Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Potrebujem radu a pomoc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Potrebujem radu a pomoc

#1 Příspěvek od Klaun18 »

Ahoj chcel by som poziadat o pomoc prva vec procesor je stale zatazeny na 20 percent a vysie aj pri klude neviem ci to tak ma byt alebo nie pc s mi seka v prehliadaci sekaju s ami videa niekedy mi to restartuje pc alebo zcernie obraz a zas naskoci procesor je v tej dobe na 100percent v hrach niesu ziadne problemi tak ja uz neviem.
Moja zostava je Phenom II X4 955,Doska Asrock785GM-S3,8GB DDR3 1333,Karta GTX 560Ti.

Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Re: Potrebujem radu a pomoc

#2 Příspěvek od Klaun18 »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Klaun at 2013-09-01 00:10:14
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 261 GB (86%) free of 305 GB
Total RAM: 8191 MB (69% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:10:15, on 1. 9. 2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16660)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
C:\Program Files (x86)\SpeedFan\speedfan.exe
E:\SRDownloader.exe
D:\Hry\Steam\Steam.exe
C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
D:\Hry\Steam\steamapps\common\Company of Heroes Relaunch\RelicCOH.exe
D:\Hry\Steam\GameOverlayUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Program Files (x86)\WinRAR\WinRAR.exe
C:\Program Files\trend micro\Klaun.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE10ENUS/MSE_WCP
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, enhanced for Bing and MSN
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1408939222-2935056871-1359429996-1002\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1408939222-2935056871-1359429996-1002\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASGT - Unknown owner - C:\Windows\SysWOW64\ASGT.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7421 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\SysWOW64\ASGT.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Windows\system32\rundll32.exe" Shell32.dll,Control_RunDLL mmsys.cpl
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "1262722517-18525784528722884511692494292-881381213-24673134933775104302228347
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"D:\TeamSpeak 3 Client\ts3client_win64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe" -Embedding
"C:\Program Files (x86)\SpeedFan\speedfan.exe"
"E:\SRDownloader.exe"
"D:\Hry\Steam\Steam.exe"
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\totalcmd\TOTALCMD.EXE"
"D:\Hry\Steam\steamapps\common\Company of Heroes Relaunch\RelicCOH.exe" -dev -nomovies -mod Blitzkrieg
D:\Hry\Steam\GameOverlayUI.exe -pid 5128 -manuallyclearframes 0
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=5488.1594f100.256652289 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 5488 "\\.\pipe\gecko-crash-server-pipe.5488" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe" --proxy-stub-channel=Flash5528.5F4AA550.14820 --host-broker-channel=Flash5528.5F4AA550.17977 --host-pid=5528 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe" --channel=4124.006CF1E8.663936884 --proxy-stub-channel=Flash5528.5F4AA550.14820 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\WinRAR\WinRAR.exe" "C:\Users\Klaun\Downloads\cpu-z_1.65-en.zip"
"C:\Users\Klaun\AppData\Local\Temp\Rar$EX00.197\cpuz_x64.exe"
taskhost.exe $(Arg0)
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Klaun\Downloads\RSITx64.exe"

=========Mozilla firefox=========

ProfilePath - C:\Users\Klaun\AppData\Roaming\Mozilla\Firefox\Profiles\pws8chug.default

prefs.js - "browser.startup.homepage" - "www.google.sk"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-08-14 6311296]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-08-14 4533120]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-03-29 13513288]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-08-27 1028896]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-07-18 1356240]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-06-21 19875432]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2008-06-30 52168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-08-31 23:56:00 ----D---- C:\rsit
2013-08-31 23:56:00 ----D---- C:\Program Files\trend micro
2013-08-31 23:20:01 ----D---- C:\Program Files (x86)\CCleaner
2013-08-31 23:18:27 ----D---- C:\Windows\system32\appmgmt
2013-08-31 00:55:49 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-08-31 00:51:07 ----HD---- C:\Windows\msdownld.tmp
2013-08-31 00:39:57 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-08-31 00:39:55 ----D---- C:\Program Files\Microsoft Security Client
2013-08-30 23:37:09 ----D---- C:\ProgramData\RELOADED
2013-08-30 23:22:19 ----A---- C:\Windows\system32\drivers\nvflash.sys
2013-08-30 23:21:31 ----A---- C:\Windows\system32\drivers\IOMap64.sys
2013-08-30 23:19:54 ----D---- C:\Program Files (x86)\ASUS
2013-08-30 23:19:36 ----D---- C:\Windows\Downloaded Installations
2013-08-30 22:41:45 ----D---- C:\Windows\SYSWOW64\directx
2013-08-29 20:52:56 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2013-08-29 20:52:56 ----A---- C:\Windows\system32\nvaudcap64v.dll
2013-08-29 20:52:56 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2013-08-29 20:39:54 ----A---- C:\Windows\system32\nvhdap64.dll
2013-08-29 20:39:54 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-08-29 16:54:56 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvopencl.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvoglv64.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvoglshim64.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvinitx.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\NvIFR64.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\NvFBC64.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvcuvid.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvcuda.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\nvcompiler.dll
2013-08-29 16:54:56 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-08-29 16:05:05 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-08-29 14:30:40 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-08-29 14:30:40 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-08-29 14:30:40 ----A---- C:\Windows\system32\nvdispgenco6432680.dll
2013-08-29 14:30:40 ----A---- C:\Windows\system32\nvdispco6432680.dll
2013-08-28 21:48:59 ----D---- C:\Windows\pss
2013-08-28 21:10:12 ----D---- C:\Program Files (x86)\OCCTPT
2013-08-28 21:09:57 ----D---- C:\Program Files (x86)\SpeedFan
2013-08-28 21:09:43 ----D---- C:\Program Files (x86)\Geeks3D
2013-08-28 20:53:26 ----D---- C:\Program Files (x86)\Codec Pack - All In 1
2013-08-28 18:28:01 ----D---- C:\ProgramData\Package Cache
2013-08-25 21:27:49 ----D---- C:\Users\Klaun\AppData\Roaming\Wargaming.net
2013-08-25 12:04:45 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-08-25 12:04:44 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-08-25 12:04:44 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-08-25 12:04:44 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-08-25 12:04:44 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-08-25 12:04:44 ----A---- C:\Windows\system32\wow64.dll
2013-08-25 12:04:44 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-08-25 12:04:44 ----A---- C:\Windows\system32\ntdll.dll
2013-08-25 12:04:43 ----A---- C:\Windows\SYSWOW64\user.exe
2013-08-25 12:04:43 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-08-25 12:04:43 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-08-24 23:20:03 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-08-24 23:20:03 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-08-24 23:20:03 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2013-08-24 23:20:03 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-08-24 23:20:03 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2013-08-24 23:20:03 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2013-08-24 23:20:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-08-24 23:20:03 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-08-24 23:20:03 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-08-24 23:20:03 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-08-24 23:20:03 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-08-24 23:20:03 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-08-24 23:20:03 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-08-24 23:20:03 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-08-24 23:20:02 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2013-08-24 23:20:02 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-08-24 21:04:57 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-08-24 21:04:57 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-08-24 21:04:57 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-08-24 21:04:57 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-08-24 21:04:57 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-08-24 21:04:57 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-08-24 21:04:57 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-08-24 21:04:55 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2013-08-24 21:04:55 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-08-24 21:04:55 ----A---- C:\Windows\system32\fsutil.exe
2013-08-24 21:04:55 ----A---- C:\Windows\system32\esent.dll
2013-08-24 21:04:55 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-08-24 21:04:54 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-08-24 21:04:54 ----A---- C:\Windows\system32\drivers\storport.sys
2013-08-24 21:04:54 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-08-24 21:04:54 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-08-24 21:04:54 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-08-24 21:04:54 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-08-24 21:04:53 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-08-24 21:04:53 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-08-24 06:47:50 ----D---- C:\Windows\Panther
2013-08-24 06:47:38 ----RASH---- C:\BOOTSECT.BAK
2013-08-24 06:47:36 ----SHD---- C:\Boot
2013-08-24 06:47:19 ----RA---- C:\Windows\csup.txt
2013-08-24 06:47:19 ----D---- C:\Windows\system32\OEM
2013-08-24 06:47:19 ----D---- C:\Hotfix
2013-08-24 06:47:19 ----D---- C:\Drivers
2013-08-24 06:45:57 ----D---- C:\Windows\SYSWOW64\drivers\sk-SK
2013-08-24 06:45:57 ----D---- C:\Windows\system32\drivers\sk-SK
2013-08-24 06:45:57 ----D---- C:\Windows\sk-SK
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-08-24 00:30:51 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-08-24 00:30:51 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-08-24 00:30:51 ----A---- C:\Windows\system32\elshyph.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\url.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-08-24 00:30:50 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\wininet.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\wextract.exe
2013-08-24 00:30:50 ----A---- C:\Windows\system32\webcheck.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\vbscript.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\urlmon.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\url.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-08-24 00:30:50 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-24 00:30:50 ----A---- C:\Windows\system32\pngfilt.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\occache.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\msrating.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\msls31.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\mshtmler.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\mshtmled.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\mshtml.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\mshta.exe
2013-08-24 00:30:50 ----A---- C:\Windows\system32\msfeedssync.exe
2013-08-24 00:30:50 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\msfeeds.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\licmgr10.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\jsproxy.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\jscript9.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\jscript.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\inseng.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\imgutil.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\iexpress.exe
2013-08-24 00:30:50 ----A---- C:\Windows\system32\ieUnatt.exe
2013-08-24 00:30:50 ----A---- C:\Windows\system32\ieui.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\iesysprep.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\iesetup.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\iertutil.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\iernonce.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\iepeers.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\ieframe.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\iedkcs32.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\ieapfltr.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\ieapfltr.dat
2013-08-24 00:30:50 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\ie4uinit.exe
2013-08-24 00:30:50 ----A---- C:\Windows\system32\icardie.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\dxtrans.dll
2013-08-24 00:30:50 ----A---- C:\Windows\system32\dxtmsft.dll
2013-08-24 00:19:34 ----D---- C:\Users\Klaun\AppData\Roaming\NVIDIA
2013-08-24 00:15:15 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2013-08-24 00:15:15 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2013-08-24 00:15:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2013-08-24 00:15:15 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2013-08-24 00:15:15 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2013-08-24 00:15:15 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-08-24 00:15:15 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-08-24 00:15:15 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-08-24 00:15:15 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-08-24 00:15:15 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-08-24 00:15:14 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2013-08-24 00:15:14 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2013-08-24 00:15:14 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2013-08-24 00:15:14 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-08-24 00:15:14 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-08-24 00:15:14 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-08-24 00:15:14 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-08-24 00:15:13 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2013-08-24 00:15:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2013-08-24 00:15:13 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2013-08-24 00:15:13 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-08-24 00:15:13 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-08-24 00:15:13 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-08-24 00:15:12 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2013-08-24 00:15:12 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2013-08-24 00:15:12 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2013-08-24 00:15:12 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2013-08-24 00:15:12 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2013-08-24 00:15:12 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-08-24 00:15:12 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-08-24 00:15:12 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-08-24 00:15:12 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-08-24 00:15:12 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-08-24 00:15:11 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2013-08-24 00:15:11 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2013-08-24 00:15:11 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2013-08-24 00:15:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2013-08-24 00:15:11 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-08-24 00:15:11 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-08-24 00:15:11 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-08-24 00:15:11 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-08-24 00:15:10 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-08-24 00:15:10 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-08-24 00:15:10 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2013-08-24 00:15:10 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-08-24 00:15:10 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-08-24 00:15:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-08-24 00:15:10 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-08-24 00:15:10 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-08-24 00:15:10 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-08-24 00:15:10 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-08-24 00:15:10 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-08-24 00:15:10 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-08-24 00:15:09 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2013-08-24 00:15:09 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2013-08-24 00:15:09 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2013-08-24 00:15:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2013-08-24 00:15:09 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-08-24 00:15:09 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-08-24 00:15:09 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-08-24 00:15:09 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-08-24 00:15:08 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2013-08-24 00:15:08 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2013-08-24 00:15:08 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2013-08-24 00:15:08 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2013-08-24 00:15:08 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2013-08-24 00:15:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2013-08-24 00:15:08 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-08-24 00:15:08 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-08-24 00:15:08 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-08-24 00:15:08 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-08-24 00:15:08 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-08-24 00:15:08 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-08-24 00:15:07 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2013-08-24 00:15:07 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2013-08-24 00:15:07 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2013-08-24 00:15:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2013-08-24 00:15:07 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-08-24 00:15:07 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-08-24 00:15:07 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-08-24 00:15:07 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-08-24 00:15:06 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2013-08-24 00:15:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2013-08-24 00:15:06 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-08-24 00:15:06 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-08-24 00:15:05 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2013-08-24 00:15:05 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2013-08-24 00:15:05 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-08-24 00:15:05 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-08-24 00:15:04 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2013-08-24 00:15:04 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2013-08-24 00:15:04 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2013-08-24 00:15:04 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2013-08-24 00:15:04 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2013-08-24 00:15:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2013-08-24 00:15:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2013-08-24 00:15:04 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-08-24 00:15:04 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-08-24 00:15:04 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-08-24 00:15:04 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-08-24 00:15:04 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-08-24 00:15:04 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-08-24 00:15:04 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-08-24 00:15:03 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2013-08-24 00:15:03 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2013-08-24 00:15:03 ----A---- C:\Windows\system32\xinput1_3.dll
2013-08-24 00:15:03 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-08-24 00:15:02 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2013-08-24 00:15:02 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2013-08-24 00:15:02 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2013-08-24 00:15:02 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2013-08-24 00:15:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2013-08-24 00:15:02 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-08-24 00:15:02 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-08-24 00:15:02 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-08-24 00:15:02 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-08-24 00:15:02 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-08-24 00:15:01 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2013-08-24 00:15:01 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2013-08-24 00:15:01 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2013-08-24 00:15:01 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-08-24 00:15:01 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2013-08-24 00:15:01 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-08-24 00:15:01 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-08-24 00:15:01 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-08-24 00:15:01 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-08-24 00:15:01 ----A---- C:\Windows\system32\d3dx10.dll
2013-08-24 00:15:00 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-08-24 00:15:00 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-08-24 00:14:59 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2013-08-24 00:14:59 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2013-08-24 00:14:59 ----A---- C:\Windows\system32\xinput1_2.dll
2013-08-24 00:14:59 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-08-24 00:14:58 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2013-08-24 00:14:58 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2013-08-24 00:14:58 ----A---- C:\Windows\system32\xinput1_1.dll
2013-08-24 00:14:58 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-08-24 00:14:56 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2013-08-24 00:14:56 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-08-24 00:14:52 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-08-24 00:14:52 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-08-24 00:14:51 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2013-08-24 00:14:51 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2013-08-24 00:14:51 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-08-24 00:14:51 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-08-24 00:14:50 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2013-08-24 00:14:50 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-08-24 00:14:49 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2013-08-24 00:14:49 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-08-24 00:14:48 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2013-08-24 00:14:48 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-08-24 00:14:47 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2013-08-24 00:14:47 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-08-24 00:14:42 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2013-08-24 00:14:42 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2013-08-24 00:14:42 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-08-24 00:14:42 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-08-24 00:13:51 ----D---- C:\Windows\3F5C371F8EA24F259D3DD0B4526E3AEA.TMP
2013-08-23 23:59:28 ----D---- C:\Windows\Minidump
2013-08-23 23:09:32 ----D---- C:\Users\Klaun\AppData\Roaming\Skype
2013-08-23 23:09:27 ----RD---- C:\Program Files (x86)\Skype
2013-08-23 23:09:24 ----D---- C:\ProgramData\Skype
2013-08-23 23:06:19 ----D---- C:\Users\Klaun\AppData\Roaming\WinRAR
2013-08-23 23:03:59 ----D---- C:\Users\Klaun\AppData\Roaming\vlc
2013-08-23 23:03:36 ----D---- C:\Program Files (x86)\VideoLAN
2013-08-23 23:02:15 ----D---- C:\Program Files (x86)\Elaborate Bytes
2013-08-23 22:51:40 ----D---- C:\Users\Klaun\AppData\Roaming\Macromedia
2013-08-23 22:51:40 ----D---- C:\Users\Klaun\AppData\Roaming\Adobe
2013-08-23 22:50:43 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-08-23 22:50:42 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-08-23 22:50:40 ----D---- C:\Windows\system32\Macromed
2013-08-23 22:48:04 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-08-23 22:47:47 ----SHD---- C:\Windows\Installer
2013-08-23 22:46:23 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-08-23 22:46:22 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-08-23 22:46:22 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-08-23 22:46:22 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-08-23 22:44:37 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-08-23 22:44:37 ----A---- C:\Windows\system32\DWrite.dll
2013-08-23 22:00:55 ----D---- C:\NVIDIA
2013-08-23 22:00:36 ----D---- C:\Users\Klaun\AppData\Roaming\GHISLER
2013-08-23 22:00:36 ----D---- C:\Program Files (x86)\totalcmd
2013-08-23 22:00:36 ----A---- C:\Windows\UC.PIF
2013-08-23 22:00:36 ----A---- C:\Windows\RAR.PIF
2013-08-23 22:00:36 ----A---- C:\Windows\PKZIP.PIF
2013-08-23 22:00:36 ----A---- C:\Windows\PKUNZIP.PIF
2013-08-23 22:00:36 ----A---- C:\Windows\NOCLOSE.PIF
2013-08-23 22:00:36 ----A---- C:\Windows\LHA.PIF
2013-08-23 22:00:36 ----A---- C:\Windows\ARJ.PIF
2013-08-23 22:00:17 ----D---- C:\Program Files (x86)\WinRAR
2013-08-23 21:59:57 ----D---- C:\Windows\SYSWOW64\Macromed
2013-08-23 21:55:12 ----D---- C:\Users\Klaun\AppData\Roaming\Mozilla
2013-08-23 21:55:08 ----D---- C:\ProgramData\Mozilla
2013-08-23 21:51:52 ----A---- C:\Windows\system32\Wdfres.dll
2013-08-23 21:51:52 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-08-23 21:51:52 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-08-23 21:48:11 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-08-23 21:48:11 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-08-23 21:48:11 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-08-23 21:48:11 ----A---- C:\Windows\system32\drivers\TsUsbGD.sys
2013-08-23 21:48:11 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-08-23 21:48:11 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-08-23 21:48:10 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2013-08-23 21:48:10 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-08-23 21:48:10 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2013-08-23 21:48:10 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-08-23 21:48:10 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-08-23 21:48:10 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2013-08-23 21:48:10 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-08-23 21:48:10 ----A---- C:\Windows\system32\wksprtPS.dll
2013-08-23 21:48:10 ----A---- C:\Windows\system32\wksprt.exe
2013-08-23 21:48:10 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-08-23 21:48:10 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-08-23 21:48:10 ----A---- C:\Windows\system32\tsgqec.dll
2013-08-23 21:48:10 ----A---- C:\Windows\system32\rdpudd.dll
2013-08-23 21:48:10 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-08-23 21:48:10 ----A---- C:\Windows\system32\rdpcorets.dll
2013-08-23 21:48:10 ----A---- C:\Windows\system32\mstsc.exe
2013-08-23 21:48:10 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-08-23 21:48:10 ----A---- C:\Windows\system32\aaclient.dll
2013-08-23 21:48:09 ----A---- C:\Windows\system32\mstscax.dll
2013-08-23 21:43:48 ----A---- C:\Windows\system32\browserchoice.exe
2013-08-23 21:42:36 ----D---- C:\Windows\system32\MRT
2013-08-23 21:42:35 ----A---- C:\Windows\system32\MRT.exe
2013-08-23 21:34:49 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-08-23 21:34:49 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-08-23 21:34:49 ----A---- C:\Windows\system32\fontsub.dll
2013-08-23 21:34:49 ----A---- C:\Windows\system32\atmlib.dll
2013-08-23 21:34:48 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-08-23 21:34:48 ----A---- C:\Windows\system32\atmfd.dll
2013-08-23 21:33:58 ----A---- C:\Windows\system32\WUDFx.dll
2013-08-23 21:33:58 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-08-23 21:33:58 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-08-23 21:33:58 ----A---- C:\Windows\system32\WUDFHost.exe
2013-08-23 21:33:58 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-08-23 21:33:58 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-08-23 21:33:58 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-08-23 21:32:07 ----D---- C:\ProgramData\NVIDIA
2013-08-23 21:31:51 ----A---- C:\Windows\system32\nvvsvc.exe
2013-08-23 21:31:51 ----A---- C:\Windows\system32\nvsvcr.dll
2013-08-23 21:31:51 ----A---- C:\Windows\system32\nvsvc64.dll
2013-08-23 21:31:51 ----A---- C:\Windows\system32\nvshext.dll
2013-08-23 21:31:51 ----A---- C:\Windows\system32\nvmctray.dll
2013-08-23 21:31:51 ----A---- C:\Windows\system32\nvcpl.dll
2013-08-23 21:31:41 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-08-23 21:31:41 ----A---- C:\Windows\system32\OpenCL.dll
2013-08-23 21:31:29 ----D---- C:\ProgramData\NVIDIA Corporation
2013-08-23 21:31:27 ----D---- C:\Program Files\NVIDIA Corporation
2013-08-23 21:31:27 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-08-23 21:28:21 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-08-23 21:28:21 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-08-23 21:28:21 ----A---- C:\Windows\system32\UIAnimation.dll
2013-08-23 21:28:21 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-08-23 21:28:20 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-08-23 21:28:20 ----A---- C:\Windows\system32\WMPhoto.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-23 21:28:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-08-23 21:28:19 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\XpsPrint.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\dxgi.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\d3d10warp.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\d3d10level9.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\d3d10core.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\d3d10_1.dll
2013-08-23 21:28:19 ----A---- C:\Windows\system32\d3d10.dll
2013-08-23 21:28:18 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-08-23 21:28:18 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-08-23 21:28:18 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-08-23 21:28:18 ----A---- C:\Windows\system32\FntCache.dll
2013-08-23 21:28:18 ----A---- C:\Windows\system32\d2d1.dll
2013-08-23 21:27:32 ----A---- C:\Windows\SYSWOW64\wmi.dll
2013-08-23 21:27:32 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-08-23 21:27:32 ----A---- C:\Windows\system32\wmi.dll
2013-08-23 21:27:32 ----A---- C:\Windows\system32\imagehlp.dll
2013-08-23 21:27:32 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-08-23 21:20:28 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-08-23 21:20:28 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-08-23 21:20:28 ----A---- C:\Windows\system32\Wpc.dll
2013-08-23 21:20:28 ----A---- C:\Windows\system32\gameux.dll
2013-08-23 21:20:19 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-08-23 21:20:19 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-08-23 21:20:19 ----A---- C:\Windows\system32\wow64win.dll
2013-08-23 21:20:19 ----A---- C:\Windows\system32\KernelBase.dll
2013-08-23 21:20:19 ----A---- C:\Windows\system32\kernel32.dll
2013-08-23 21:20:19 ----A---- C:\Windows\system32\conhost.exe
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-08-23 21:20:18 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-23 21:20:18 ----A---- C:\Windows\system32\wow64cpu.dll
2013-08-23 21:20:18 ----A---- C:\Windows\system32\ntvdm64.dll
2013-08-23 21:20:00 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-08-23 21:20:00 ----A---- C:\Windows\system32\shell32.dll
2013-08-23 21:19:59 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-08-23 21:19:59 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-08-23 21:19:59 ----A---- C:\Windows\system32\shdocvw.dll
2013-08-23 21:19:59 ----A---- C:\Windows\system32\consent.exe
2013-08-23 21:19:59 ----A---- C:\Windows\system32\authui.dll
2013-08-23 21:19:59 ----A---- C:\Windows\system32\appinfo.dll
2013-08-23 21:19:55 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-08-23 21:19:55 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-08-23 21:19:55 ----A---- C:\Windows\system32\certutil.exe
2013-08-23 21:19:55 ----A---- C:\Windows\system32\certenc.dll
2013-08-23 21:19:53 ----A---- C:\Windows\SYSWOW64\sbe.dll
2013-08-23 21:19:53 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2013-08-23 21:19:53 ----A---- C:\Windows\system32\sbe.dll
2013-08-23 21:19:53 ----A---- C:\Windows\system32\CPFilters.dll
2013-08-23 21:19:48 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-08-23 21:19:48 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-08-23 21:19:48 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-08-23 21:19:48 ----A---- C:\Windows\system32\schannel.dll
2013-08-23 21:19:48 ----A---- C:\Windows\system32\lsasrv.dll
2013-08-23 21:19:48 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-08-23 21:19:48 ----A---- C:\Windows\system32\drivers\cng.sys
2013-08-23 21:19:47 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-08-23 21:19:47 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-08-23 21:19:47 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-08-23 21:19:47 ----A---- C:\Windows\system32\tquery.dll
2013-08-23 21:19:47 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-08-23 21:19:47 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-08-23 21:19:47 ----A---- C:\Windows\system32\mssrch.dll
2013-08-23 21:19:46 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-08-23 21:19:46 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-08-23 21:19:46 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-08-23 21:19:46 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-08-23 21:19:46 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-08-23 21:19:46 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-08-23 21:19:46 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-08-23 21:19:46 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-23 21:19:46 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-08-23 21:19:46 ----A---- C:\Windows\system32\mssvp.dll
2013-08-23 21:19:46 ----A---- C:\Windows\system32\mssphtb.dll
2013-08-23 21:19:46 ----A---- C:\Windows\system32\mssph.dll
2013-08-23 21:19:46 ----A---- C:\Windows\system32\msscntrs.dll
2013-08-23 21:19:45 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-08-23 21:19:45 ----A---- C:\Windows\system32\crypt32.dll
2013-08-23 21:19:44 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-08-23 21:19:44 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-08-23 21:19:44 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-08-23 21:19:44 ----A---- C:\Windows\system32\wintrust.dll
2013-08-23 21:19:44 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-23 21:19:44 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-23 21:19:40 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2013-08-23 21:19:40 ----A---- C:\Windows\system32\sspisrv.dll
2013-08-23 21:19:40 ----A---- C:\Windows\system32\sspicli.dll
2013-08-23 21:19:40 ----A---- C:\Windows\system32\secur32.dll
2013-08-23 21:19:40 ----A---- C:\Windows\system32\ntshrui.dll
2013-08-23 21:19:40 ----A---- C:\Windows\system32\lsass.exe
2013-08-23 21:19:40 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-08-23 21:19:39 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-08-23 21:19:39 ----A---- C:\Windows\system32\webio.dll
2013-08-23 21:19:38 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2013-08-23 21:19:38 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2013-08-23 21:19:38 ----A---- C:\Windows\system32\mfc42u.dll
2013-08-23 21:19:38 ----A---- C:\Windows\system32\mfc42.dll
2013-08-23 21:19:37 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-08-23 21:19:37 ----A---- C:\Windows\system32\poqexec.exe
2013-08-23 21:19:36 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-08-23 21:19:36 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-08-23 21:19:36 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-08-23 21:19:36 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-08-23 21:19:34 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-08-23 21:19:34 ----A---- C:\Windows\system32\tzres.dll
2013-08-23 21:19:29 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2013-08-23 21:19:29 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2013-08-23 21:19:29 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2013-08-23 21:19:29 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2013-08-23 21:19:29 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2013-08-23 21:19:29 ----A---- C:\Windows\system32\odbctrac.dll
2013-08-23 21:19:29 ----A---- C:\Windows\system32\odbccu32.dll
2013-08-23 21:19:29 ----A---- C:\Windows\system32\odbccr32.dll
2013-08-23 21:19:29 ----A---- C:\Windows\system32\odbccp32.dll
2013-08-23 21:19:27 ----A---- C:\Windows\SYSWOW64\quartz.dll
2013-08-23 21:19:27 ----A---- C:\Windows\system32\quartz.dll
2013-08-23 21:19:27 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-08-23 21:19:27 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-08-23 21:19:26 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-08-23 21:19:26 ----A---- C:\Windows\system32\qdvd.dll
2013-08-23 21:19:25 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-08-23 21:19:25 ----A---- C:\Windows\explorer.exe
2013-08-23 21:19:24 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-08-23 21:19:24 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-08-23 21:19:24 ----A---- C:\Windows\system32\cdd.dll
2013-08-23 21:19:20 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2013-08-23 21:19:20 ----A---- C:\Windows\system32\xmllite.dll
2013-08-23 21:19:19 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-08-23 21:19:19 ----A---- C:\Windows\system32\rdpwsx.dll
2013-08-23 21:19:19 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-08-23 21:19:19 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-08-23 21:19:19 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-08-23 21:19:19 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-08-23 21:19:18 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-08-23 21:19:09 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-08-23 21:19:09 ----A---- C:\Windows\system32\d3d11.dll
2013-08-23 21:19:02 ----A---- C:\Windows\system32\winsrv.dll
2013-08-23 21:19:00 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-08-23 21:19:00 ----A---- C:\Windows\system32\smss.exe
2013-08-23 21:19:00 ----A---- C:\Windows\system32\csrsrv.dll
2013-08-23 21:18:58 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-08-23 21:18:58 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-08-23 21:18:58 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-08-23 21:18:58 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-08-23 21:18:58 ----A---- C:\Windows\system32\nlasvc.dll
2013-08-23 21:18:58 ----A---- C:\Windows\system32\nlaapi.dll
2013-08-23 21:18:58 ----A---- C:\Windows\system32\netevent.dll
2013-08-23 21:18:58 ----A---- C:\Windows\system32\netcorehc.dll
2013-08-23 21:18:58 ----A---- C:\Windows\system32\ncsi.dll
2013-08-23 21:18:58 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-08-23 21:18:58 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-08-23 21:18:56 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2013-08-23 21:18:56 ----A---- C:\Windows\system32\cdosys.dll
2013-08-23 21:18:55 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-08-23 21:18:54 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-08-23 21:18:54 ----A---- C:\Windows\system32\drivers\netio.sys
2013-08-23 21:18:54 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-08-23 21:18:52 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-08-23 21:18:52 ----A---- C:\Windows\system32\cryptdlg.dll
2013-08-23 21:18:49 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-08-23 21:18:49 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-08-23 21:18:49 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-08-23 21:18:49 ----A---- C:\Windows\system32\msxml6.dll
2013-08-23 21:18:49 ----A---- C:\Windows\system32\msxml3r.dll
2013-08-23 21:18:49 ----A---- C:\Windows\system32\msxml3.dll
2013-08-23 21:18:49 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-08-23 21:18:49 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-08-23 21:18:49 ----A---- C:\Windows\system32\drivers\srv.sys
2013-08-23 21:18:48 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-08-23 21:18:48 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-23 21:18:47 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-08-23 21:18:46 ----A---- C:\Windows\system32\win32k.sys
2013-08-23 21:18:45 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-08-23 21:18:45 ----A---- C:\Windows\system32\rdpcore.dll
2013-08-23 21:18:45 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-08-23 21:18:44 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2013-08-23 21:18:44 ----A---- C:\Windows\system32\psisdecd.dll
2013-08-23 21:18:43 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-08-23 21:18:43 ----A---- C:\Windows\system32\ncrypt.dll
2013-08-23 21:18:43 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-08-23 21:18:42 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-08-23 21:18:42 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2013-08-23 21:18:42 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-08-23 21:18:42 ----A---- C:\Windows\system32\usp10.dll
2013-08-23 21:18:42 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-08-23 21:18:42 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-08-23 21:18:42 ----A---- C:\Windows\system32\dnsapi.dll
2013-08-23 21:18:40 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-08-23 21:18:40 ----A---- C:\Windows\system32\drivers\afd.sys
2013-08-23 21:18:39 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2013-08-23 21:18:39 ----A---- C:\Windows\SYSWOW64\msi.dll
2013-08-23 21:18:39 ----A---- C:\Windows\SYSWOW64\browcli.dll
2013-08-23 21:18:39 ----A---- C:\Windows\system32\netapi32.dll
2013-08-23 21:18:39 ----A---- C:\Windows\system32\msi.dll
2013-08-23 21:18:39 ----A---- C:\Windows\system32\browser.dll
2013-08-23 21:18:39 ----A---- C:\Windows\system32\browcli.dll
2013-08-23 21:18:37 ----A---- C:\Windows\system32\winresume.exe
2013-08-23 21:18:37 ----A---- C:\Windows\system32\winload.exe
2013-08-23 21:18:37 ----A---- C:\Windows\system32\taskhost.exe
2013-08-23 21:18:37 ----A---- C:\Windows\system32\kdusb.dll
2013-08-23 21:18:37 ----A---- C:\Windows\system32\kdcom.dll
2013-08-23 21:18:37 ----A---- C:\Windows\system32\kd1394.dll
2013-08-23 21:18:36 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-08-23 21:18:36 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-08-23 21:18:36 ----A---- C:\Windows\system32\kerberos.dll
2013-08-23 21:18:36 ----A---- C:\Windows\system32\dpnet.dll
2013-08-23 21:18:35 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-08-23 21:18:35 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-08-23 21:18:34 ----A---- C:\Windows\system32\wwansvc.dll
2013-08-23 21:18:34 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-08-23 21:18:33 ----A---- C:\Windows\system32\profsvc.dll
2013-08-23 21:18:33 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-08-23 21:18:32 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-08-23 21:18:32 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2013-08-23 21:18:32 ----A---- C:\Windows\system32\win32spl.dll
2013-08-23 21:18:32 ----A---- C:\Windows\system32\inetcomm.dll
2013-08-23 21:18:31 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2013-08-23 21:18:31 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-08-23 21:18:31 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2013-08-23 21:18:31 ----A---- C:\Windows\SYSWOW64\devobj.dll
2013-08-23 21:18:31 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2013-08-23 21:18:31 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-08-23 21:18:31 ----A---- C:\Windows\system32\prevhost.exe
2013-08-23 21:18:30 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-08-23 21:18:30 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2013-08-23 21:18:30 ----A---- C:\Windows\system32\qedit.dll
2013-08-23 21:18:30 ----A---- C:\Windows\system32\msvcrt.dll
2013-08-23 21:18:29 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-08-23 21:18:29 ----A---- C:\Windows\system32\synceng.dll
2013-08-23 21:18:28 ----A---- C:\Windows\system32\srcore.dll
2013-08-23 21:18:27 ----A---- C:\Windows\SYSWOW64\srclient.dll
2013-08-23 21:18:27 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-08-23 21:18:27 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2013-08-23 21:18:27 ----A---- C:\Windows\system32\oleaut32.dll
2013-08-23 21:18:27 ----A---- C:\Windows\system32\oleacc.dll
2013-08-23 21:18:24 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-08-23 21:18:21 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2013-08-23 21:18:21 ----A---- C:\Windows\system32\EncDec.dll
2013-08-23 21:18:19 ----A---- C:\Windows\system32\localspl.dll
2013-08-23 21:18:18 ----A---- C:\Windows\system32\spoolsv.exe
2013-08-23 21:18:18 ----A---- C:\Windows\splwow64.exe
2013-08-23 21:18:16 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-08-23 21:09:53 ----A---- C:\Windows\SYSWOW64\packager.dll
2013-08-23 21:09:53 ----A---- C:\Windows\system32\packager.dll
2013-08-23 21:05:04 ----A---- C:\Windows\system32\wups2.dll
2013-08-23 21:05:04 ----A---- C:\Windows\system32\wucltux.dll
2013-08-23 21:05:04 ----A---- C:\Windows\system32\wuaueng.dll
2013-08-23 21:05:04 ----A---- C:\Windows\system32\wuauclt.exe
2013-08-23 21:04:58 ----A---- C:\Windows\system32\wups.dll
2013-08-23 21:04:58 ----A---- C:\Windows\system32\wudriver.dll
2013-08-23 21:04:58 ----A---- C:\Windows\system32\wuapi.dll
2013-08-23 21:04:51 ----A---- C:\Windows\system32\wuwebv.dll
2013-08-23 21:04:51 ----A---- C:\Windows\system32\wuapp.exe
2013-08-23 21:03:14 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-08-23 21:03:14 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-08-23 21:03:14 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-08-23 21:01:37 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-08-23 21:01:37 ----D---- C:\Program Files\Realtek
2013-08-23 21:01:27 ----A---- C:\Windows\system32\WavesGUILib64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\SRSWOW64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\SRSTSX64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\SRSTSH64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\SRSHP64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RtkApi64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RTEED64A.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\RtDataProc64.dll
2013-08-23 21:01:27 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-08-23 21:01:26 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\RTCOM64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\RCoInstII64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\MBWrp64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\MBppld64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\MBPPCn64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\MBAPO64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-08-23 21:01:26 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2013-08-23 21:01:25 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-08-23 21:01:25 ----D---- C:\Program Files (x86)\Realtek
2013-08-23 21:01:25 ----A---- C:\Windows\system32\FMAPO64.dll
2013-08-23 21:01:25 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2013-08-23 21:01:25 ----A---- C:\Windows\system32\AERTAR64.dll
2013-08-23 21:01:25 ----A---- C:\Windows\system32\AERTAC64.dll
2013-08-23 21:01:23 ----HD---- C:\Program Files (x86)\Temp
2013-08-23 21:01:22 ----A---- C:\Windows\RtlExUpd.dll
2013-08-23 20:55:17 ----D---- C:\Users\Klaun\AppData\Roaming\Identities
2013-08-23 20:54:59 ----SD---- C:\Users\Klaun\AppData\Roaming\Microsoft
2013-08-23 20:54:59 ----D---- C:\Users\Klaun\AppData\Roaming\Media Center Programs
2013-08-23 20:54:52 ----SHD---- C:\Recovery
2013-08-23 20:51:23 ----D---- C:\Windows\SoftwareDistribution
2013-08-23 20:49:16 ----D---- C:\Windows\Prefetch
2013-08-23 20:48:36 ----ASH---- C:\pagefile.sys
2013-08-23 20:48:35 ----SHD---- C:\System Volume Information
2013-08-23 20:48:35 ----ASH---- C:\hiberfil.sys

Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Re: Potrebujem radu a pomoc

#3 Příspěvek od Klaun18 »

======List of files/folders modified in the last 1 month======

2013-09-01 00:07:18 ----D---- C:\Windows\Temp
2013-08-31 23:56:00 ----RD---- C:\Program Files
2013-08-31 23:22:24 ----D---- C:\Windows\debug
2013-08-31 23:22:24 ----D---- C:\Windows
2013-08-31 23:20:01 ----RD---- C:\Program Files (x86)
2013-08-31 23:18:27 ----D---- C:\Windows\System32
2013-08-31 23:17:25 ----D---- C:\Windows\system32\catroot2
2013-08-31 22:55:04 ----RSD---- C:\Windows\assembly
2013-08-31 21:19:15 ----D---- C:\Windows\system32\config
2013-08-31 15:11:28 ----D---- C:\Windows\inf
2013-08-31 15:11:28 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-31 13:29:10 ----D---- C:\Windows\system32\drivers
2013-08-31 08:35:41 ----D---- C:\Windows\system32\wfp
2013-08-31 08:35:41 ----D---- C:\Windows\system32\wbem
2013-08-31 08:35:41 ----D---- C:\Windows\system32\DriverStore
2013-08-31 08:35:40 ----D---- C:\Windows\AppCompat
2013-08-31 08:35:38 ----D---- C:\Windows\registration
2013-08-31 00:55:49 ----D---- C:\Windows\SysWOW64
2013-08-31 00:54:33 ----D---- C:\Windows\winsxs
2013-08-31 00:52:49 ----D---- C:\Windows\Tasks
2013-08-31 00:52:49 ----D---- C:\Windows\system32\Tasks
2013-08-31 00:51:09 ----D---- C:\Program Files\Internet Explorer
2013-08-31 00:39:58 ----D---- C:\Windows\system32\catroot
2013-08-31 00:39:57 ----SD---- C:\ProgramData\Microsoft
2013-08-30 23:37:09 ----HD---- C:\ProgramData
2013-08-30 23:19:48 ----D---- C:\Windows\Downloaded Program Files
2013-08-29 23:47:31 ----D---- C:\Windows\system32\LogFiles
2013-08-29 20:41:10 ----RD---- C:\Users
2013-08-27 20:24:06 ----D---- C:\Windows\rescache
2013-08-26 22:54:54 ----D---- C:\Windows\SYSWOW64\migwiz
2013-08-26 22:54:54 ----D---- C:\Windows\SYSWOW64\en-US
2013-08-26 22:54:54 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2013-08-26 22:54:54 ----D---- C:\Program Files\Windows Sidebar
2013-08-26 22:54:54 ----D---- C:\Program Files\Windows Photo Viewer
2013-08-26 22:54:54 ----D---- C:\Program Files\Windows Mail
2013-08-26 22:54:54 ----D---- C:\Program Files\Windows Journal
2013-08-26 22:54:54 ----D---- C:\Program Files\DVD Maker
2013-08-26 22:54:54 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-08-26 22:54:54 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-08-26 22:54:54 ----D---- C:\Program Files (x86)\Windows Mail
2013-08-26 22:54:50 ----D---- C:\Windows\SYSWOW64\WCN
2013-08-26 22:54:50 ----D---- C:\Windows\system32\migwiz
2013-08-26 22:54:50 ----D---- C:\Windows\system32\drivers\en-US
2013-08-26 22:54:50 ----D---- C:\Windows\en-US
2013-08-26 22:54:49 ----D---- C:\Windows\system32\en-US
2013-08-26 22:54:48 ----D---- C:\Windows\system32\WCN
2013-08-26 22:54:47 ----D---- C:\Windows\Speech
2013-08-25 20:59:52 ----D---- C:\Windows\Logs
2013-08-25 20:32:08 ----D---- C:\Windows\Microsoft.NET
2013-08-25 12:08:52 ----D---- C:\Windows\AppPatch
2013-08-24 23:57:28 ----D---- C:\Windows\LiveKernelReports
2013-08-24 23:22:30 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-08-24 15:57:00 ----D---- C:\Windows\system32\wdi
2013-08-24 11:15:06 ----D---- C:\Windows\SYSWOW64\sk-SK
2013-08-24 11:15:06 ----D---- C:\Program Files (x86)\Internet Explorer
2013-08-24 11:15:05 ----D---- C:\Windows\SYSWOW64\migration
2013-08-24 11:15:05 ----D---- C:\Windows\system32\sk-SK
2013-08-24 11:15:04 ----D---- C:\Windows\system32\migration
2013-08-24 11:15:04 ----D---- C:\Windows\PolicyDefinitions
2013-08-24 06:47:19 ----D---- C:\Windows\system32\Recovery
2013-08-24 06:47:19 ----D---- C:\Windows\system32\oobe
2013-08-24 06:47:19 ----D---- C:\Windows\Setup
2013-08-24 06:45:57 ----D---- C:\Windows\servicing
2013-08-24 06:45:57 ----D---- C:\Program Files\Windows Media Player
2013-08-24 06:45:57 ----D---- C:\Program Files (x86)\Windows Media Player
2013-08-24 00:16:31 ----D---- C:\Program Files (x86)\Common Files
2013-08-23 22:37:03 ----D---- C:\Program Files\Common Files\System
2013-08-23 22:37:02 ----D---- C:\Windows\ehome
2013-08-23 22:36:59 ----RSD---- C:\Windows\Fonts
2013-08-23 22:36:59 ----D---- C:\Windows\SYSWOW64\wbem
2013-08-23 22:36:59 ----D---- C:\Program Files\Windows Defender
2013-08-23 22:36:59 ----D---- C:\Program Files (x86)\Windows Defender
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\it-IT
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\es-ES
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\el-GR
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\de-DE
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\da-DK
2013-08-23 22:36:48 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-08-23 22:36:48 ----D---- C:\Windows\system32\pt-PT
2013-08-23 22:36:48 ----D---- C:\Windows\system32\pt-BR
2013-08-23 22:36:48 ----D---- C:\Windows\system32\it-IT
2013-08-23 22:36:48 ----D---- C:\Windows\system32\Boot
2013-08-23 22:36:47 ----D---- C:\Windows\system32\zh-TW
2013-08-23 22:36:47 ----D---- C:\Windows\system32\zh-HK
2013-08-23 22:36:47 ----D---- C:\Windows\system32\zh-CN
2013-08-23 22:36:47 ----D---- C:\Windows\system32\tr-TR
2013-08-23 22:36:47 ----D---- C:\Windows\system32\sv-SE
2013-08-23 22:36:47 ----D---- C:\Windows\system32\ru-RU
2013-08-23 22:36:47 ----D---- C:\Windows\system32\pl-PL
2013-08-23 22:36:47 ----D---- C:\Windows\system32\nl-NL
2013-08-23 22:36:47 ----D---- C:\Windows\system32\nb-NO
2013-08-23 22:36:47 ----D---- C:\Windows\system32\ko-KR
2013-08-23 22:36:47 ----D---- C:\Windows\system32\ja-JP
2013-08-23 22:36:47 ----D---- C:\Windows\system32\hu-HU
2013-08-23 22:36:47 ----D---- C:\Windows\system32\fr-FR
2013-08-23 22:36:47 ----D---- C:\Windows\system32\fi-FI
2013-08-23 22:36:47 ----D---- C:\Windows\system32\es-ES
2013-08-23 22:36:47 ----D---- C:\Windows\system32\el-GR
2013-08-23 22:36:47 ----D---- C:\Windows\system32\de-DE
2013-08-23 22:36:47 ----D---- C:\Windows\system32\da-DK
2013-08-23 22:36:47 ----D---- C:\Windows\system32\cs-CZ
2013-08-23 21:31:50 ----D---- C:\Windows\Help
2013-08-23 21:10:02 ----D---- C:\Windows\system32\CodeIntegrity
2013-08-23 21:02:40 ----D---- C:\Windows\system32\restore
2013-08-23 21:02:30 ----D---- C:\Windows\SYSWOW64\drivers
2013-08-23 20:55:14 ----SHD---- C:\$Recycle.Bin
2013-08-23 20:51:49 ----D---- C:\Windows\system32\sysprep
2013-08-23 20:49:12 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-06-18 247216]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2007-02-07 14104]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2008-07-21 32200]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-06-18 139616]
R3 cpuz136;cpuz136; \??\C:\Users\Klaun\AppData\Local\Temp\cpuz136\cpuz136_x64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-03-29 3379272]
R3 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [2010-02-23 23680]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2013-08-20 39200]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-06-23 344680]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2008-09-24 35840]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\drivers\nusb3hub.sys [2010-09-30 80384]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\drivers\nusb3xhc.sys [2010-09-30 180736]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ASGT;ASGT; C:\Windows\SysWOW64\ASGT.exe [2012-01-17 55296]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-07-18 23816]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-08-27 14997280]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-08-27 2155296]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-08-14 3291008]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-07-18 366600]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-08-28 563624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-06-21 162408]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Potrebujem radu a pomoc

#4 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Malwarebytes Anti-Rootkit http://www.bleepingcomputer.com/downloa ... i-rootkit/
  • Ulozte nejlepe na Plochu a rozbalte
  • Spustte kliknutim na mbanr
  • Nyni postupne kliknete na Next a Update
  • Po dokonceni update (aktualizace) databaze kliknete opet na Next
  • Nechte zaskrtnute vsechny tri moznosti a klinete na Scan cimz spustite prohledavani PC
  • Po dokonceni skenu (cca 5 minutek) zkontrolujte, zda-li je u vsech nalezu (samozrejme pokud budou) zatrzitko
  • Tez zkontrolujte, jetsli je zatrzitko u Create Restore point
  • Nyni kliknete na CleanUp cimz nalezenou infekci odstranime
  • PC bude restartovan
  • Slozka mbar by mela obsahovat log (a zrejme se i sam otevre) mbar-log-rok-mesic-den (hodina-minuta-sekunda).txt, ten mi sem dejte
:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) http://forum.viry.cz/viewtopic.php?f=29&t=115222
  • Provedte aktualizaci
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Re: Potrebujem radu a pomoc

#5 Příspěvek od Klaun18 »

Malwarebytes Anti-Rootkit BETA 1.07.0.1005

(c) Malwarebytes Corporation 2011-2012

OS version: 6.1.7601 Windows 7 Service Pack 1 x64

Account is Administrative

Internet Explorer version: 10.0.9200.16660

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 3.206000 GHz
Memory total: 8589139968, free: 6543011840

Downloaded database version: v2013.09.01.02
Downloaded database version: v2013.08.06.01
=======================================
Initializing...
------------ Kernel report ------------
09/01/2013 10:40:45
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_AuthenticAMD.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\drivers\pciide.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\system32\DRIVERS\MpFilter.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\drivers\vmstorfl.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\SysWOW64\speedfan.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\drivers\disk.sys
\SystemRoot\system32\drivers\CLASSPNP.SYS
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\serial.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\Drivers\ElbyCDIO.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\system32\drivers\csc.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\tunnel.sys
\SystemRoot\system32\DRIVERS\amdppm.sys
\SystemRoot\system32\DRIVERS\nvlddmkm.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\system32\DRIVERS\Rt64win7.sys
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\parport.sys
\SystemRoot\system32\DRIVERS\serenum.sys
\SystemRoot\system32\DRIVERS\wmiacpi.sys
\SystemRoot\system32\DRIVERS\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\rdpbus.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\VClone.sys
\SystemRoot\system32\DRIVERS\SCSIPORT.SYS
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\DRIVERS\umbus.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\drivers\nvhda64v.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\drivers\RTKVHD64.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_dumpata.sys
\SystemRoot\System32\Drivers\dump_atapi.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\kbdhid.sys
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\system32\drivers\usbaudio.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\DRIVERS\NisDrvWFP.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\??\C:\Windows\system32\drivers\IOMap64.sys
\SystemRoot\system32\drivers\spsys.sys
\SystemRoot\system32\DRIVERS\asyncmac.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
\Windows\System32\autochk.exe
----------- End -----------
Done!
<<<1>>>
Upper Device Name: \Device\Harddisk1\DR1
Upper Device Object: 0xfffffa8007ad7060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP1T0L0-1\
Lower Device Object: 0xfffffa8006b14060
Lower Device Driver Name: \Driver\atapi\
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xfffffa8007ad6060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP0T0L0-0\
Lower Device Object: 0xfffffa8006b0e060
Lower Device Driver Name: \Driver\atapi\
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa8007ad6060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8007ad6b90, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8007ad6060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa8006b07520, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xfffffa8006b0e060, DeviceName: \Device\Ide\IdeDeviceP0T0L0-0\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: DE3374AA

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 206848 Numsec = 624930816
Partition file system is NTFS
Partition is bootable

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 320071851520 bytes
Sector size: 512 bytes

Scanning physical sectors of unpartitioned space on drive 0 (1-206847-625120335-625140335)...
Done!
Physical Sector Size: 512
Drive: 1, DevicePointer: 0xfffffa8007ad7060, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8007ad7b90, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8007ad7060, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa8006b10580, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xfffffa8006b14060, DeviceName: \Device\Ide\IdeDeviceP1T0L0-1\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
Drive 1
Scanning MBR on drive 1...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: EE21EE21

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 2048 Numsec = 819200000
Partition file system is NTFS
Partition is not bootable

Partition 1 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 819202608 Numsec = 1134301392

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 1000203804160 bytes
Sector size: 512 bytes

Done!
Scan finished
=======================================
<<<1>>>
Upper Device Name: \Device\Harddisk1\DR1
Upper Device Object: 0xfffffa8007ad7060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP1T0L0-1\
Lower Device Object: 0xfffffa8006b14060
Lower Device Driver Name: \Driver\atapi\
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xfffffa8007ad6060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP0T0L0-0\
Lower Device Object: 0xfffffa8006b0e060
Lower Device Driver Name: \Driver\atapi\
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: DE3374AA

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 206848 Numsec = 624930816
Partition file system is NTFS
Partition is bootable

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 320071851520 bytes
Sector size: 512 bytes

Scanning physical sectors of unpartitioned space on drive 0 (1-206847-625120335-625140335)...
Done!
Drive 1
Scanning MBR on drive 1...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: EE21EE21

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 2048 Numsec = 819200000
Partition file system is NTFS
Partition is not bootable

Partition 1 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 819202608 Numsec = 1134301392

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 1000203804160 bytes
Sector size: 512 bytes

Done!
Scan finished
=======================================


Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR_0_i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\Bootstrap_0_0_206848_i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR_0_r.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR_1_i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\Bootstrap_1_0_2048_i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR_1_r.mbam...
Removal finished

Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Re: Potrebujem radu a pomoc

#6 Příspěvek od Klaun18 »

Malwarebytes Anti-Malware (Skúšobná verzia) 1.75.0.1300
www.malwarebytes.org

Verzia databázy: v2013.09.01.02

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16660
Klaun :: KLAUN-PC [administrátor]

Ochrana: Zapnuté

1. 9. 2013 11:00:20
MBAM-log-2013-09-01 (12-30-14).txt

Typ kontroly: Úplná kontrola (C:\|D:\|E:\|)
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 548253
Uplynutý čas: 1 hod, 18 min, 53 sek

Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)

Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)

Detegované registračné kľúče: 0
(Škodlivé položky neboli zistené)

Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)

Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)

Detegované priečinky: 0
(Škodlivé položky neboli zistené)

Detegované súbory: 19
D:\Download\Nero Platinum 12.0.02000 CZ\serial\Patch.exe (PUP.Riskware.Patcher) -> Žiadna úloha nevykonaná.
D:\Hry\Steam\steamapps\common\company of heroes\ModernCombat\cohra\cohra.exe (Trojan.Agent) -> Žiadna úloha nevykonaná.
D:\Hry\Steam\steamapps\common\napoleon total war\Napoleon - Total War v1.0.0.0 + 8 Trainer.exe (HackTool.GamesCheat) -> Žiadna úloha nevykonaná.
E:\Download\Aktivace přes TNODUP & MiNODLogin\Instalace Programu.exe (Riskware.KG) -> Žiadna úloha nevykonaná.
E:\install\Alcohol 120% Retail 1.9.8.7612\Alcohol120_retail_1.9.8.7612.exe (Malware.Packer.GenX) -> Žiadna úloha nevykonaná.
E:\install\MS_Office_2007_by_Baresi\MS Office 2007 Enterprise Integrated SP2 CZE\Klíč + Legalizátor + Menu\Classic.Menu.for.Office.2007.v4.00.ECLiPSE.rar (Trojan.Agent) -> Žiadna úloha nevykonaná.
E:\install\MS_Office_2007_by_Baresi\MS Office 2007 Enterprise Integrated SP2 CZE\Klíč + Legalizátor + Menu\msoe2007kg.exe (RiskWare.Tool.CK) -> Žiadna úloha nevykonaná.
E:\zaloha\winamp563_full_emusic-7plus_de-de.exe (PUP.Optional.OpenCandy) -> Žiadna úloha nevykonaná.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520e.zip (PUP.Riskware.Patcher) -> Žiadna úloha nevykonaná.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520a\brdt520.rar (PUP.Riskware.Patcher) -> Žiadna úloha nevykonaná.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520a\Crack\Patch.exe (PUP.Riskware.Patcher) -> Žiadna úloha nevykonaná.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520a\Setup\DAEMONToolsPro520-0348.exe (PUP.Optional.OpenCandy) -> Žiadna úloha nevykonaná.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520e\brdt520.rar (PUP.Riskware.Patcher) -> Žiadna úloha nevykonaná.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\2) MiNODLogin 3.10.0.1\MiNODLogin 3.10.0.1.exe (Riskware.KG) -> Žiadna úloha nevykonaná.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\2) MiNODLogin 3.10.0.1\MiNODLogin 3.10.0.1.rar (Riskware.KG) -> Žiadna úloha nevykonaná.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\3) TNODUP 1.4.1 Final\TNOUD 1.4.1.0 Final Setup.exe (Trojan.Agent.CK) -> Žiadna úloha nevykonaná.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\3) TNODUP 1.4.1 Final\TTNODUP 1.4.1 Final.rar (Trojan.Agent.CK) -> Žiadna úloha nevykonaná.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\3) TNODUP 1.4.1 Final\TNod User & Password Finder\TNODUP.exe (Trojan.Agent.CK) -> Žiadna úloha nevykonaná.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\3) TNODUP 1.4.1 Final\TNod User & Password Finder\uninst-tnod.exe (Trojan.Agent.CK) -> Žiadna úloha nevykonaná.

(koniec)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Potrebujem radu a pomoc

#7 Příspěvek od vyosek »

Dovolim si otazku, ma cenu lecit PC, ktere si uzivatel s prominutim zaliska hned vlastni blbosti zpatky diky crackum\keygenum a podobnym "dobrotami" Nehlede na porusovani autorskeho zakona :???: :???:

Navic crackovat bezpecnostni SW, to je jak zamknout dum a nechat otevrene okna...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Re: Potrebujem radu a pomoc

#8 Příspěvek od Klaun18 »

to už dávno nepoužívam ta záloha tam je z 23. ‎septembra ‎2011 v ktorej sú tie programy teras pouzivam ochranu od microsoft neviem ci je to ucinne bolo to k w7

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Potrebujem radu a pomoc

#9 Příspěvek od vyosek »

MSE je zakladni ochrana, pro bezneho uzivatele dostacujici...

Nalezy MBAMu smazte, objevi se log, ten rad uvidim...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Re: Potrebujem radu a pomoc

#10 Příspěvek od Klaun18 »

Malwarebytes Anti-Malware (Skúšobná verzia) 1.75.0.1300
www.malwarebytes.org

Verzia databázy: v2013.09.01.02

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16660
Klaun :: KLAUN-PC [administrátor]

Ochrana: Zapnuté

1. 9. 2013 22:06:01
mbam-log-2013-09-01 (22-06-01).txt

Typ kontroly: Úplná kontrola (C:\|D:\|E:\|)
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 549874
Uplynutý čas: 1 hod, 14 min, 37 sek

Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)

Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)

Detegované registračné kľúče: 0
(Škodlivé položky neboli zistené)

Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)

Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)

Detegované priečinky: 0
(Škodlivé položky neboli zistené)

Detegované súbory: 18
D:\Hry\Steam\steamapps\common\company of heroes\ModernCombat\cohra\cohra.exe (Trojan.Agent) -> Pridanie do karantény a zmazanie úspešné.
D:\Hry\Steam\steamapps\common\napoleon total war\Napoleon - Total War v1.0.0.0 + 8 Trainer.exe (HackTool.GamesCheat) -> Pridanie do karantény a zmazanie úspešné.
E:\Download\Aktivace přes TNODUP & MiNODLogin\Instalace Programu.exe (Riskware.KG) -> Pridanie do karantény a zmazanie úspešné.
E:\install\Alcohol 120% Retail 1.9.8.7612\Alcohol120_retail_1.9.8.7612.exe (Malware.Packer.GenX) -> Pridanie do karantény a zmazanie úspešné.
E:\install\MS_Office_2007_by_Baresi\MS Office 2007 Enterprise Integrated SP2 CZE\Klíč + Legalizátor + Menu\Classic.Menu.for.Office.2007.v4.00.ECLiPSE.rar (Trojan.Agent) -> Pridanie do karantény a zmazanie úspešné.
E:\install\MS_Office_2007_by_Baresi\MS Office 2007 Enterprise Integrated SP2 CZE\Klíč + Legalizátor + Menu\msoe2007kg.exe (RiskWare.Tool.CK) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\winamp563_full_emusic-7plus_de-de.exe (PUP.Optional.OpenCandy) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520e.zip (PUP.Riskware.Patcher) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520a\brdt520.rar (PUP.Riskware.Patcher) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520a\Crack\Patch.exe (PUP.Riskware.Patcher) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520a\Setup\DAEMONToolsPro520-0348.exe (PUP.Optional.OpenCandy) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Daemon.Tools.Pro.Advanced.v5.2.0.0348.Multilingual.Cracked-BRD\brdt520e\brdt520.rar (PUP.Riskware.Patcher) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\2) MiNODLogin 3.10.0.1\MiNODLogin 3.10.0.1.exe (Riskware.KG) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\2) MiNODLogin 3.10.0.1\MiNODLogin 3.10.0.1.rar (Riskware.KG) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\3) TNODUP 1.4.1 Final\TNOUD 1.4.1.0 Final Setup.exe (Trojan.Agent.CK) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\3) TNODUP 1.4.1 Final\TTNODUP 1.4.1 Final.rar (Trojan.Agent.CK) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\3) TNODUP 1.4.1 Final\TNod User & Password Finder\TNODUP.exe (Trojan.Agent.CK) -> Pridanie do karantény a zmazanie úspešné.
E:\zaloha\Eset Smart Security 5 & ESET NOD32 Antivirus 5 CZ\3) TNODUP 1.4.1 Final\TNod User & Password Finder\uninst-tnod.exe (Trojan.Agent.CK) -> Pridanie do karantény a zmazanie úspešné.

(koniec)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Potrebujem radu a pomoc

#11 Příspěvek od vyosek »

Ktery proces zatetzuje CPU nejvice?
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Re: Potrebujem radu a pomoc

#12 Příspěvek od Klaun18 »

Vola sa Nt Kernel a System

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Potrebujem radu a pomoc

#13 Příspěvek od vyosek »

:arrow: Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Klaun18
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 31 srp 2013 22:58

Re: Potrebujem radu a pomoc

#14 Příspěvek od Klaun18 »

Rkill 2.6.1 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 09/02/2013 11:09:57 AM in x64 mode.
Windows Version: Windows 7 Professional Service Pack 1

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* C:\Windows\SysWOW64\ASGT.exe (PID: 1896) [WD-HEUR]

1 proccess terminated!

Checking Registry for malware related settings:

* Explorer Policy Removed: NoActiveDesktopChanges [HKLM]

Backup Registry file created at:
C:\Users\Klaun\Desktop\rkill\rkill-09-02-2013-11-10-02.reg

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* No issues found.

Checking Windows Service Integrity:

* No issues found.

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* No issues found.

Program finished at: 09/02/2013 11:10:40 AM
Execution time: 0 hours(s), 0 minute(s), and 43 seconds(s)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Potrebujem radu a pomoc

#15 Příspěvek od vyosek »

OK, pokracujte ComboFixem...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět