- C:\windows\system32\ru-RU
2013-04-06 10:50:14 ----D---- C:\windows\system32\nb-NO
2013-04-06 10:50:14 ----D---- C:\windows\system32\ja-JP
2013-04-06 10:50:14 ----D---- C:\windows\system32\de-DE
2013-04-06 10:50:14 ----D---- C:\windows\system32\da-DK
2013-03-30 21:56:33 ----D---- C:\windows\system32\NDF
2013-03-23 14:37:32 ----D---- C:\windows\Microsoft.NET
2013-03-23 14:37:02 ----RSD---- C:\windows\assembly
2013-03-21 09:39:08 ----D---- C:\windows\system32\DriverStore
2013-03-21 09:19:54 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-03-21 09:19:54 ----D---- C:\Program Files (x86)\Windows Mail
2013-03-21 09:19:53 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-03-21 09:19:53 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-03-21 09:19:53 ----D---- C:\Program Files (x86)\Windows Media Player
2013-03-21 09:19:46 ----D---- C:\Program Files\Windows Sidebar
2013-03-21 09:19:46 ----D---- C:\Program Files\Windows Mail
2013-03-21 09:19:45 ----D---- C:\Program Files\Windows Portable Devices
2013-03-21 09:19:45 ----D---- C:\Program Files\DVD Maker
2013-03-21 09:19:44 ----D---- C:\Program Files\Windows Photo Viewer
2013-03-21 09:19:44 ----D---- C:\Program Files\Windows Media Player
2013-03-21 09:19:43 ----D---- C:\Program Files\Windows Journal
2013-03-21 09:19:40 ----D---- C:\Program Files\Common Files\System
2013-03-21 09:19:33 ----D---- C:\windows\servicing
2013-03-21 09:19:33 ----D---- C:\Program Files\Windows Defender
2013-03-21 09:19:32 ----D---- C:\windows\ehome
2013-03-21 09:19:06 ----D---- C:\windows\SYSWOW64\oobe
2013-03-21 09:19:04 ----D---- C:\windows\SYSWOW64\Setup
2013-03-21 09:19:04 ----D---- C:\windows\SYSWOW64\cs
2013-03-21 09:19:04 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-03-21 09:19:01 ----D---- C:\windows\SYSWOW64\sppui
2013-03-21 09:19:01 ----D---- C:\windows\SYSWOW64\manifeststore
2013-03-21 09:19:00 ----D---- C:\windows\SYSWOW64\wbem
2013-03-21 09:18:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-03-21 09:18:58 ----D---- C:\windows\SYSWOW64\Dism
2013-03-21 09:17:59 ----D---- C:\windows\system32\oobe
2013-03-21 09:17:56 ----D---- C:\windows\system32\Setup
2013-03-21 09:17:56 ----D---- C:\windows\system32\cs
2013-03-21 09:17:56 ----D---- C:\windows\system32\AdvancedInstallers
2013-03-21 09:17:50 ----D---- C:\windows\system32\sppui
2013-03-21 09:17:50 ----D---- C:\windows\system32\manifeststore
2013-03-21 09:17:47 ----D---- C:\windows\system32\drivers\cs-CZ
2013-03-21 09:17:46 ----D---- C:\windows\system32\wbem
2013-03-21 09:17:44 ----D---- C:\windows\system32\migwiz
2013-03-21 09:17:42 ----D---- C:\windows\system32\Dism
2013-03-21 09:16:07 ----RSD---- C:\windows\Fonts
2013-03-21 09:15:39 ----D---- C:\windows\system32\Boot
2013-03-21 00:23:20 ----A---- C:\windows\SYSWOW64\msclmd.dll
2013-03-21 00:23:17 ----A---- C:\windows\system32\msclmd.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [2013-03-07 65336]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-04 540696]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SafeBoot;SafeBoot; C:\windows\system32\drivers\SafeBoot.sys [2009-12-16 56648]
R0 SbAlg;SbAlg; C:\windows\system32\drivers\SbAlg.sys [2009-06-04 60160]
R0 SbFsLock;SbFsLock; C:\windows\system32\drivers\SbFsLock.sys [2009-12-16 15688]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2011-01-04 834544]
R1 aswRdr;aswRdr; C:\windows\System32\Drivers\aswrdr2.sys [2013-03-07 70992]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2013-03-07 1025808]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2013-03-07 377920]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2013-03-07 68920]
R1 RsvLock;RsvLock; C:\windows\system32\drivers\RsvLock.sys [2009-12-16 58184]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2013-03-07 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2013-03-07 80816]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 Accelerometer;HP Accelerometer; C:\windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-11-02 1209856]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 BTMUSB;Motorola Bluetooth Radio Service; C:\windows\System32\Drivers\btmusb.sys [2010-06-29 3232768]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2010-02-20 10300800]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 MBAMProtector;MBAMProtector; \??\C:\windows\system32\drivers\mbam.sys [2012-12-14 24176]
R3 netr28x;Ralink 802.11n Extensible Wireless Driver; C:\windows\system32\DRIVERS\netr28x.sys [2010-06-29 931168]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2009-12-18 1803904]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 aswVmm;aswVmm; C:\windows\system32\drivers\aswVmm.sys [2013-03-07 178624]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 BTMCOM;Bluetooth Serial Port; C:\windows\System32\Drivers\btmcom.sys [2010-04-09 52736]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2009-10-21 40760]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver; C:\windows\system32\drivers\RTL2832UBDA.sys [2010-07-01 224488]
S3 RTL2832UUSB;REALTEK 2832U USB Driver; C:\windows\System32\Drivers\RTL2832UUSB.sys [2010-07-01 39016]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2010-01-13 325152]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2009-11-02 16896]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files\Motorola\Bluetooth\obexsrv.exe [2010-05-20 677128]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2009-11-25 462088]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-06-19 103992]
R2 HP ProtectTools Service;HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [2009-11-19 36864]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [2010-05-10 90112]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-08-10 197536]
R2 HpFkCryptService;Drive Encryption Service; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2009-12-16 281192]
R2 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2009-12-12 297984]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2009-07-08 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-12-14 682344]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-12-14 398184]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2009-10-23 635416]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 uArcCapture;ArcCapture; C:\windows\system\uArcCapture.exe [2009-12-04 506472]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-11-04 2320920]
R3 Bluetooth Device Manager;Bluetooth Device Manager; C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe [2010-06-29 4181256]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files\Motorola\Bluetooth\audiosrv.exe [2010-05-20 1096968]
R3 DEBridge;DEBridge; c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe [2009-12-16 704512]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-01-04 1028096]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2012-08-10 1001376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-04-04 136176]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-04-09 256904]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; c:\Windows\SysWOW64\flcdlock.exe [2009-11-17 362040]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-01-04 647680]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-04-04 136176]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-06-11 136120]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-01-05 1255736]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119526
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spam na Facebooku
Dvouklikem na soubor C:\Program Files\trend micro\tereza.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
Klikněte na >FixChecked<. Restartujte PCO15 - Trusted Zone: http://*.mcafee.com (HKLM)
O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)
O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
- Rudy
- Site Admin
- Příspěvky: 119526
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spam na Facebooku
Žádný jiný problém už nevidím.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spam na Facebooku
je to stale stejne ....mam ucet na fb zrusit? a zalozit novy? ci to nekdy prejde?
- Rudy
- Site Admin
- Příspěvky: 119526
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spam na Facebooku
No nevím. Ještě zkuste stáhnout, nainstalovat a spustit Superantispyware: http://www.stahuj.centrum.cz/utility_a_ ... tispyware/ . Udělejte sken a smažte vše, co najde. Změnila jste heslo na FB?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spam na Facebooku
heslo jsem zmenila jiz asi desetkrat...provedla jsem scan a veci vymazala...a stale nepomaha='(
- Rudy
- Site Admin
- Příspěvky: 119526
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spam na Facebooku
PC je čistý. Pak se musí někdo dostávat přímo na váš profil.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spam na Facebooku
A je najaka moznost se toho zbavit?? ci mam profil smazat?
- Rudy
- Site Admin
- Příspěvky: 119526
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spam na Facebooku
Ještě zkusíme sken AVPTool: http://www.viry.cz/forum/viewtopic.php?f=29&t=58179 . Po skončení akce dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spam na Facebooku
AVP Tool mi nic nenasel...a tudiz mi v kolonce Detectedn threats nelze nic ulozit a udelt tak log...
- Rudy
- Site Admin
- Příspěvky: 119526
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spam na Facebooku
Pak vám nezbude nic jiného, než si založit nový profil, příp. napsat adminovi Facebooku a popsat mu problém. Váš PC je čistý.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spam na Facebooku
Dekuj za venovany cas a jdu to zkusit resit dal.
- Rudy
- Site Admin
- Příspěvky: 119526
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spam na Facebooku
Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.