
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosim o kontrolu logu (PC zamrza)
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 26
- Registrován: 30 led 2011 20:22
Prosim o kontrolu logu (PC zamrza)
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kinderko at 2013-07-14 10:02:44
Microsoft Windows 7 Home Premium
System drive C: has 171 GB (45%) free of 377 GB
Total RAM: 3966 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:02:47, on 14. 7. 2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Kinderko\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files\trend micro\Kinderko.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.delta-search.com/?babsrc=HP ... 4&tsp=4942
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0035382 - {11111111-1111-1111-1111-110311531182} - C:\Program Files (x86)\hosts\hosts-bho.dll
O2 - BHO: WebCake Layers - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Kinderko\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Kinderko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [WebCake Desktop] "C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3271236306-1146125472-3967744969-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3271236306-1146125472-3967744969-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BrowserDefendert - Unknown owner - C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WebCake Desktop Updater - WebCake LLC - C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9887 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe" /PROTECT
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe" "C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe" -Embedding
taskeng.exe {F0E6D00F-69FB-4864-AACA-733F07A93961}
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
szndesktop.exe default start
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Users\Kinderko\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Java\jre7\bin\javaw.exe" -Xms512m -Xmx1024m -jar "C:\Users\Kinderko\Desktop\Minecraft Server\minecraft_server.1.6.1.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"taskhost.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=680.1cc21e00.755417330 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 680 "\\.\pipe\gecko-crash-server-pipe.680" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --proxy-stub-channel=Flash3264.6CCDD910.9807 --host-broker-channel=Flash3264.6CCDD910.13296 --host-pid=3264 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --channel=2556.003DF5E0.1517584147 --proxy-stub-channel=Flash3264.6CCDD910.9807 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play -Embedding
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Kinderko\Desktop\Downloads\RSITx64(1).exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\
05dd836e-2cbd-4204-9ff3-2f8a8665967d@a8876730-fb0c-4057-a2fc-f9c09d438e81.com
ffxtlbr@delta.com
plugin@getwebcake.com
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\
babylon.xml
delta.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-03 553376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-03 211360]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}]
hosts - C:\Program Files (x86)\hosts\hosts-bho.dll [2013-07-11 748032]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}]
WebCake - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll [2013-06-21 197912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-06-03 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}]
delta Helper Object - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll [2013-05-20 295832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-06-03 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{82E1477C-B154-48D3-9891-33D83C26BCD3} - Delta Toolbar - C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll [2013-05-20 284056]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-15 9644576]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-01-12 2918656]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"cz.seznam.software.autoupdate"=C:\Users\Kinderko\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Kinderko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"uTorrent"=C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe [2013-06-01 1043536]
"WebCake Desktop"=C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe [2013-06-21 47896]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-06-28 2255184]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2013-07-14 09:54:38 ----D---- C:\rsit
2013-07-14 09:54:38 ----D---- C:\Program Files\trend micro
2013-07-13 15:03:35 ----D---- C:\Program Files (x86)\Intelore
2013-07-13 14:52:56 ----D---- C:\ProgramData\BrowserDefender
2013-07-13 14:52:36 ----D---- C:\Users\Kinderko\AppData\Roaming\BabSolution
2013-07-13 14:52:33 ----D---- C:\Program Files (x86)\Delta
2013-07-13 14:52:03 ----D---- C:\Users\Kinderko\AppData\Roaming\WebCake
2013-07-13 14:52:03 ----D---- C:\Program Files (x86)\WebCake
2013-07-13 14:51:56 ----D---- C:\ProgramData\Tarma Installer
2013-07-13 14:51:56 ----D---- C:\ProgramData\Babylon
2013-07-13 14:51:55 ----D---- C:\Users\Kinderko\AppData\Roaming\Babylon
2013-07-13 14:51:42 ----D---- C:\Users\Kinderko\AppData\Roaming\ExpressFiles
2013-07-11 22:37:56 ----D---- C:\ProgramData\Real
2013-07-11 22:37:47 ----D---- C:\Users\Kinderko\AppData\Roaming\OpenCandy
2013-07-11 22:37:47 ----D---- C:\Program Files (x86)\DownLite
2013-07-11 22:37:32 ----D---- C:\Program Files (x86)\hosts
2013-07-10 16:07:23 ----D---- C:\Program Files (x86)\Valve
2013-07-05 21:33:28 ----AH---- C:\Windows\system32\hamachi.sys
2013-07-05 21:33:26 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-07-05 20:00:10 ----D---- C:\Users\Kinderko\AppData\Roaming\.minecraft
2013-07-05 12:14:46 ----D---- C:\Users\Kinderko\AppData\Roaming\dvdcss
2013-07-03 18:53:00 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-07-03 18:52:59 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2013-07-03 18:52:59 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-07-02 23:19:06 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-07-01 15:38:20 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-07-01 15:37:58 ----A---- C:\Windows\system32\nvsvcr.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvopencl.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvoglv64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvoglshim64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvinitx.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\NvIFR64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\NvFBC64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuvid.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuda.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcompiler.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-06-29 10:46:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2013-06-29 10:46:13 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-06-29 10:46:07 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2013-06-29 10:46:07 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-06-29 10:46:04 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-06-29 10:46:00 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2013-06-29 10:46:00 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-06-29 10:43:49 ----HD---- C:\Windows\msdownld.tmp
2013-06-29 10:43:48 ----D---- C:\Windows\SYSWOW64\directx
2013-06-29 10:27:27 ----D---- C:\Program Files (x86)\Need for Speed Most Wanted 2012
2013-06-26 23:30:06 ----D---- C:\Users\Kinderko\AppData\Roaming\ProtectDisc
2013-06-26 23:28:59 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\xinput1_3.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\d3dx10.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\xinput1_2.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-06-26 23:28:14 ----D---- C:\Program Files (x86)\ProtectDisc Driver Installer
2013-06-26 23:28:14 ----A---- C:\Windows\system32\drivers\acedrv11.sys
2013-06-25 12:18:18 ----D---- C:\Program Files (x86)\Electronic Arts
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xinput1_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-06-23 14:38:05 ----D---- C:\Program Files (x86)\Rockstar Games
2013-06-21 05:16:02 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2013-06-20 15:21:32 ----A---- C:\Windows\system32\drivers\ssudmdm.sys
2013-06-20 15:21:32 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2013-06-20 15:08:32 ----D---- C:\Program Files\SAMSUNG
2013-06-20 15:08:16 ----D---- C:\ProgramData\Samsung
2013-06-15 12:38:38 ----D---- C:\Windows\Minidump
2013-06-15 12:02:39 ----D---- C:\Program Files (x86)\2K Games
2013-06-13 17:04:46 ----D---- C:\ProgramData\TEMP
2013-06-13 17:04:04 ----D---- C:\Program Files (x86)\Seznam.cz
2013-06-13 17:03:44 ----D---- C:\Users\Kinderko\AppData\Roaming\Seznam.cz
2013-06-13 17:02:54 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-06-13 17:02:50 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-06-11 14:30:37 ----HD---- C:\ProgramData\CanonIJScan
2013-06-10 14:25:25 ----D---- C:\Users\Kinderko\AppData\Roaming\DAEMON Tools Lite
2013-06-10 14:25:23 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-06-08 21:55:38 ----D---- C:\Users\Kinderko\AppData\Roaming\Canon
2013-06-08 13:02:35 ----D---- C:\ProgramData\Rockstar Games
2013-06-06 15:04:39 ----D---- C:\Program Files (x86)\Canon
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNHMCA.dll
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNC_B5U.dll
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNC_B5L.dll
2013-06-06 15:04:33 ----HD---- C:\ProgramData\CanonBJ
2013-06-06 15:04:31 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNHMCA6.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5L.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5I.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5C.dll
2013-06-06 15:04:26 ----A---- C:\Windows\system32\CNMLMB5.DLL
2013-06-06 15:04:21 ----HD---- C:\Program Files\CanonBJ
2013-06-05 22:07:54 ----D---- C:\Program Files\Common Files\DESIGNER
2013-06-05 22:07:31 ----D---- C:\Program Files\Microsoft Synchronization Services
2013-06-05 22:07:15 ----D---- C:\Windows\PCHEALTH
2013-06-05 22:07:15 ----D---- C:\Program Files\Microsoft Sync Framework
2013-06-05 22:07:15 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2013-06-05 22:06:02 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-06-05 22:05:23 ----D---- C:\Program Files\Microsoft Analysis Services
2013-06-05 22:05:23 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2013-06-05 22:05:14 ----D---- C:\Program Files (x86)\Microsoft Office
2013-06-05 22:05:13 ----D---- C:\Program Files\Microsoft Office
2013-06-05 22:05:12 ----D---- C:\ProgramData\Microsoft Help
2013-06-05 22:05:01 ----RHD---- C:\MSOCache
2013-06-04 13:11:41 ----D---- C:\Users\Kinderko\AppData\Roaming\Mozilla
2013-06-04 13:11:37 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-06-03 20:21:05 ----D---- C:\Users\Kinderko\AppData\Roaming\NVIDIA
2013-06-03 20:17:35 ----D---- C:\ProgramData\Sun
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\java.exe
2013-06-03 20:17:19 ----D---- C:\Program Files (x86)\Java
2013-06-03 20:04:04 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-06-03 20:04:04 ----A---- C:\Windows\system32\javaws.exe
2013-06-03 20:04:04 ----A---- C:\Windows\system32\deployJava1.dll
2013-06-03 20:04:02 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-06-03 20:04:02 ----A---- C:\Windows\system32\javaw.exe
2013-06-03 20:04:02 ----A---- C:\Windows\system32\java.exe
2013-06-03 20:03:57 ----D---- C:\Program Files\Java
2013-06-03 19:28:59 ----D---- C:\ProgramData\ESET
2013-06-03 19:28:59 ----D---- C:\Program Files\ESET
2013-06-03 19:21:14 ----D---- C:\Program Files\CCleaner
2013-06-03 19:07:25 ----D---- C:\Users\Kinderko\AppData\Roaming\ESET
2013-06-03 15:31:56 ----D---- C:\Program Files (x86)\DsNET Corp
2013-06-01 11:33:40 ----D---- C:\Users\Kinderko\AppData\Roaming\vlc
2013-06-01 11:33:22 ----D---- C:\Program Files (x86)\VideoLAN
2013-06-01 11:12:30 ----D---- C:\Users\Kinderko\AppData\Roaming\uTorrent
2013-06-01 11:09:50 ----D---- C:\Users\Kinderko\AppData\Roaming\WinRAR
2013-06-01 11:09:11 ----D---- C:\Program Files (x86)\WinRAR
2013-05-31 19:40:15 ----D---- C:\Users\Kinderko\AppData\Roaming\Macromedia
2013-05-31 19:40:15 ----D---- C:\Users\Kinderko\AppData\Roaming\Adobe
2013-05-31 19:39:36 ----D---- C:\ProgramData\McAfee
2013-05-31 19:39:34 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-31 19:39:33 ----D---- C:\Windows\SYSWOW64\Macromed
2013-05-31 19:39:33 ----D---- C:\Windows\system32\Macromed
2013-05-31 12:00:47 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2013-05-31 11:33:27 ----D---- C:\Users\Kinderko\AppData\Roaming\Skype
2013-05-31 11:33:24 ----RD---- C:\Program Files (x86)\Skype
2013-05-31 11:33:21 ----D---- C:\ProgramData\Skype
2013-05-30 23:32:46 ----N---- C:\Windows\system32\MpSigStub.exe
2013-05-30 19:54:31 ----D---- C:\Windows\Panther
2013-05-30 19:39:17 ----D---- C:\Program Files (x86)\MozBackup
2013-05-30 19:36:50 ----D---- C:\ProgramData\Mozilla
2013-05-30 19:26:56 ----D---- C:\ProgramData\NVIDIA
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvsvc64.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvshext.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-30 19:26:19 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-05-30 19:26:19 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-30 19:26:15 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-30 19:26:13 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-05-30 19:25:43 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-05-30 19:24:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-05-30 19:24:38 ----SHD---- C:\Windows\Installer
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\PresentationHost.exe
2013-05-30 19:24:17 ----A---- C:\Windows\system32\netfxperf.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\mscoree.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\dfshim.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvumdshimx.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvhdap64.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvdispgenco6432018.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvdispco6432018.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvapi64.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-05-30 19:23:02 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-30 19:22:45 ----D---- C:\NVIDIA
2013-05-30 19:15:22 ----D---- C:\ProgramData\EPU
2013-05-30 19:14:10 ----RA---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2013-05-30 19:14:10 ----RA---- C:\Windows\SYSWOW64\AsIO.dll
2013-05-30 19:14:09 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp64.sys
2013-05-30 19:14:09 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp32.sys
2013-05-30 19:14:08 ----D---- C:\Program Files (x86)\ASUS
2013-05-30 19:13:31 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-05-30 19:13:31 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-05-30 19:13:31 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-05-30 19:12:51 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-05-30 19:12:51 ----D---- C:\Program Files\Realtek
2013-05-30 19:12:42 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSWOW64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSTSX64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSTSH64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSHP64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-05-30 19:12:39 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-05-30 19:12:39 ----A---- C:\Windows\system32\RtkApi64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEED64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTCOM64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RCoInst64.dll
2013-05-30 19:12:36 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-05-30 19:12:36 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-05-30 19:12:35 ----A---- C:\Windows\system32\FMAPO64.dll
2013-05-30 19:12:34 ----D---- C:\Program Files (x86)\Realtek
2013-05-30 19:12:34 ----A---- C:\Windows\system32\AERTAR64.dll
2013-05-30 19:12:34 ----A---- C:\Windows\system32\AERTAC64.dll
2013-05-30 19:12:33 ----HD---- C:\Program Files (x86)\Temp
2013-05-30 19:12:33 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-05-30 19:12:32 ----R---- C:\Windows\RtlExUpd.dll
2013-05-30 19:12:16 ----RA---- C:\Windows\SYSWOW64\CSVer.dll
2013-05-30 19:12:16 ----D---- C:\Program Files (x86)\Intel
2013-05-30 19:12:11 ----D---- C:\Intel
2013-05-30 19:10:36 ----A---- C:\Windows\Ascd_log.ini
2013-05-30 19:10:06 ----D---- C:\Windows\SoftwareDistribution
2013-05-30 19:09:40 ----A---- C:\Windows\Language_trs.ini
2013-05-30 19:09:35 ----A---- C:\Windows\Ascd_tmp.ini
2013-05-30 19:08:16 ----D---- C:\Users\Kinderko\AppData\Roaming\Identities
2013-05-30 19:08:01 ----SD---- C:\Users\Kinderko\AppData\Roaming\Microsoft
2013-05-30 19:08:01 ----D---- C:\Users\Kinderko\AppData\Roaming\Media Center Programs
2013-05-30 19:06:48 ----SHD---- C:\Recovery
2013-05-30 18:55:43 ----D---- C:\Windows\Prefetch
2013-05-30 18:55:21 ----ASH---- C:\pagefile.sys
2013-05-30 18:55:20 ----SHD---- C:\System Volume Information
2013-05-30 18:55:20 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 3 months======
2013-07-14 10:02:46 ----D---- C:\Windows\Temp
2013-07-14 09:54:38 ----RD---- C:\Program Files
2013-07-14 09:47:10 ----D---- C:\Windows\inf
2013-07-14 09:47:10 ----D---- C:\Windows
2013-07-14 09:40:51 ----D---- C:\Windows\system32\config
2013-07-14 09:34:06 ----D---- C:\Windows\System32
2013-07-14 09:34:06 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-14 09:29:51 ----D---- C:\Windows\system32\Tasks
2013-07-13 15:03:35 ----RD---- C:\Program Files (x86)
2013-07-13 14:52:56 ----HD---- C:\ProgramData
2013-07-08 16:08:47 ----D---- C:\Windows\Logs
2013-07-05 21:32:50 ----D---- C:\Windows\system32\drivers
2013-07-04 20:23:30 ----D---- C:\Windows\system32\catroot2
2013-07-03 18:53:09 ----D---- C:\Program Files (x86)\Common Files
2013-07-03 18:53:00 ----D---- C:\Windows\SysWOW64
2013-07-03 18:52:46 ----RSD---- C:\Windows\assembly
2013-07-01 15:39:04 ----D---- C:\Windows\system32\DriverStore
2013-07-01 15:39:04 ----D---- C:\Windows\system32\catroot
2013-07-01 11:25:02 ----D---- C:\Windows\winsxs
2013-06-30 17:04:46 ----D---- C:\Windows\system32\wdi
2013-06-29 10:46:20 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-06-25 12:18:07 ----D---- C:\Windows\Microsoft.NET
2013-06-09 12:42:08 ----D---- C:\Windows\debug
2013-06-06 15:26:41 ----D---- C:\Windows\system32\drivers\UMDF
2013-06-06 15:04:39 ----RSD---- C:\Windows\Media
2013-06-06 15:04:39 ----D---- C:\Windows\twain_32
2013-06-05 22:08:00 ----RSD---- C:\Windows\Fonts
2013-06-05 22:07:54 ----D---- C:\Windows\ShellNew
2013-06-05 22:07:54 ----D---- C:\Program Files\Common Files
2013-06-05 22:07:23 ----D---- C:\Program Files (x86)\MSBuild
2013-06-05 22:07:15 ----SD---- C:\ProgramData\Microsoft
2013-06-05 22:05:48 ----D---- C:\Program Files\Common Files\System
2013-06-05 22:05:48 ----A---- C:\Windows\win.ini
2013-06-02 18:18:55 ----D---- C:\Windows\LiveKernelReports
2013-05-31 19:39:35 ----D---- C:\Windows\Tasks
2013-05-30 19:54:07 ----D---- C:\Windows\Setup
2013-05-30 19:27:12 ----RD---- C:\Users
2013-05-30 19:26:23 ----D---- C:\Windows\Help
2013-05-30 19:25:08 ----D---- C:\Windows\system32\CodeIntegrity
2013-05-30 19:24:45 ----D---- C:\Windows\SYSWOW64\en-US
2013-05-30 19:24:45 ----D---- C:\Windows\system32\en-US
2013-05-30 19:14:10 ----D---- C:\Windows\SYSWOW64\drivers
2013-05-30 19:13:01 ----D---- C:\Windows\system32\restore
2013-05-30 19:08:14 ----SHD---- C:\$Recycle.Bin
2013-05-30 19:05:43 ----D---- C:\Windows\rescache
2013-05-30 18:57:27 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-06-13 283200]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2013-06-26 335288]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2010-12-21 170640]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2010-12-21 50624]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-12-21 34144]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-15 2225952]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-01-12 325152]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-08-29 102368]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-08-29 203104]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BrowserDefendert;BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [2013-05-23 2827728]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2011-01-12 810144]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-06-28 2470736]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
R2 WebCake Desktop Updater;WebCake Desktop Updater; C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe [2013-06-21 23552]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11 256904]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2011-01-12 42360]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 51456888]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-07-02 117144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Run by Kinderko at 2013-07-14 10:02:44
Microsoft Windows 7 Home Premium
System drive C: has 171 GB (45%) free of 377 GB
Total RAM: 3966 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:02:47, on 14. 7. 2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Kinderko\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files\trend micro\Kinderko.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.delta-search.com/?babsrc=HP ... 4&tsp=4942
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0035382 - {11111111-1111-1111-1111-110311531182} - C:\Program Files (x86)\hosts\hosts-bho.dll
O2 - BHO: WebCake Layers - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Kinderko\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Kinderko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [WebCake Desktop] "C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3271236306-1146125472-3967744969-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3271236306-1146125472-3967744969-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BrowserDefendert - Unknown owner - C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WebCake Desktop Updater - WebCake LLC - C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9887 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe" /PROTECT
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe" "C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe" -Embedding
taskeng.exe {F0E6D00F-69FB-4864-AACA-733F07A93961}
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
szndesktop.exe default start
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Users\Kinderko\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Java\jre7\bin\javaw.exe" -Xms512m -Xmx1024m -jar "C:\Users\Kinderko\Desktop\Minecraft Server\minecraft_server.1.6.1.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"taskhost.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=680.1cc21e00.755417330 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 680 "\\.\pipe\gecko-crash-server-pipe.680" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --proxy-stub-channel=Flash3264.6CCDD910.9807 --host-broker-channel=Flash3264.6CCDD910.13296 --host-pid=3264 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --channel=2556.003DF5E0.1517584147 --proxy-stub-channel=Flash3264.6CCDD910.9807 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play -Embedding
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Kinderko\Desktop\Downloads\RSITx64(1).exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\
05dd836e-2cbd-4204-9ff3-2f8a8665967d@a8876730-fb0c-4057-a2fc-f9c09d438e81.com
ffxtlbr@delta.com
plugin@getwebcake.com
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\
babylon.xml
delta.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-03 553376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-03 211360]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}]
hosts - C:\Program Files (x86)\hosts\hosts-bho.dll [2013-07-11 748032]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}]
WebCake - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll [2013-06-21 197912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-06-03 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}]
delta Helper Object - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll [2013-05-20 295832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-06-03 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{82E1477C-B154-48D3-9891-33D83C26BCD3} - Delta Toolbar - C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll [2013-05-20 284056]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-15 9644576]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-01-12 2918656]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"cz.seznam.software.autoupdate"=C:\Users\Kinderko\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Kinderko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"uTorrent"=C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe [2013-06-01 1043536]
"WebCake Desktop"=C:\Users\Kinderko\AppData\Roaming\WebCake\WebCakeDesktop.exe [2013-06-21 47896]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-06-28 2255184]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2013-07-14 09:54:38 ----D---- C:\rsit
2013-07-14 09:54:38 ----D---- C:\Program Files\trend micro
2013-07-13 15:03:35 ----D---- C:\Program Files (x86)\Intelore
2013-07-13 14:52:56 ----D---- C:\ProgramData\BrowserDefender
2013-07-13 14:52:36 ----D---- C:\Users\Kinderko\AppData\Roaming\BabSolution
2013-07-13 14:52:33 ----D---- C:\Program Files (x86)\Delta
2013-07-13 14:52:03 ----D---- C:\Users\Kinderko\AppData\Roaming\WebCake
2013-07-13 14:52:03 ----D---- C:\Program Files (x86)\WebCake
2013-07-13 14:51:56 ----D---- C:\ProgramData\Tarma Installer
2013-07-13 14:51:56 ----D---- C:\ProgramData\Babylon
2013-07-13 14:51:55 ----D---- C:\Users\Kinderko\AppData\Roaming\Babylon
2013-07-13 14:51:42 ----D---- C:\Users\Kinderko\AppData\Roaming\ExpressFiles
2013-07-11 22:37:56 ----D---- C:\ProgramData\Real
2013-07-11 22:37:47 ----D---- C:\Users\Kinderko\AppData\Roaming\OpenCandy
2013-07-11 22:37:47 ----D---- C:\Program Files (x86)\DownLite
2013-07-11 22:37:32 ----D---- C:\Program Files (x86)\hosts
2013-07-10 16:07:23 ----D---- C:\Program Files (x86)\Valve
2013-07-05 21:33:28 ----AH---- C:\Windows\system32\hamachi.sys
2013-07-05 21:33:26 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-07-05 20:00:10 ----D---- C:\Users\Kinderko\AppData\Roaming\.minecraft
2013-07-05 12:14:46 ----D---- C:\Users\Kinderko\AppData\Roaming\dvdcss
2013-07-03 18:53:00 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-07-03 18:52:59 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2013-07-03 18:52:59 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-07-02 23:19:06 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-07-01 15:38:20 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-07-01 15:37:58 ----A---- C:\Windows\system32\nvsvcr.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvopencl.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvoglv64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvoglshim64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvinitx.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\NvIFR64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\NvFBC64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuvid.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuda.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcompiler.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-06-29 10:46:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2013-06-29 10:46:13 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-06-29 10:46:07 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2013-06-29 10:46:07 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-06-29 10:46:04 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-06-29 10:46:00 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2013-06-29 10:46:00 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-06-29 10:43:49 ----HD---- C:\Windows\msdownld.tmp
2013-06-29 10:43:48 ----D---- C:\Windows\SYSWOW64\directx
2013-06-29 10:27:27 ----D---- C:\Program Files (x86)\Need for Speed Most Wanted 2012
2013-06-26 23:30:06 ----D---- C:\Users\Kinderko\AppData\Roaming\ProtectDisc
2013-06-26 23:28:59 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\xinput1_3.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\d3dx10.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\xinput1_2.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-06-26 23:28:14 ----D---- C:\Program Files (x86)\ProtectDisc Driver Installer
2013-06-26 23:28:14 ----A---- C:\Windows\system32\drivers\acedrv11.sys
2013-06-25 12:18:18 ----D---- C:\Program Files (x86)\Electronic Arts
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xinput1_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-06-23 14:38:05 ----D---- C:\Program Files (x86)\Rockstar Games
2013-06-21 05:16:02 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2013-06-20 15:21:32 ----A---- C:\Windows\system32\drivers\ssudmdm.sys
2013-06-20 15:21:32 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2013-06-20 15:08:32 ----D---- C:\Program Files\SAMSUNG
2013-06-20 15:08:16 ----D---- C:\ProgramData\Samsung
2013-06-15 12:38:38 ----D---- C:\Windows\Minidump
2013-06-15 12:02:39 ----D---- C:\Program Files (x86)\2K Games
2013-06-13 17:04:46 ----D---- C:\ProgramData\TEMP
2013-06-13 17:04:04 ----D---- C:\Program Files (x86)\Seznam.cz
2013-06-13 17:03:44 ----D---- C:\Users\Kinderko\AppData\Roaming\Seznam.cz
2013-06-13 17:02:54 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-06-13 17:02:50 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-06-11 14:30:37 ----HD---- C:\ProgramData\CanonIJScan
2013-06-10 14:25:25 ----D---- C:\Users\Kinderko\AppData\Roaming\DAEMON Tools Lite
2013-06-10 14:25:23 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-06-08 21:55:38 ----D---- C:\Users\Kinderko\AppData\Roaming\Canon
2013-06-08 13:02:35 ----D---- C:\ProgramData\Rockstar Games
2013-06-06 15:04:39 ----D---- C:\Program Files (x86)\Canon
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNHMCA.dll
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNC_B5U.dll
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNC_B5L.dll
2013-06-06 15:04:33 ----HD---- C:\ProgramData\CanonBJ
2013-06-06 15:04:31 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNHMCA6.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5L.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5I.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5C.dll
2013-06-06 15:04:26 ----A---- C:\Windows\system32\CNMLMB5.DLL
2013-06-06 15:04:21 ----HD---- C:\Program Files\CanonBJ
2013-06-05 22:07:54 ----D---- C:\Program Files\Common Files\DESIGNER
2013-06-05 22:07:31 ----D---- C:\Program Files\Microsoft Synchronization Services
2013-06-05 22:07:15 ----D---- C:\Windows\PCHEALTH
2013-06-05 22:07:15 ----D---- C:\Program Files\Microsoft Sync Framework
2013-06-05 22:07:15 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2013-06-05 22:06:02 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-06-05 22:05:23 ----D---- C:\Program Files\Microsoft Analysis Services
2013-06-05 22:05:23 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2013-06-05 22:05:14 ----D---- C:\Program Files (x86)\Microsoft Office
2013-06-05 22:05:13 ----D---- C:\Program Files\Microsoft Office
2013-06-05 22:05:12 ----D---- C:\ProgramData\Microsoft Help
2013-06-05 22:05:01 ----RHD---- C:\MSOCache
2013-06-04 13:11:41 ----D---- C:\Users\Kinderko\AppData\Roaming\Mozilla
2013-06-04 13:11:37 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-06-03 20:21:05 ----D---- C:\Users\Kinderko\AppData\Roaming\NVIDIA
2013-06-03 20:17:35 ----D---- C:\ProgramData\Sun
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\java.exe
2013-06-03 20:17:19 ----D---- C:\Program Files (x86)\Java
2013-06-03 20:04:04 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-06-03 20:04:04 ----A---- C:\Windows\system32\javaws.exe
2013-06-03 20:04:04 ----A---- C:\Windows\system32\deployJava1.dll
2013-06-03 20:04:02 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-06-03 20:04:02 ----A---- C:\Windows\system32\javaw.exe
2013-06-03 20:04:02 ----A---- C:\Windows\system32\java.exe
2013-06-03 20:03:57 ----D---- C:\Program Files\Java
2013-06-03 19:28:59 ----D---- C:\ProgramData\ESET
2013-06-03 19:28:59 ----D---- C:\Program Files\ESET
2013-06-03 19:21:14 ----D---- C:\Program Files\CCleaner
2013-06-03 19:07:25 ----D---- C:\Users\Kinderko\AppData\Roaming\ESET
2013-06-03 15:31:56 ----D---- C:\Program Files (x86)\DsNET Corp
2013-06-01 11:33:40 ----D---- C:\Users\Kinderko\AppData\Roaming\vlc
2013-06-01 11:33:22 ----D---- C:\Program Files (x86)\VideoLAN
2013-06-01 11:12:30 ----D---- C:\Users\Kinderko\AppData\Roaming\uTorrent
2013-06-01 11:09:50 ----D---- C:\Users\Kinderko\AppData\Roaming\WinRAR
2013-06-01 11:09:11 ----D---- C:\Program Files (x86)\WinRAR
2013-05-31 19:40:15 ----D---- C:\Users\Kinderko\AppData\Roaming\Macromedia
2013-05-31 19:40:15 ----D---- C:\Users\Kinderko\AppData\Roaming\Adobe
2013-05-31 19:39:36 ----D---- C:\ProgramData\McAfee
2013-05-31 19:39:34 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-31 19:39:33 ----D---- C:\Windows\SYSWOW64\Macromed
2013-05-31 19:39:33 ----D---- C:\Windows\system32\Macromed
2013-05-31 12:00:47 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2013-05-31 11:33:27 ----D---- C:\Users\Kinderko\AppData\Roaming\Skype
2013-05-31 11:33:24 ----RD---- C:\Program Files (x86)\Skype
2013-05-31 11:33:21 ----D---- C:\ProgramData\Skype
2013-05-30 23:32:46 ----N---- C:\Windows\system32\MpSigStub.exe
2013-05-30 19:54:31 ----D---- C:\Windows\Panther
2013-05-30 19:39:17 ----D---- C:\Program Files (x86)\MozBackup
2013-05-30 19:36:50 ----D---- C:\ProgramData\Mozilla
2013-05-30 19:26:56 ----D---- C:\ProgramData\NVIDIA
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvsvc64.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvshext.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-30 19:26:19 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-05-30 19:26:19 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-30 19:26:15 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-30 19:26:13 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-05-30 19:25:43 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-05-30 19:24:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-05-30 19:24:38 ----SHD---- C:\Windows\Installer
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\PresentationHost.exe
2013-05-30 19:24:17 ----A---- C:\Windows\system32\netfxperf.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\mscoree.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\dfshim.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvumdshimx.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvhdap64.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvdispgenco6432018.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvdispco6432018.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvapi64.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-05-30 19:23:02 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-30 19:22:45 ----D---- C:\NVIDIA
2013-05-30 19:15:22 ----D---- C:\ProgramData\EPU
2013-05-30 19:14:10 ----RA---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2013-05-30 19:14:10 ----RA---- C:\Windows\SYSWOW64\AsIO.dll
2013-05-30 19:14:09 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp64.sys
2013-05-30 19:14:09 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp32.sys
2013-05-30 19:14:08 ----D---- C:\Program Files (x86)\ASUS
2013-05-30 19:13:31 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-05-30 19:13:31 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-05-30 19:13:31 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-05-30 19:12:51 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-05-30 19:12:51 ----D---- C:\Program Files\Realtek
2013-05-30 19:12:42 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSWOW64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSTSX64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSTSH64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSHP64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-05-30 19:12:39 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-05-30 19:12:39 ----A---- C:\Windows\system32\RtkApi64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEED64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTCOM64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RCoInst64.dll
2013-05-30 19:12:36 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-05-30 19:12:36 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-05-30 19:12:35 ----A---- C:\Windows\system32\FMAPO64.dll
2013-05-30 19:12:34 ----D---- C:\Program Files (x86)\Realtek
2013-05-30 19:12:34 ----A---- C:\Windows\system32\AERTAR64.dll
2013-05-30 19:12:34 ----A---- C:\Windows\system32\AERTAC64.dll
2013-05-30 19:12:33 ----HD---- C:\Program Files (x86)\Temp
2013-05-30 19:12:33 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-05-30 19:12:32 ----R---- C:\Windows\RtlExUpd.dll
2013-05-30 19:12:16 ----RA---- C:\Windows\SYSWOW64\CSVer.dll
2013-05-30 19:12:16 ----D---- C:\Program Files (x86)\Intel
2013-05-30 19:12:11 ----D---- C:\Intel
2013-05-30 19:10:36 ----A---- C:\Windows\Ascd_log.ini
2013-05-30 19:10:06 ----D---- C:\Windows\SoftwareDistribution
2013-05-30 19:09:40 ----A---- C:\Windows\Language_trs.ini
2013-05-30 19:09:35 ----A---- C:\Windows\Ascd_tmp.ini
2013-05-30 19:08:16 ----D---- C:\Users\Kinderko\AppData\Roaming\Identities
2013-05-30 19:08:01 ----SD---- C:\Users\Kinderko\AppData\Roaming\Microsoft
2013-05-30 19:08:01 ----D---- C:\Users\Kinderko\AppData\Roaming\Media Center Programs
2013-05-30 19:06:48 ----SHD---- C:\Recovery
2013-05-30 18:55:43 ----D---- C:\Windows\Prefetch
2013-05-30 18:55:21 ----ASH---- C:\pagefile.sys
2013-05-30 18:55:20 ----SHD---- C:\System Volume Information
2013-05-30 18:55:20 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 3 months======
2013-07-14 10:02:46 ----D---- C:\Windows\Temp
2013-07-14 09:54:38 ----RD---- C:\Program Files
2013-07-14 09:47:10 ----D---- C:\Windows\inf
2013-07-14 09:47:10 ----D---- C:\Windows
2013-07-14 09:40:51 ----D---- C:\Windows\system32\config
2013-07-14 09:34:06 ----D---- C:\Windows\System32
2013-07-14 09:34:06 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-14 09:29:51 ----D---- C:\Windows\system32\Tasks
2013-07-13 15:03:35 ----RD---- C:\Program Files (x86)
2013-07-13 14:52:56 ----HD---- C:\ProgramData
2013-07-08 16:08:47 ----D---- C:\Windows\Logs
2013-07-05 21:32:50 ----D---- C:\Windows\system32\drivers
2013-07-04 20:23:30 ----D---- C:\Windows\system32\catroot2
2013-07-03 18:53:09 ----D---- C:\Program Files (x86)\Common Files
2013-07-03 18:53:00 ----D---- C:\Windows\SysWOW64
2013-07-03 18:52:46 ----RSD---- C:\Windows\assembly
2013-07-01 15:39:04 ----D---- C:\Windows\system32\DriverStore
2013-07-01 15:39:04 ----D---- C:\Windows\system32\catroot
2013-07-01 11:25:02 ----D---- C:\Windows\winsxs
2013-06-30 17:04:46 ----D---- C:\Windows\system32\wdi
2013-06-29 10:46:20 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-06-25 12:18:07 ----D---- C:\Windows\Microsoft.NET
2013-06-09 12:42:08 ----D---- C:\Windows\debug
2013-06-06 15:26:41 ----D---- C:\Windows\system32\drivers\UMDF
2013-06-06 15:04:39 ----RSD---- C:\Windows\Media
2013-06-06 15:04:39 ----D---- C:\Windows\twain_32
2013-06-05 22:08:00 ----RSD---- C:\Windows\Fonts
2013-06-05 22:07:54 ----D---- C:\Windows\ShellNew
2013-06-05 22:07:54 ----D---- C:\Program Files\Common Files
2013-06-05 22:07:23 ----D---- C:\Program Files (x86)\MSBuild
2013-06-05 22:07:15 ----SD---- C:\ProgramData\Microsoft
2013-06-05 22:05:48 ----D---- C:\Program Files\Common Files\System
2013-06-05 22:05:48 ----A---- C:\Windows\win.ini
2013-06-02 18:18:55 ----D---- C:\Windows\LiveKernelReports
2013-05-31 19:39:35 ----D---- C:\Windows\Tasks
2013-05-30 19:54:07 ----D---- C:\Windows\Setup
2013-05-30 19:27:12 ----RD---- C:\Users
2013-05-30 19:26:23 ----D---- C:\Windows\Help
2013-05-30 19:25:08 ----D---- C:\Windows\system32\CodeIntegrity
2013-05-30 19:24:45 ----D---- C:\Windows\SYSWOW64\en-US
2013-05-30 19:24:45 ----D---- C:\Windows\system32\en-US
2013-05-30 19:14:10 ----D---- C:\Windows\SYSWOW64\drivers
2013-05-30 19:13:01 ----D---- C:\Windows\system32\restore
2013-05-30 19:08:14 ----SHD---- C:\$Recycle.Bin
2013-05-30 19:05:43 ----D---- C:\Windows\rescache
2013-05-30 18:57:27 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-06-13 283200]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2013-06-26 335288]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2010-12-21 170640]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2010-12-21 50624]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-12-21 34144]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-15 2225952]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-01-12 325152]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-08-29 102368]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-08-29 203104]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BrowserDefendert;BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [2013-05-23 2827728]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2011-01-12 810144]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-06-28 2470736]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
R2 WebCake Desktop Updater;WebCake Desktop Updater; C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe [2013-06-21 23552]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11 256904]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2011-01-12 42360]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 51456888]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-07-02 117144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119529
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu (PC zamrza)
Zdravím!
Spusťte nejprve tuto utilitu:
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://www.stahuj.centrum.cz/utility_a_ ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte na Search (Prohledat)
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 26
- Registrován: 30 led 2011 20:22
Re: Prosim o kontrolu logu (PC zamrza)
# AdwCleaner v2.305 - Log vytvorený 15/07/2013 o 13:44:18
# Aktualizované 11/07/2013 Xplode
# Operaený systém : Windows 7 Home Premium (64 bits)
# Uživateľ : Kinderko - KINDERKO-PC
# Spustený systém : Normálny
# Spustené z : C:\Users\Kinderko\Desktop\adwcleaner.exe
# Voľba [Prehľada?]
***** [Služby] *****
Nájdené : BrowserDefendert
Nájdené : WebCake Desktop Updater
***** [Súbory / Adresáre] *****
Adresár Nájdené : C:\Program Files (x86)\delta
Adresár Nájdené : C:\Program Files (x86)\WebCake
Adresár Nájdené : C:\ProgramData\Babylon
Adresár Nájdené : C:\ProgramData\BrowserDefender
Adresár Nájdené : C:\ProgramData\Tarma Installer
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\BabSolution
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\Babylon
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\ExpressFiles
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserDefender
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\ffxtlbr@delta.com
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\plugin@getwebcake.com
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\OpenCandy
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\WebCake
Súbor Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\bprotector_extensions.sqlite
Súbor Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\bprotector_prefs.js
Súbor Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\Babylon.xml
Súbor Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\delta.xml
***** [Registre] *****
Dáta Nájdené : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
Hodnota Nájdené : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Hodnota Nájdené : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Hodnota Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WebCake Desktop]
Hodnota Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
Kľúe Nájdené : HKCU\Software\APN PIP
Kľúe Nájdené : HKCU\Software\AppDataLow\Software\Crossrider
Kľúe Nájdené : HKCU\Software\BabSolution
Kľúe Nájdené : HKCU\Software\BI
Kľúe Nájdené : HKCU\Software\Cr_Installer
Kľúe Nájdené : HKCU\Software\DataMngr
Kľúe Nájdené : HKCU\Software\DataMngr_Toolbar
Kľúe Nájdené : HKCU\Software\Delta
Kľúe Nájdené : HKCU\Software\ExpressFiles
Kľúe Nájdené : HKCU\Software\InstalledBrowserExtensions
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Kľúe Nájdené : HKCU\Software\5d538adbb63db913
Kľúe Nájdené : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltaappCore
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltadskBnd
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltaHlpr
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\escort.escortIEPane
Kľúe Nájdené : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Kľúe Nájdené : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Prod.cap
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344534482}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Kľúe Nájdené : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
Kľúe Nájdené : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
Kľúe Nájdené : HKLM\Software\DataMngr
Kľúe Nájdené : HKLM\Software\Delta
Kľúe Nájdené : HKLM\Software\ExpressFiles
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Kľúe Nájdené : HKLM\Software\PIP
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\5d538adbb63db913
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311531182}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322532282}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}
Kľúe Nájdené : HKLM\SOFTWARE\Tarma Installer
Kľúe Nájdené : HKU\S-1-5-21-3271236306-1146125472-3967744969-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
***** [Internetové prehliadaee] *****
-\\ Internet Explorer v8.0.7600.16385
[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942
[HKCU\Software\Microsoft\Internet Explorer\Main - bProtector Start Page] = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942
[HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942
[HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - bProtectTabs] = hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942
-\\ Mozilla Firefox v22.0 (sk)
Súbor : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\prefs.js
Nájdené : user_pref("browser.newtab.url", "hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&[...]
Nájdené : user_pref("browser.search.order.1", "Delta Search");
Nájdené : user_pref("browser.search.selectedEngine", "Delta Search");
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.delta.admin", false);
Nájdené : user_pref("extensions.delta.aflt", "babsst");
Nájdené : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Nájdené : user_pref("extensions.delta.autoRvrt", "false");
Nájdené : user_pref("extensions.delta.dfltLng", "en");
Nájdené : user_pref("extensions.delta.excTlbr", false);
Nájdené : user_pref("extensions.delta.ffxUnstlRst", true);
Nájdené : user_pref("extensions.delta.id", "6ed221eb000000000000485b3938a474");
Nájdené : user_pref("extensions.delta.instlDay", "15899");
Nájdené : user_pref("extensions.delta.instlRef", "sst");
Nájdené : user_pref("extensions.delta.newTab", false);
Nájdené : user_pref("extensions.delta.prdct", "delta");
Nájdené : user_pref("extensions.delta.prtnrId", "delta");
Nájdené : user_pref("extensions.delta.rvrt", "false");
Nájdené : user_pref("extensions.delta.smplGrp", "none");
Nájdené : user_pref("extensions.delta.tlbrId", "base");
Nájdené : user_pref("extensions.delta.tlbrSrchUrl", "");
Nájdené : user_pref("extensions.delta.vrsn", "1.8.21.5");
Nájdené : user_pref("extensions.delta.vrsni", "1.8.21.5");
Nájdené : user_pref("extensions.delta.vrsnTs", "1.8.21.514:52:33");
Nájdené : user_pref("extensions.delta_i.babExt", "");
Nájdené : user_pref("extensions.delta_i.babTrack", "affID=122307&tt=110713_91114&tsp=4942");
Nájdené : user_pref("extensions.delta_i.srcExt", "ss");
*************************
AdwCleaner[R1].txt - [14920 octets] - [15/07/2013 13:44:18]
########## EOF - C:\AdwCleaner[R1].txt - [14981 octets] ##########
# Aktualizované 11/07/2013 Xplode
# Operaený systém : Windows 7 Home Premium (64 bits)
# Uživateľ : Kinderko - KINDERKO-PC
# Spustený systém : Normálny
# Spustené z : C:\Users\Kinderko\Desktop\adwcleaner.exe
# Voľba [Prehľada?]
***** [Služby] *****
Nájdené : BrowserDefendert
Nájdené : WebCake Desktop Updater
***** [Súbory / Adresáre] *****
Adresár Nájdené : C:\Program Files (x86)\delta
Adresár Nájdené : C:\Program Files (x86)\WebCake
Adresár Nájdené : C:\ProgramData\Babylon
Adresár Nájdené : C:\ProgramData\BrowserDefender
Adresár Nájdené : C:\ProgramData\Tarma Installer
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\BabSolution
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\Babylon
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\ExpressFiles
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserDefender
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\ffxtlbr@delta.com
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\plugin@getwebcake.com
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\OpenCandy
Adresár Nájdené : C:\Users\Kinderko\AppData\Roaming\WebCake
Súbor Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\bprotector_extensions.sqlite
Súbor Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\bprotector_prefs.js
Súbor Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\Babylon.xml
Súbor Nájdené : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\delta.xml
***** [Registre] *****
Dáta Nájdené : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
Hodnota Nájdené : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Hodnota Nájdené : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Hodnota Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WebCake Desktop]
Hodnota Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
Kľúe Nájdené : HKCU\Software\APN PIP
Kľúe Nájdené : HKCU\Software\AppDataLow\Software\Crossrider
Kľúe Nájdené : HKCU\Software\BabSolution
Kľúe Nájdené : HKCU\Software\BI
Kľúe Nájdené : HKCU\Software\Cr_Installer
Kľúe Nájdené : HKCU\Software\DataMngr
Kľúe Nájdené : HKCU\Software\DataMngr_Toolbar
Kľúe Nájdené : HKCU\Software\Delta
Kľúe Nájdené : HKCU\Software\ExpressFiles
Kľúe Nájdené : HKCU\Software\InstalledBrowserExtensions
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Kľúe Nájdené : HKCU\Software\5d538adbb63db913
Kľúe Nájdené : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltaappCore
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltadskBnd
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltaHlpr
Kľúe Nájdené : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\escort.escortIEPane
Kľúe Nájdené : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Kľúe Nájdené : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Prod.cap
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344534482}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Kľúe Nájdené : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
Kľúe Nájdené : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
Kľúe Nájdené : HKLM\Software\DataMngr
Kľúe Nájdené : HKLM\Software\Delta
Kľúe Nájdené : HKLM\Software\ExpressFiles
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Kľúe Nájdené : HKLM\Software\PIP
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\5d538adbb63db913
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311531182}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322532282}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Kľúe Nájdené : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}
Kľúe Nájdené : HKLM\SOFTWARE\Tarma Installer
Kľúe Nájdené : HKU\S-1-5-21-3271236306-1146125472-3967744969-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
***** [Internetové prehliadaee] *****
-\\ Internet Explorer v8.0.7600.16385
[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942
[HKCU\Software\Microsoft\Internet Explorer\Main - bProtector Start Page] = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942
[HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942
[HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - bProtectTabs] = hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942
-\\ Mozilla Firefox v22.0 (sk)
Súbor : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\prefs.js
Nájdené : user_pref("browser.newtab.url", "hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&[...]
Nájdené : user_pref("browser.search.order.1", "Delta Search");
Nájdené : user_pref("browser.search.selectedEngine", "Delta Search");
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Nájdené : user_pref("extensions.delta.admin", false);
Nájdené : user_pref("extensions.delta.aflt", "babsst");
Nájdené : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Nájdené : user_pref("extensions.delta.autoRvrt", "false");
Nájdené : user_pref("extensions.delta.dfltLng", "en");
Nájdené : user_pref("extensions.delta.excTlbr", false);
Nájdené : user_pref("extensions.delta.ffxUnstlRst", true);
Nájdené : user_pref("extensions.delta.id", "6ed221eb000000000000485b3938a474");
Nájdené : user_pref("extensions.delta.instlDay", "15899");
Nájdené : user_pref("extensions.delta.instlRef", "sst");
Nájdené : user_pref("extensions.delta.newTab", false);
Nájdené : user_pref("extensions.delta.prdct", "delta");
Nájdené : user_pref("extensions.delta.prtnrId", "delta");
Nájdené : user_pref("extensions.delta.rvrt", "false");
Nájdené : user_pref("extensions.delta.smplGrp", "none");
Nájdené : user_pref("extensions.delta.tlbrId", "base");
Nájdené : user_pref("extensions.delta.tlbrSrchUrl", "");
Nájdené : user_pref("extensions.delta.vrsn", "1.8.21.5");
Nájdené : user_pref("extensions.delta.vrsni", "1.8.21.5");
Nájdené : user_pref("extensions.delta.vrsnTs", "1.8.21.514:52:33");
Nájdené : user_pref("extensions.delta_i.babExt", "");
Nájdené : user_pref("extensions.delta_i.babTrack", "affID=122307&tt=110713_91114&tsp=4942");
Nájdené : user_pref("extensions.delta_i.srcExt", "ss");
*************************
AdwCleaner[R1].txt - [14920 octets] - [15/07/2013 13:44:18]
########## EOF - C:\AdwCleaner[R1].txt - [14981 octets] ##########
- Rudy
- Site Admin
- Příspěvky: 119529
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu (PC zamrza)
Spusťte znovu ADWCleaner a klikněte na >Delete< (smazat). Vložte nový log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 26
- Registrován: 30 led 2011 20:22
Re: Prosim o kontrolu logu (PC zamrza)
# AdwCleaner v2.305 - Log vytvorený 18/07/2013 o 22:28:11
# Aktualizované 11/07/2013 Xplode
# Operaený systém : Windows 7 Home Premium (64 bits)
# Uživateľ : Kinderko - KINDERKO-PC
# Spustený systém : Normálny
# Spustené z : C:\Users\Kinderko\Desktop\adwcleaner.exe
# Voľba [Vymaza?]
***** [Služby] *****
Zastavené & vymazané : BrowserDefendert
Zastavené & vymazané : WebCake Desktop Updater
***** [Súbory / Adresáre] *****
Súbor Vymazané : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\bprotector_extensions.sqlite
Súbor Vymazané : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\bprotector_prefs.js
Súbor Vymazané : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\Babylon.xml
Súbor Vymazané : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\delta.xml
Vymazané pri reštarte : C:\Program Files (x86)\delta
Vymazané pri reštarte : C:\Program Files (x86)\WebCake
Vymazané pri reštarte : C:\ProgramData\Babylon
Vymazané pri reštarte : C:\ProgramData\BrowserDefender
Vymazané pri reštarte : C:\ProgramData\Tarma Installer
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\BabSolution
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\Babylon
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\ExpressFiles
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserDefender
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\ffxtlbr@delta.com
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\plugin@getwebcake.com
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\OpenCandy
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\WebCake
***** [Registre] *****
Dáta Vymazané : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
Hodnota Vymazané : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Hodnota Vymazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Hodnota Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WebCake Desktop]
Hodnota Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
Kľúe Vymazané : HKCU\Software\APN PIP
Kľúe Vymazané : HKCU\Software\AppDataLow\Software\Crossrider
Kľúe Vymazané : HKCU\Software\BabSolution
Kľúe Vymazané : HKCU\Software\BI
Kľúe Vymazané : HKCU\Software\Cr_Installer
Kľúe Vymazané : HKCU\Software\DataMngr
Kľúe Vymazané : HKCU\Software\DataMngr_Toolbar
Kľúe Vymazané : HKCU\Software\Delta
Kľúe Vymazané : HKCU\Software\ExpressFiles
Kľúe Vymazané : HKCU\Software\InstalledBrowserExtensions
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Kľúe Vymazané : HKCU\Software\5d538adbb63db913
Kľúe Vymazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltaappCore
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltadskBnd
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltaHlpr
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\escort.escortIEPane
Kľúe Vymazané : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Kľúe Vymazané : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Prod.cap
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344534482}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Kľúe Vymazané : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
Kľúe Vymazané : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
Kľúe Vymazané : HKLM\Software\DataMngr
Kľúe Vymazané : HKLM\Software\Delta
Kľúe Vymazané : HKLM\Software\ExpressFiles
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Kľúe Vymazané : HKLM\Software\PIP
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\5d538adbb63db913
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311531182}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322532282}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}
Kľúe Vymazané : HKLM\SOFTWARE\Tarma Installer
Kľúe Vymazané : HKU\S-1-5-21-3271236306-1146125472-3967744969-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
***** [Internetové prehliadaee] *****
-\\ Internet Explorer v8.0.7600.16385
Zamenené : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942 --> hxxp://www.google.com
Zamenené : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942 --> hxxp://www.google.com
Zamenené : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - bProtectTabs] = hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942 --> hxxp://www.google.com
-\\ Mozilla Firefox v22.0 (sk)
Súbor : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\prefs.js
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\user.js ... Vymazané !
Vymazané : user_pref("browser.newtab.url", "hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&[...]
Vymazané : user_pref("browser.search.order.1", "Delta Search");
Vymazané : user_pref("browser.search.selectedEngine", "Delta Search");
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.delta.admin", false);
Vymazané : user_pref("extensions.delta.aflt", "babsst");
Vymazané : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Vymazané : user_pref("extensions.delta.autoRvrt", "false");
Vymazané : user_pref("extensions.delta.dfltLng", "en");
Vymazané : user_pref("extensions.delta.excTlbr", false);
Vymazané : user_pref("extensions.delta.ffxUnstlRst", true);
Vymazané : user_pref("extensions.delta.id", "6ed221eb000000000000485b3938a474");
Vymazané : user_pref("extensions.delta.instlDay", "15899");
Vymazané : user_pref("extensions.delta.instlRef", "sst");
Vymazané : user_pref("extensions.delta.newTab", false);
Vymazané : user_pref("extensions.delta.prdct", "delta");
Vymazané : user_pref("extensions.delta.prtnrId", "delta");
Vymazané : user_pref("extensions.delta.rvrt", "false");
Vymazané : user_pref("extensions.delta.smplGrp", "none");
Vymazané : user_pref("extensions.delta.tlbrId", "base");
Vymazané : user_pref("extensions.delta.tlbrSrchUrl", "");
Vymazané : user_pref("extensions.delta.vrsn", "1.8.21.5");
Vymazané : user_pref("extensions.delta.vrsni", "1.8.21.5");
Vymazané : user_pref("extensions.delta.vrsnTs", "1.8.21.514:52:33");
Vymazané : user_pref("extensions.delta_i.babExt", "");
Vymazané : user_pref("extensions.delta_i.babTrack", "affID=122307&tt=110713_91114&tsp=4942");
Vymazané : user_pref("extensions.delta_i.srcExt", "ss");
*************************
AdwCleaner[R1].txt - [15009 octets] - [15/07/2013 13:44:18]
AdwCleaner[S1].txt - [15271 octets] - [18/07/2013 22:28:12]
########## EOF - C:\AdwCleaner[S1].txt - [15332 octets] ##########
# Aktualizované 11/07/2013 Xplode
# Operaený systém : Windows 7 Home Premium (64 bits)
# Uživateľ : Kinderko - KINDERKO-PC
# Spustený systém : Normálny
# Spustené z : C:\Users\Kinderko\Desktop\adwcleaner.exe
# Voľba [Vymaza?]
***** [Služby] *****
Zastavené & vymazané : BrowserDefendert
Zastavené & vymazané : WebCake Desktop Updater
***** [Súbory / Adresáre] *****
Súbor Vymazané : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\bprotector_extensions.sqlite
Súbor Vymazané : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\bprotector_prefs.js
Súbor Vymazané : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\Babylon.xml
Súbor Vymazané : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\delta.xml
Vymazané pri reštarte : C:\Program Files (x86)\delta
Vymazané pri reštarte : C:\Program Files (x86)\WebCake
Vymazané pri reštarte : C:\ProgramData\Babylon
Vymazané pri reštarte : C:\ProgramData\BrowserDefender
Vymazané pri reštarte : C:\ProgramData\Tarma Installer
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\BabSolution
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\Babylon
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\ExpressFiles
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserDefender
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\ffxtlbr@delta.com
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\plugin@getwebcake.com
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\OpenCandy
Vymazané pri reštarte : C:\Users\Kinderko\AppData\Roaming\WebCake
***** [Registre] *****
Dáta Vymazané : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
Hodnota Vymazané : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Hodnota Vymazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Hodnota Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WebCake Desktop]
Hodnota Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
Kľúe Vymazané : HKCU\Software\APN PIP
Kľúe Vymazané : HKCU\Software\AppDataLow\Software\Crossrider
Kľúe Vymazané : HKCU\Software\BabSolution
Kľúe Vymazané : HKCU\Software\BI
Kľúe Vymazané : HKCU\Software\Cr_Installer
Kľúe Vymazané : HKCU\Software\DataMngr
Kľúe Vymazané : HKCU\Software\DataMngr_Toolbar
Kľúe Vymazané : HKCU\Software\Delta
Kľúe Vymazané : HKCU\Software\ExpressFiles
Kľúe Vymazané : HKCU\Software\InstalledBrowserExtensions
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Kľúe Vymazané : HKCU\Software\5d538adbb63db913
Kľúe Vymazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltaappCore
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltadskBnd
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltaHlpr
Kľúe Vymazané : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\escort.escortIEPane
Kľúe Vymazané : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Kľúe Vymazané : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Prod.cap
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344534482}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Kľúe Vymazané : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
Kľúe Vymazané : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
Kľúe Vymazané : HKLM\Software\DataMngr
Kľúe Vymazané : HKLM\Software\Delta
Kľúe Vymazané : HKLM\Software\ExpressFiles
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Kľúe Vymazané : HKLM\Software\PIP
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\5d538adbb63db913
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311531182}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322532282}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}
Kľúe Vymazané : HKLM\SOFTWARE\Tarma Installer
Kľúe Vymazané : HKU\S-1-5-21-3271236306-1146125472-3967744969-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
***** [Internetové prehliadaee] *****
-\\ Internet Explorer v8.0.7600.16385
Zamenené : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942 --> hxxp://www.google.com
Zamenené : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942 --> hxxp://www.google.com
Zamenené : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - bProtectTabs] = hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&affID=122307&tt=110713_91114&tsp=4942 --> hxxp://www.google.com
-\\ Mozilla Firefox v22.0 (sk)
Súbor : C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\prefs.js
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\user.js ... Vymazané !
Vymazané : user_pref("browser.newtab.url", "hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=6ED2485B3938A474&[...]
Vymazané : user_pref("browser.search.order.1", "Delta Search");
Vymazané : user_pref("browser.search.selectedEngine", "Delta Search");
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.a05dd836e2cbd42049ff32f8a8665967da8876730fb0c4057a2fcf9c09d438e81com35382.3538[...]
Vymazané : user_pref("extensions.delta.admin", false);
Vymazané : user_pref("extensions.delta.aflt", "babsst");
Vymazané : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Vymazané : user_pref("extensions.delta.autoRvrt", "false");
Vymazané : user_pref("extensions.delta.dfltLng", "en");
Vymazané : user_pref("extensions.delta.excTlbr", false);
Vymazané : user_pref("extensions.delta.ffxUnstlRst", true);
Vymazané : user_pref("extensions.delta.id", "6ed221eb000000000000485b3938a474");
Vymazané : user_pref("extensions.delta.instlDay", "15899");
Vymazané : user_pref("extensions.delta.instlRef", "sst");
Vymazané : user_pref("extensions.delta.newTab", false);
Vymazané : user_pref("extensions.delta.prdct", "delta");
Vymazané : user_pref("extensions.delta.prtnrId", "delta");
Vymazané : user_pref("extensions.delta.rvrt", "false");
Vymazané : user_pref("extensions.delta.smplGrp", "none");
Vymazané : user_pref("extensions.delta.tlbrId", "base");
Vymazané : user_pref("extensions.delta.tlbrSrchUrl", "");
Vymazané : user_pref("extensions.delta.vrsn", "1.8.21.5");
Vymazané : user_pref("extensions.delta.vrsni", "1.8.21.5");
Vymazané : user_pref("extensions.delta.vrsnTs", "1.8.21.514:52:33");
Vymazané : user_pref("extensions.delta_i.babExt", "");
Vymazané : user_pref("extensions.delta_i.babTrack", "affID=122307&tt=110713_91114&tsp=4942");
Vymazané : user_pref("extensions.delta_i.srcExt", "ss");
*************************
AdwCleaner[R1].txt - [15009 octets] - [15/07/2013 13:44:18]
AdwCleaner[S1].txt - [15271 octets] - [18/07/2013 22:28:12]
########## EOF - C:\AdwCleaner[S1].txt - [15332 octets] ##########
- Rudy
- Site Admin
- Příspěvky: 119529
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu (PC zamrza)
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 26
- Registrován: 30 led 2011 20:22
Re: Prosim o kontrolu logu (PC zamrza)
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kinderko at 2013-07-19 20:54:55
Microsoft Windows 7 Home Premium
System drive C: has 172 GB (46%) free of 377 GB
Total RAM: 3966 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:54:57, on 19. 7. 2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Program Files\trend micro\Kinderko.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3271236306-1146125472-3967744969-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3271236306-1146125472-3967744969-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8258 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
taskeng.exe {D1F5C832-5593-44AF-ABB1-67D23D3C9455}
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe" -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\servicing\TrustedInstaller.exe
taskeng.exe {6990A727-AF0E-4813-8EC7-A22D2A653178}
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3488.10d65c00.1030459129 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 3488 "\\.\pipe\gecko-crash-server-pipe.3488" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --proxy-stub-channel=Flash692.7129D910.10105 --host-broker-channel=Flash692.7129D910.14203 --host-pid=692 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --channel=2000.0042F470.1504881372 --proxy-stub-channel=Flash692.7129D910.10105 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" --host-npapi-version=27 --type=renderer
C:\Windows\system32\PrintIsolationHost.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Kinderko\Desktop\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\
05dd836e-2cbd-4204-9ff3-2f8a8665967d@a8876730-fb0c-4057-a2fc-f9c09d438e81.com
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\
babylon.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-03 553376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-03 211360]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-06-03 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-06-03 171424]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-15 9644576]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-01-12 2918656]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"uTorrent"=C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe [2013-06-01 1043536]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-06-28 2255184]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2013-07-18 22:28:13 ----A---- C:\Windows\DeleteOnReboot.bat
2013-07-18 22:28:12 ----A---- C:\AdwCleaner[S1].txt
2013-07-18 17:39:10 ----A---- C:\Windows\SYSWOW64\drivers\STREAM.SYS
2013-07-15 13:44:18 ----A---- C:\AdwCleaner[R1].txt
2013-07-14 23:00:46 ----D---- C:\Windows\SYSWOW64\searchplugins
2013-07-14 23:00:46 ----D---- C:\Windows\SYSWOW64\Extensions
2013-07-14 09:54:38 ----D---- C:\rsit
2013-07-14 09:54:38 ----D---- C:\Program Files\trend micro
2013-07-13 15:03:35 ----D---- C:\Program Files (x86)\Intelore
2013-07-13 14:52:56 ----D---- C:\ProgramData\BrowserDefender
2013-07-13 14:52:33 ----D---- C:\Program Files (x86)\Delta
2013-07-13 14:52:03 ----D---- C:\Program Files (x86)\WebCake
2013-07-13 14:51:56 ----D---- C:\ProgramData\Tarma Installer
2013-07-13 14:51:56 ----D---- C:\ProgramData\Babylon
2013-07-11 22:37:56 ----D---- C:\ProgramData\Real
2013-07-11 22:37:47 ----D---- C:\Program Files (x86)\DownLite
2013-07-11 22:37:32 ----D---- C:\Program Files (x86)\hosts
2013-07-10 16:07:23 ----D---- C:\Program Files (x86)\Valve
2013-07-05 21:33:28 ----AH---- C:\Windows\system32\hamachi.sys
2013-07-05 21:33:26 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-07-05 20:00:10 ----D---- C:\Users\Kinderko\AppData\Roaming\.minecraft
2013-07-05 12:14:46 ----D---- C:\Users\Kinderko\AppData\Roaming\dvdcss
2013-07-03 18:53:00 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-07-03 18:52:59 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2013-07-03 18:52:59 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-07-02 23:19:06 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-07-01 15:38:20 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-07-01 15:37:58 ----A---- C:\Windows\system32\nvsvcr.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvopencl.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvoglv64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvoglshim64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvinitx.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\NvIFR64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\NvFBC64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuvid.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuda.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcompiler.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-06-29 10:46:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2013-06-29 10:46:13 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-06-29 10:46:07 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2013-06-29 10:46:07 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-06-29 10:46:04 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-06-29 10:46:00 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2013-06-29 10:46:00 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-06-29 10:43:49 ----HD---- C:\Windows\msdownld.tmp
2013-06-29 10:43:48 ----D---- C:\Windows\SYSWOW64\directx
2013-06-29 10:27:27 ----D---- C:\Program Files (x86)\Need for Speed Most Wanted 2012
2013-06-26 23:30:06 ----D---- C:\Users\Kinderko\AppData\Roaming\ProtectDisc
2013-06-26 23:28:59 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\xinput1_3.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\d3dx10.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\xinput1_2.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-06-26 23:28:14 ----D---- C:\Program Files (x86)\ProtectDisc Driver Installer
2013-06-26 23:28:14 ----A---- C:\Windows\system32\drivers\acedrv11.sys
2013-06-25 12:18:18 ----D---- C:\Program Files (x86)\Electronic Arts
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xinput1_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-06-23 14:38:05 ----D---- C:\Program Files (x86)\Rockstar Games
2013-06-21 05:16:02 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2013-06-20 15:21:32 ----A---- C:\Windows\system32\drivers\ssudmdm.sys
2013-06-20 15:21:32 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2013-06-20 15:08:32 ----D---- C:\Program Files\SAMSUNG
2013-06-20 15:08:16 ----D---- C:\ProgramData\Samsung
2013-06-15 12:38:38 ----D---- C:\Windows\Minidump
2013-06-15 12:02:39 ----D---- C:\Program Files (x86)\2K Games
2013-06-13 17:04:46 ----D---- C:\ProgramData\TEMP
2013-06-13 17:03:44 ----D---- C:\Users\Kinderko\AppData\Roaming\Seznam.cz
2013-06-13 17:02:54 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-06-13 17:02:50 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-06-11 14:30:37 ----HD---- C:\ProgramData\CanonIJScan
2013-06-10 14:25:25 ----D---- C:\Users\Kinderko\AppData\Roaming\DAEMON Tools Lite
2013-06-10 14:25:23 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-06-08 21:55:38 ----D---- C:\Users\Kinderko\AppData\Roaming\Canon
2013-06-08 13:02:35 ----D---- C:\ProgramData\Rockstar Games
2013-06-06 15:04:39 ----D---- C:\Program Files (x86)\Canon
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNHMCA.dll
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNC_B5U.dll
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNC_B5L.dll
2013-06-06 15:04:33 ----HD---- C:\ProgramData\CanonBJ
2013-06-06 15:04:31 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNHMCA6.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5L.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5I.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5C.dll
2013-06-06 15:04:26 ----A---- C:\Windows\system32\CNMLMB5.DLL
2013-06-06 15:04:21 ----HD---- C:\Program Files\CanonBJ
2013-06-05 22:07:54 ----D---- C:\Program Files\Common Files\DESIGNER
2013-06-05 22:07:31 ----D---- C:\Program Files\Microsoft Synchronization Services
2013-06-05 22:07:15 ----D---- C:\Windows\PCHEALTH
2013-06-05 22:07:15 ----D---- C:\Program Files\Microsoft Sync Framework
2013-06-05 22:07:15 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2013-06-05 22:06:02 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-06-05 22:05:23 ----D---- C:\Program Files\Microsoft Analysis Services
2013-06-05 22:05:23 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2013-06-05 22:05:14 ----D---- C:\Program Files (x86)\Microsoft Office
2013-06-05 22:05:13 ----D---- C:\Program Files\Microsoft Office
2013-06-05 22:05:12 ----D---- C:\ProgramData\Microsoft Help
2013-06-05 22:05:01 ----RHD---- C:\MSOCache
2013-06-04 13:11:41 ----D---- C:\Users\Kinderko\AppData\Roaming\Mozilla
2013-06-04 13:11:37 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-06-03 20:21:05 ----D---- C:\Users\Kinderko\AppData\Roaming\NVIDIA
2013-06-03 20:17:35 ----D---- C:\ProgramData\Sun
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\java.exe
2013-06-03 20:17:19 ----D---- C:\Program Files (x86)\Java
2013-06-03 20:04:04 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-06-03 20:04:04 ----A---- C:\Windows\system32\javaws.exe
2013-06-03 20:04:04 ----A---- C:\Windows\system32\deployJava1.dll
2013-06-03 20:04:02 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-06-03 20:04:02 ----A---- C:\Windows\system32\javaw.exe
2013-06-03 20:04:02 ----A---- C:\Windows\system32\java.exe
2013-06-03 20:03:57 ----D---- C:\Program Files\Java
2013-06-03 19:28:59 ----D---- C:\ProgramData\ESET
2013-06-03 19:28:59 ----D---- C:\Program Files\ESET
2013-06-03 19:21:14 ----D---- C:\Program Files\CCleaner
2013-06-03 19:07:25 ----D---- C:\Users\Kinderko\AppData\Roaming\ESET
2013-06-03 15:31:56 ----D---- C:\Program Files (x86)\DsNET Corp
2013-06-01 11:33:40 ----D---- C:\Users\Kinderko\AppData\Roaming\vlc
2013-06-01 11:33:22 ----D---- C:\Program Files (x86)\VideoLAN
2013-06-01 11:12:30 ----D---- C:\Users\Kinderko\AppData\Roaming\uTorrent
2013-06-01 11:09:50 ----D---- C:\Users\Kinderko\AppData\Roaming\WinRAR
2013-06-01 11:09:11 ----D---- C:\Program Files (x86)\WinRAR
2013-05-31 19:40:15 ----D---- C:\Users\Kinderko\AppData\Roaming\Macromedia
2013-05-31 19:40:15 ----D---- C:\Users\Kinderko\AppData\Roaming\Adobe
2013-05-31 19:39:36 ----D---- C:\ProgramData\McAfee
2013-05-31 19:39:34 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-31 19:39:33 ----D---- C:\Windows\SYSWOW64\Macromed
2013-05-31 19:39:33 ----D---- C:\Windows\system32\Macromed
2013-05-31 12:00:47 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2013-05-31 11:33:27 ----D---- C:\Users\Kinderko\AppData\Roaming\Skype
2013-05-31 11:33:24 ----RD---- C:\Program Files (x86)\Skype
2013-05-31 11:33:21 ----D---- C:\ProgramData\Skype
2013-05-30 23:32:46 ----N---- C:\Windows\system32\MpSigStub.exe
2013-05-30 19:54:31 ----D---- C:\Windows\Panther
2013-05-30 19:39:17 ----D---- C:\Program Files (x86)\MozBackup
2013-05-30 19:36:50 ----D---- C:\ProgramData\Mozilla
2013-05-30 19:26:56 ----D---- C:\ProgramData\NVIDIA
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvsvc64.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvshext.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-30 19:26:19 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-05-30 19:26:19 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-30 19:26:15 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-30 19:26:13 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-05-30 19:25:43 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-05-30 19:24:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-05-30 19:24:38 ----SHD---- C:\Windows\Installer
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\PresentationHost.exe
2013-05-30 19:24:17 ----A---- C:\Windows\system32\netfxperf.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\mscoree.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\dfshim.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvumdshimx.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvhdap64.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvdispgenco6432018.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvdispco6432018.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvapi64.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-05-30 19:23:02 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-30 19:22:45 ----D---- C:\NVIDIA
2013-05-30 19:15:22 ----D---- C:\ProgramData\EPU
2013-05-30 19:14:10 ----RA---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2013-05-30 19:14:10 ----RA---- C:\Windows\SYSWOW64\AsIO.dll
2013-05-30 19:14:09 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp64.sys
2013-05-30 19:14:09 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp32.sys
2013-05-30 19:14:08 ----D---- C:\Program Files (x86)\ASUS
2013-05-30 19:13:31 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-05-30 19:13:31 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-05-30 19:13:31 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-05-30 19:12:51 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-05-30 19:12:51 ----D---- C:\Program Files\Realtek
2013-05-30 19:12:42 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSWOW64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSTSX64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSTSH64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSHP64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-05-30 19:12:39 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-05-30 19:12:39 ----A---- C:\Windows\system32\RtkApi64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEED64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTCOM64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RCoInst64.dll
2013-05-30 19:12:36 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-05-30 19:12:36 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-05-30 19:12:35 ----A---- C:\Windows\system32\FMAPO64.dll
2013-05-30 19:12:34 ----D---- C:\Program Files (x86)\Realtek
2013-05-30 19:12:34 ----A---- C:\Windows\system32\AERTAR64.dll
2013-05-30 19:12:34 ----A---- C:\Windows\system32\AERTAC64.dll
2013-05-30 19:12:33 ----HD---- C:\Program Files (x86)\Temp
2013-05-30 19:12:33 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-05-30 19:12:32 ----R---- C:\Windows\RtlExUpd.dll
2013-05-30 19:12:16 ----RA---- C:\Windows\SYSWOW64\CSVer.dll
2013-05-30 19:12:16 ----D---- C:\Program Files (x86)\Intel
2013-05-30 19:12:11 ----D---- C:\Intel
2013-05-30 19:10:36 ----A---- C:\Windows\Ascd_log.ini
2013-05-30 19:10:06 ----D---- C:\Windows\SoftwareDistribution
2013-05-30 19:09:40 ----A---- C:\Windows\Language_trs.ini
2013-05-30 19:09:35 ----A---- C:\Windows\Ascd_tmp.ini
2013-05-30 19:08:16 ----D---- C:\Users\Kinderko\AppData\Roaming\Identities
2013-05-30 19:08:01 ----SD---- C:\Users\Kinderko\AppData\Roaming\Microsoft
2013-05-30 19:08:01 ----D---- C:\Users\Kinderko\AppData\Roaming\Media Center Programs
2013-05-30 19:06:48 ----SHD---- C:\Recovery
2013-05-30 18:55:43 ----D---- C:\Windows\Prefetch
2013-05-30 18:55:21 ----ASH---- C:\pagefile.sys
2013-05-30 18:55:20 ----SHD---- C:\System Volume Information
2013-05-30 18:55:20 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 3 months======
2013-07-19 20:54:56 ----D---- C:\Windows\Temp
2013-07-19 20:51:50 ----D---- C:\Windows\system32\config
2013-07-19 14:37:53 ----D---- C:\Windows\System32
2013-07-19 14:37:53 ----D---- C:\Windows\inf
2013-07-19 14:37:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-18 22:28:13 ----D---- C:\Windows
2013-07-18 21:36:42 ----D---- C:\Windows\system32\Tasks
2013-07-18 18:38:08 ----D---- C:\Windows\twain_32
2013-07-18 18:38:08 ----D---- C:\Windows\SYSWOW64\drivers
2013-07-18 18:38:07 ----RD---- C:\Program Files (x86)
2013-07-18 18:38:07 ----D---- C:\Windows\SysWOW64
2013-07-18 17:39:10 ----D---- C:\Windows\Downloaded Program Files
2013-07-17 10:37:42 ----D---- C:\Windows\system32\catroot2
2013-07-14 09:54:38 ----RD---- C:\Program Files
2013-07-13 14:52:56 ----HD---- C:\ProgramData
2013-07-08 16:08:47 ----D---- C:\Windows\Logs
2013-07-05 21:32:50 ----D---- C:\Windows\system32\drivers
2013-07-03 18:53:09 ----D---- C:\Program Files (x86)\Common Files
2013-07-03 18:52:46 ----RSD---- C:\Windows\assembly
2013-07-01 15:39:04 ----D---- C:\Windows\system32\DriverStore
2013-07-01 15:39:04 ----D---- C:\Windows\system32\catroot
2013-07-01 11:25:02 ----D---- C:\Windows\winsxs
2013-06-30 17:04:46 ----D---- C:\Windows\system32\wdi
2013-06-29 10:46:20 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-06-25 12:18:07 ----D---- C:\Windows\Microsoft.NET
2013-06-09 12:42:08 ----D---- C:\Windows\debug
2013-06-06 15:26:41 ----D---- C:\Windows\system32\drivers\UMDF
2013-06-06 15:04:39 ----RSD---- C:\Windows\Media
2013-06-05 22:08:00 ----RSD---- C:\Windows\Fonts
2013-06-05 22:07:54 ----D---- C:\Windows\ShellNew
2013-06-05 22:07:54 ----D---- C:\Program Files\Common Files
2013-06-05 22:07:23 ----D---- C:\Program Files (x86)\MSBuild
2013-06-05 22:07:15 ----SD---- C:\ProgramData\Microsoft
2013-06-05 22:05:48 ----D---- C:\Program Files\Common Files\System
2013-06-05 22:05:48 ----A---- C:\Windows\win.ini
2013-06-02 18:18:55 ----D---- C:\Windows\LiveKernelReports
2013-05-31 19:39:35 ----D---- C:\Windows\Tasks
2013-05-30 19:54:07 ----D---- C:\Windows\Setup
2013-05-30 19:27:12 ----RD---- C:\Users
2013-05-30 19:26:23 ----D---- C:\Windows\Help
2013-05-30 19:25:08 ----D---- C:\Windows\system32\CodeIntegrity
2013-05-30 19:24:45 ----D---- C:\Windows\SYSWOW64\en-US
2013-05-30 19:24:45 ----D---- C:\Windows\system32\en-US
2013-05-30 19:13:01 ----D---- C:\Windows\system32\restore
2013-05-30 19:08:14 ----SHD---- C:\$Recycle.Bin
2013-05-30 19:05:43 ----D---- C:\Windows\rescache
2013-05-30 18:57:27 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-06-13 283200]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2013-06-26 335288]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2010-12-21 170640]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2010-12-21 50624]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-12-21 34144]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-15 2225952]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-01-12 325152]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-08-29 102368]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-08-29 203104]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2011-01-12 810144]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-06-28 2470736]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11 256904]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2011-01-12 42360]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 51456888]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-07-02 117144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Run by Kinderko at 2013-07-19 20:54:55
Microsoft Windows 7 Home Premium
System drive C: has 172 GB (46%) free of 377 GB
Total RAM: 3966 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:54:57, on 19. 7. 2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Program Files\trend micro\Kinderko.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3271236306-1146125472-3967744969-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3271236306-1146125472-3967744969-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8258 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
taskeng.exe {D1F5C832-5593-44AF-ABB1-67D23D3C9455}
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe" -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\servicing\TrustedInstaller.exe
taskeng.exe {6990A727-AF0E-4813-8EC7-A22D2A653178}
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3488.10d65c00.1030459129 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 3488 "\\.\pipe\gecko-crash-server-pipe.3488" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --proxy-stub-channel=Flash692.7129D910.10105 --host-broker-channel=Flash692.7129D910.14203 --host-pid=692 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --channel=2000.0042F470.1504881372 --proxy-stub-channel=Flash692.7129D910.10105 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" --host-npapi-version=27 --type=renderer
C:\Windows\system32\PrintIsolationHost.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Kinderko\Desktop\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\extensions\
05dd836e-2cbd-4204-9ff3-2f8a8665967d@a8876730-fb0c-4057-a2fc-f9c09d438e81.com
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\
babylon.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-03 553376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-03 211360]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-06-03 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-06-03 171424]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-15 9644576]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-01-12 2918656]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"uTorrent"=C:\Users\Kinderko\AppData\Roaming\uTorrent\uTorrent.exe [2013-06-01 1043536]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-06-28 2255184]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2013-07-18 22:28:13 ----A---- C:\Windows\DeleteOnReboot.bat
2013-07-18 22:28:12 ----A---- C:\AdwCleaner[S1].txt
2013-07-18 17:39:10 ----A---- C:\Windows\SYSWOW64\drivers\STREAM.SYS
2013-07-15 13:44:18 ----A---- C:\AdwCleaner[R1].txt
2013-07-14 23:00:46 ----D---- C:\Windows\SYSWOW64\searchplugins
2013-07-14 23:00:46 ----D---- C:\Windows\SYSWOW64\Extensions
2013-07-14 09:54:38 ----D---- C:\rsit
2013-07-14 09:54:38 ----D---- C:\Program Files\trend micro
2013-07-13 15:03:35 ----D---- C:\Program Files (x86)\Intelore
2013-07-13 14:52:56 ----D---- C:\ProgramData\BrowserDefender
2013-07-13 14:52:33 ----D---- C:\Program Files (x86)\Delta
2013-07-13 14:52:03 ----D---- C:\Program Files (x86)\WebCake
2013-07-13 14:51:56 ----D---- C:\ProgramData\Tarma Installer
2013-07-13 14:51:56 ----D---- C:\ProgramData\Babylon
2013-07-11 22:37:56 ----D---- C:\ProgramData\Real
2013-07-11 22:37:47 ----D---- C:\Program Files (x86)\DownLite
2013-07-11 22:37:32 ----D---- C:\Program Files (x86)\hosts
2013-07-10 16:07:23 ----D---- C:\Program Files (x86)\Valve
2013-07-05 21:33:28 ----AH---- C:\Windows\system32\hamachi.sys
2013-07-05 21:33:26 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-07-05 20:00:10 ----D---- C:\Users\Kinderko\AppData\Roaming\.minecraft
2013-07-05 12:14:46 ----D---- C:\Users\Kinderko\AppData\Roaming\dvdcss
2013-07-03 18:53:00 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-07-03 18:53:00 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-07-03 18:52:59 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2013-07-03 18:52:59 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-07-02 23:19:06 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-07-01 15:38:20 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-07-01 15:37:58 ----A---- C:\Windows\system32\nvsvcr.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-07-01 15:36:39 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvopencl.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvoglv64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvoglshim64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvinitx.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\NvIFR64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\NvFBC64.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuvid.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcuda.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\nvcompiler.dll
2013-07-01 15:36:39 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-06-29 10:46:14 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-06-29 10:46:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2013-06-29 10:46:13 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-06-29 10:46:12 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2013-06-29 10:46:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-06-29 10:46:11 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-06-29 10:46:10 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-06-29 10:46:09 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-06-29 10:46:08 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-06-29 10:46:07 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2013-06-29 10:46:07 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2013-06-29 10:46:06 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-06-29 10:46:06 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-06-29 10:46:05 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-06-29 10:46:04 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-06-29 10:46:04 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2013-06-29 10:46:02 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-06-29 10:46:02 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-06-29 10:46:01 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-06-29 10:46:00 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2013-06-29 10:46:00 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-06-29 10:43:49 ----HD---- C:\Windows\msdownld.tmp
2013-06-29 10:43:48 ----D---- C:\Windows\SYSWOW64\directx
2013-06-29 10:27:27 ----D---- C:\Program Files (x86)\Need for Speed Most Wanted 2012
2013-06-26 23:30:06 ----D---- C:\Users\Kinderko\AppData\Roaming\ProtectDisc
2013-06-26 23:28:59 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-06-26 23:28:59 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-06-26 23:28:58 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2013-06-26 23:28:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-06-26 23:28:57 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-06-26 23:28:56 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\xinput1_3.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-06-26 23:28:55 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-06-26 23:28:54 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-06-26 23:28:54 ----A---- C:\Windows\system32\d3dx10.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2013-06-26 23:28:53 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\xinput1_2.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-06-26 23:28:53 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-06-26 23:28:14 ----D---- C:\Program Files (x86)\ProtectDisc Driver Installer
2013-06-26 23:28:14 ----A---- C:\Windows\system32\drivers\acedrv11.sys
2013-06-25 12:18:18 ----D---- C:\Program Files (x86)\Electronic Arts
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2013-06-25 12:18:09 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xinput1_1.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-06-25 12:18:09 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-06-25 12:18:06 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2013-06-25 12:18:05 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-06-25 12:18:05 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2013-06-25 12:18:04 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-06-25 12:18:04 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-06-23 14:38:05 ----D---- C:\Program Files (x86)\Rockstar Games
2013-06-21 05:16:02 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2013-06-20 15:21:32 ----A---- C:\Windows\system32\drivers\ssudmdm.sys
2013-06-20 15:21:32 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2013-06-20 15:08:32 ----D---- C:\Program Files\SAMSUNG
2013-06-20 15:08:16 ----D---- C:\ProgramData\Samsung
2013-06-15 12:38:38 ----D---- C:\Windows\Minidump
2013-06-15 12:02:39 ----D---- C:\Program Files (x86)\2K Games
2013-06-13 17:04:46 ----D---- C:\ProgramData\TEMP
2013-06-13 17:03:44 ----D---- C:\Users\Kinderko\AppData\Roaming\Seznam.cz
2013-06-13 17:02:54 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-06-13 17:02:50 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-06-11 14:30:37 ----HD---- C:\ProgramData\CanonIJScan
2013-06-10 14:25:25 ----D---- C:\Users\Kinderko\AppData\Roaming\DAEMON Tools Lite
2013-06-10 14:25:23 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-06-08 21:55:38 ----D---- C:\Users\Kinderko\AppData\Roaming\Canon
2013-06-08 13:02:35 ----D---- C:\ProgramData\Rockstar Games
2013-06-06 15:04:39 ----D---- C:\Program Files (x86)\Canon
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNHMCA.dll
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNC_B5U.dll
2013-06-06 15:04:39 ----A---- C:\Windows\SYSWOW64\CNC_B5L.dll
2013-06-06 15:04:33 ----HD---- C:\ProgramData\CanonBJ
2013-06-06 15:04:31 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNHMCA6.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5L.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5I.dll
2013-06-06 15:04:30 ----A---- C:\Windows\system32\CNC_B5C.dll
2013-06-06 15:04:26 ----A---- C:\Windows\system32\CNMLMB5.DLL
2013-06-06 15:04:21 ----HD---- C:\Program Files\CanonBJ
2013-06-05 22:07:54 ----D---- C:\Program Files\Common Files\DESIGNER
2013-06-05 22:07:31 ----D---- C:\Program Files\Microsoft Synchronization Services
2013-06-05 22:07:15 ----D---- C:\Windows\PCHEALTH
2013-06-05 22:07:15 ----D---- C:\Program Files\Microsoft Sync Framework
2013-06-05 22:07:15 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2013-06-05 22:06:02 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-06-05 22:05:23 ----D---- C:\Program Files\Microsoft Analysis Services
2013-06-05 22:05:23 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2013-06-05 22:05:14 ----D---- C:\Program Files (x86)\Microsoft Office
2013-06-05 22:05:13 ----D---- C:\Program Files\Microsoft Office
2013-06-05 22:05:12 ----D---- C:\ProgramData\Microsoft Help
2013-06-05 22:05:01 ----RHD---- C:\MSOCache
2013-06-04 13:11:41 ----D---- C:\Users\Kinderko\AppData\Roaming\Mozilla
2013-06-04 13:11:37 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-06-03 20:21:05 ----D---- C:\Users\Kinderko\AppData\Roaming\NVIDIA
2013-06-03 20:17:35 ----D---- C:\ProgramData\Sun
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-06-03 20:17:27 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-06-03 20:17:26 ----A---- C:\Windows\SYSWOW64\java.exe
2013-06-03 20:17:19 ----D---- C:\Program Files (x86)\Java
2013-06-03 20:04:04 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-06-03 20:04:04 ----A---- C:\Windows\system32\javaws.exe
2013-06-03 20:04:04 ----A---- C:\Windows\system32\deployJava1.dll
2013-06-03 20:04:02 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-06-03 20:04:02 ----A---- C:\Windows\system32\javaw.exe
2013-06-03 20:04:02 ----A---- C:\Windows\system32\java.exe
2013-06-03 20:03:57 ----D---- C:\Program Files\Java
2013-06-03 19:28:59 ----D---- C:\ProgramData\ESET
2013-06-03 19:28:59 ----D---- C:\Program Files\ESET
2013-06-03 19:21:14 ----D---- C:\Program Files\CCleaner
2013-06-03 19:07:25 ----D---- C:\Users\Kinderko\AppData\Roaming\ESET
2013-06-03 15:31:56 ----D---- C:\Program Files (x86)\DsNET Corp
2013-06-01 11:33:40 ----D---- C:\Users\Kinderko\AppData\Roaming\vlc
2013-06-01 11:33:22 ----D---- C:\Program Files (x86)\VideoLAN
2013-06-01 11:12:30 ----D---- C:\Users\Kinderko\AppData\Roaming\uTorrent
2013-06-01 11:09:50 ----D---- C:\Users\Kinderko\AppData\Roaming\WinRAR
2013-06-01 11:09:11 ----D---- C:\Program Files (x86)\WinRAR
2013-05-31 19:40:15 ----D---- C:\Users\Kinderko\AppData\Roaming\Macromedia
2013-05-31 19:40:15 ----D---- C:\Users\Kinderko\AppData\Roaming\Adobe
2013-05-31 19:39:36 ----D---- C:\ProgramData\McAfee
2013-05-31 19:39:34 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-31 19:39:33 ----D---- C:\Windows\SYSWOW64\Macromed
2013-05-31 19:39:33 ----D---- C:\Windows\system32\Macromed
2013-05-31 12:00:47 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2013-05-31 11:33:27 ----D---- C:\Users\Kinderko\AppData\Roaming\Skype
2013-05-31 11:33:24 ----RD---- C:\Program Files (x86)\Skype
2013-05-31 11:33:21 ----D---- C:\ProgramData\Skype
2013-05-30 23:32:46 ----N---- C:\Windows\system32\MpSigStub.exe
2013-05-30 19:54:31 ----D---- C:\Windows\Panther
2013-05-30 19:39:17 ----D---- C:\Program Files (x86)\MozBackup
2013-05-30 19:36:50 ----D---- C:\ProgramData\Mozilla
2013-05-30 19:26:56 ----D---- C:\ProgramData\NVIDIA
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvsvc64.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvshext.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-30 19:26:24 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-30 19:26:19 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-05-30 19:26:19 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-30 19:26:15 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-30 19:26:13 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-05-30 19:25:43 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-05-30 19:24:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-05-30 19:24:38 ----SHD---- C:\Windows\Installer
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-05-30 19:24:17 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\PresentationHost.exe
2013-05-30 19:24:17 ----A---- C:\Windows\system32\netfxperf.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\mscoree.dll
2013-05-30 19:24:17 ----A---- C:\Windows\system32\dfshim.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-05-30 19:23:42 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvumdshimx.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvhdap64.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvdispgenco6432018.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvdispco6432018.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\nvapi64.dll
2013-05-30 19:23:42 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-05-30 19:23:02 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-30 19:22:45 ----D---- C:\NVIDIA
2013-05-30 19:15:22 ----D---- C:\ProgramData\EPU
2013-05-30 19:14:10 ----RA---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2013-05-30 19:14:10 ----RA---- C:\Windows\SYSWOW64\AsIO.dll
2013-05-30 19:14:09 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp64.sys
2013-05-30 19:14:09 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp32.sys
2013-05-30 19:14:08 ----D---- C:\Program Files (x86)\ASUS
2013-05-30 19:13:31 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-05-30 19:13:31 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-05-30 19:13:31 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-05-30 19:12:51 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-05-30 19:12:51 ----D---- C:\Program Files\Realtek
2013-05-30 19:12:42 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSWOW64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSTSX64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSTSH64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\SRSHP64.dll
2013-05-30 19:12:40 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-05-30 19:12:39 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-05-30 19:12:39 ----A---- C:\Windows\system32\RtkApi64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTEED64A.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\RTCOM64.dll
2013-05-30 19:12:38 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-05-30 19:12:37 ----A---- C:\Windows\system32\RCoInst64.dll
2013-05-30 19:12:36 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-05-30 19:12:36 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-05-30 19:12:35 ----A---- C:\Windows\system32\FMAPO64.dll
2013-05-30 19:12:34 ----D---- C:\Program Files (x86)\Realtek
2013-05-30 19:12:34 ----A---- C:\Windows\system32\AERTAR64.dll
2013-05-30 19:12:34 ----A---- C:\Windows\system32\AERTAC64.dll
2013-05-30 19:12:33 ----HD---- C:\Program Files (x86)\Temp
2013-05-30 19:12:33 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-05-30 19:12:32 ----R---- C:\Windows\RtlExUpd.dll
2013-05-30 19:12:16 ----RA---- C:\Windows\SYSWOW64\CSVer.dll
2013-05-30 19:12:16 ----D---- C:\Program Files (x86)\Intel
2013-05-30 19:12:11 ----D---- C:\Intel
2013-05-30 19:10:36 ----A---- C:\Windows\Ascd_log.ini
2013-05-30 19:10:06 ----D---- C:\Windows\SoftwareDistribution
2013-05-30 19:09:40 ----A---- C:\Windows\Language_trs.ini
2013-05-30 19:09:35 ----A---- C:\Windows\Ascd_tmp.ini
2013-05-30 19:08:16 ----D---- C:\Users\Kinderko\AppData\Roaming\Identities
2013-05-30 19:08:01 ----SD---- C:\Users\Kinderko\AppData\Roaming\Microsoft
2013-05-30 19:08:01 ----D---- C:\Users\Kinderko\AppData\Roaming\Media Center Programs
2013-05-30 19:06:48 ----SHD---- C:\Recovery
2013-05-30 18:55:43 ----D---- C:\Windows\Prefetch
2013-05-30 18:55:21 ----ASH---- C:\pagefile.sys
2013-05-30 18:55:20 ----SHD---- C:\System Volume Information
2013-05-30 18:55:20 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 3 months======
2013-07-19 20:54:56 ----D---- C:\Windows\Temp
2013-07-19 20:51:50 ----D---- C:\Windows\system32\config
2013-07-19 14:37:53 ----D---- C:\Windows\System32
2013-07-19 14:37:53 ----D---- C:\Windows\inf
2013-07-19 14:37:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-18 22:28:13 ----D---- C:\Windows
2013-07-18 21:36:42 ----D---- C:\Windows\system32\Tasks
2013-07-18 18:38:08 ----D---- C:\Windows\twain_32
2013-07-18 18:38:08 ----D---- C:\Windows\SYSWOW64\drivers
2013-07-18 18:38:07 ----RD---- C:\Program Files (x86)
2013-07-18 18:38:07 ----D---- C:\Windows\SysWOW64
2013-07-18 17:39:10 ----D---- C:\Windows\Downloaded Program Files
2013-07-17 10:37:42 ----D---- C:\Windows\system32\catroot2
2013-07-14 09:54:38 ----RD---- C:\Program Files
2013-07-13 14:52:56 ----HD---- C:\ProgramData
2013-07-08 16:08:47 ----D---- C:\Windows\Logs
2013-07-05 21:32:50 ----D---- C:\Windows\system32\drivers
2013-07-03 18:53:09 ----D---- C:\Program Files (x86)\Common Files
2013-07-03 18:52:46 ----RSD---- C:\Windows\assembly
2013-07-01 15:39:04 ----D---- C:\Windows\system32\DriverStore
2013-07-01 15:39:04 ----D---- C:\Windows\system32\catroot
2013-07-01 11:25:02 ----D---- C:\Windows\winsxs
2013-06-30 17:04:46 ----D---- C:\Windows\system32\wdi
2013-06-29 10:46:20 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-06-25 12:18:07 ----D---- C:\Windows\Microsoft.NET
2013-06-09 12:42:08 ----D---- C:\Windows\debug
2013-06-06 15:26:41 ----D---- C:\Windows\system32\drivers\UMDF
2013-06-06 15:04:39 ----RSD---- C:\Windows\Media
2013-06-05 22:08:00 ----RSD---- C:\Windows\Fonts
2013-06-05 22:07:54 ----D---- C:\Windows\ShellNew
2013-06-05 22:07:54 ----D---- C:\Program Files\Common Files
2013-06-05 22:07:23 ----D---- C:\Program Files (x86)\MSBuild
2013-06-05 22:07:15 ----SD---- C:\ProgramData\Microsoft
2013-06-05 22:05:48 ----D---- C:\Program Files\Common Files\System
2013-06-05 22:05:48 ----A---- C:\Windows\win.ini
2013-06-02 18:18:55 ----D---- C:\Windows\LiveKernelReports
2013-05-31 19:39:35 ----D---- C:\Windows\Tasks
2013-05-30 19:54:07 ----D---- C:\Windows\Setup
2013-05-30 19:27:12 ----RD---- C:\Users
2013-05-30 19:26:23 ----D---- C:\Windows\Help
2013-05-30 19:25:08 ----D---- C:\Windows\system32\CodeIntegrity
2013-05-30 19:24:45 ----D---- C:\Windows\SYSWOW64\en-US
2013-05-30 19:24:45 ----D---- C:\Windows\system32\en-US
2013-05-30 19:13:01 ----D---- C:\Windows\system32\restore
2013-05-30 19:08:14 ----SHD---- C:\$Recycle.Bin
2013-05-30 19:05:43 ----D---- C:\Windows\rescache
2013-05-30 18:57:27 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-06-13 283200]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2013-06-26 335288]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2010-12-21 170640]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2010-12-21 50624]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-12-21 34144]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-15 2225952]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-01-12 325152]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-08-29 102368]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-08-29 203104]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2011-01-12 810144]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-06-28 2470736]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11 256904]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2011-01-12 42360]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 51456888]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-07-02 117144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119529
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu (PC zamrza)
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:files
C:\Users\Kinderko\AppData\Roaming\Mozilla\Firefox\Profiles\yqi1gufv.default\searchplugins\babylon.xml
:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.