Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Conduit, PriceGong - 4xlog

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Conduit, PriceGong - 4xlog

#31 Příspěvek od Márty84 »

:arrow: Autodesk normalne smazte, pokud ho nepouziva. V logu ho bezet nevidim, takze smazani jeho slozek by melo stacit.


:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
gupdate
gupdatem

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp

:otl
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
IE - HKU\S-1-5-21-347046577-4045773993-532970502-1001\..\SearchScopes\{8172f457-818d-46db-941f-2bbe53e156af}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
[2011.12.29 16:12:14 | 000,000,000 | ---D | M] (Yandex.Bar) -- C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru
CHR - default_search_provider: Bing (Enabled)
CHR - default_search_provider: search_url = http://www.bing.com/search?setmkt=cs-CZ&q={searchTerms}
CHR - default_search_provider: suggest_url = http://api.bing.com/osjson.aspx?query={searchTerms}&language={language}
O3 - HKU\S-1-5-21-347046577-4045773993-532970502-1001\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2013.09.08 17:19:56 | 000,000,000 | ---D | M] -- C:\Users\Ondra\AppData\Roaming\Autodesk
[2012.07.25 09:21:25 | 000,000,000 | ---D | M] -- C:\Users\Ondra\AppData\Roaming\Yandex
[2 C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[10 C:\windows\Installer\*.tmp files -> C:\windows\Installer\*.tmp -> ]
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:D1B5B4F1

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#32 Příspěvek od vitkova_vitek »

Tak to prošlo až na podruhé. Poprvé byl zásek a OTL "neodpovídal".

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Ondra
->Temp folder emptied: 71063684 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Google Chrome cache emptied: 19889453 bytes
->Opera cache emptied: 1067070 bytes
->Flash cache emptied: 492 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 48047528 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 134,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Ondra
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
========== FILES ==========
File/Folder C:\windows\system32\*.tmp.dll not found.
File/Folder C:\windows\system32\SET*.tmp not found.
File/Folder C:\windows\*.tmp not found.
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
Registry key HKEY_USERS\S-1-5-21-347046577-4045773993-532970502-1001\Software\Microsoft\Internet Explorer\SearchScopes\{8172f457-818d-46db-941f-2bbe53e156af}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8172f457-818d-46db-941f-2bbe53e156af}\ not found.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\modules\foundation folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\modules folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\META-INF folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\defaults\preferences folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\defaults folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\components folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\chrome folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\cbapp\parts\xb folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\cbapp\parts\ui\behaviour folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\cbapp\parts\ui folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\cbapp\parts\platform folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\cbapp\parts\native folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\cbapp\parts folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru\cbapp folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru folder moved successfully.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Registry value HKEY_USERS\S-1-5-21-347046577-4045773993-532970502-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}\ not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\Users\Ondra\AppData\Roaming\Autodesk\WebServices folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\VaultCommon\Servers\Services_Security_1_20_2011 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\VaultCommon\Servers folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\VaultCommon folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Structural\Common Data\2012 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Structural\Common Data folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Structural folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\MC3 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVPROSA\2012\Czech_Locked_x64\16.0.16000.0000\MC3 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVPROSA\2012\Czech_Locked_x64\16.0.16000.0000 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVPROSA\2012\Czech_Locked_x64 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVPROSA\2012 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVPROSA folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVFUS\2012\Czech_x64\1.0.0.79\MC3 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVFUS\2012\Czech_x64\1.0.0.79 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVFUS\2012\Czech_x64 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVFUS\2012 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INVFUS folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Inventor Fusion 2012\cs-CZ\InfoCenter folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Inventor Fusion 2012\cs-CZ folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Inventor Fusion 2012 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Inventor 2012\Translation folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Inventor 2012\Objects folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Inventor 2012\Addins folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Inventor 2012 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INSTALLER\1.0\1.0\1.0 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INSTALLER\1.0\1.0 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INSTALLER\1.0 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\INSTALLER folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\DWG TrueView 2012\R9\enu\Support\Profiles\Unnamed Profile folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\DWG TrueView 2012\R9\enu\Support\Profiles folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\DWG TrueView 2012\R9\enu\Support\Actions folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\DWG TrueView 2012\R9\enu\Support folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\DWG TrueView 2012\R9\enu\Download folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\DWG TrueView 2012\R9\enu folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\DWG TrueView 2012\R9 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\DWG TrueView 2012 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Autodesk Robot Structural Analysis Engine 2012 Dev\Tmp folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Autodesk Robot Structural Analysis Engine 2012 Dev\Template folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Autodesk Robot Structural Analysis Engine 2012 Dev\CfgUsr folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Autodesk Robot Structural Analysis Engine 2012 Dev folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Autodesk Design Review\12.0\userdata folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Autodesk Design Review\12.0 folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk\Autodesk Design Review folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Autodesk folder moved successfully.
C:\Users\Ondra\AppData\Roaming\Yandex folder moved successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3929.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP4C0D.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP6BDC.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP78F9.tmp\Microsoft.Build.Framework.dll deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP78F9.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPACF4.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPB0BB.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPC8DD.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\windows\Installer\MSI5348.tmp deleted successfully.
C:\windows\Installer\MSI6B89.tmp deleted successfully.
C:\windows\Installer\MSI7193.tmp deleted successfully.
C:\windows\Installer\MSI73A6.tmp deleted successfully.
C:\windows\Installer\MSI79E9.tmp deleted successfully.
C:\windows\Installer\MSI8C36.tmp deleted successfully.
C:\windows\Installer\MSI8D7F.tmp deleted successfully.
C:\windows\Installer\MSIDE06.tmp deleted successfully.
C:\windows\Installer\MSIE316.tmp deleted successfully.
C:\windows\Installer\MSIE3F1.tmp deleted successfully.
ADS C:\ProgramData\TEMP:D1B5B4F1 deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.

OTL by OldTimer - Version 3.2.69.0 log created on 09092013_154801

Files\Folders moved on Reboot...
C:\Users\Ondra\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#33 Příspěvek od vitkova_vitek »

Ještě jsem smazal zbytky po Autodesk Invertoru.
Jinak po tom posledním zásahu se chování trochu změnilo, lépe řečeno různě se upravili časy.
Systém startuje o trochu déle, po zobrazení ikon zase obrázky ikon zmizí a na několik vteřin zůstanou jen symboly "čistých listů" a po několika dalších vteřinách postupně nabíhá grafika ikon. Do toho dostane síťová karta přidělenou IP adresu a ještě dost dlouho se k tomu točí grafický symbol u kurzoru myši (něco se spouští). Start je asi 2-3 násobný oproti mému dvoujádru. Jinak jsou ntb obdobné. Subjektivně nyní dostane síť.karta dříve IP adresu než před posledním zásahem OTL.
Ještě dotaz k google chromu. Je normální, když se po jeho spuštění zobrazí spuštěný proces ve správci 3x a pokaždé má jinou zabranou paměť? Já ho nepoužívám a nechci ho kvůlii tomu instalovat na svůj ntb.

Doufám, že to je pochopitelný. :?: Dneska mám "DEN BLBEC".

Doplněno: 3x proces chrome: prohlížeč, karta viry.cz a GPU proces. Takže to je normální. Člověk se pořád učí.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Conduit, PriceGong - 4xlog

#34 Příspěvek od Márty84 »

Jojo, ten google je v poradku.



:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow: Prejmenujte ComboFix na Uninstall a spustte ho. CF by se mel odinstalovat.

:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.stahuj.centrum.cz/utility_a_ ... /ccleaner/ a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak dejte novy log z RSIT a napiste, jak je na tom pc.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#35 Příspěvek od vitkova_vitek »

Provedeno, nyní se defragmentuje hdd. Je to také nějaké dlouhé, ukázal fragmentováno 2% a i přes to odhaduje dobu na 23 hodin.
Ccleaner mi nabízí k odinstalování Autodesk Design Review 2012, ale odebrání končí chybou, že je vyžadován Visual C++ 2005 SP1 pro pokračování a vyzývá mne k návštěvě Microsoftího serveru a stažení balíčku.

Aktuálně defragmentace ještě 20 hodin.

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#36 Příspěvek od vitkova_vitek »

Tak vše provedeno. Stav se nezměnil. Strašně dlouhý start, HDD led ani nezhasíná - trvalý svit. Po naběhnutí systému a přihlášení k netu se ještě spouští pomalu aplikace v liště. Pokud chci spustit Chrome, čekám ještě asi 30 vteřin na otevření okna s prohlížačem.
Po cca 5 minutách se HDD led uklidní a ntb začne fungovat.

Logfile of random's system information tool 1.08 (written by random/random)
Run by Ondra at 2013-09-10 18:32:23
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 506 GB (86%) free of 588 GB
Total RAM: 4030 MB (43% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:32:25, on 10.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16502)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\HP HD Webcam [Fixed]\Monitor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Ondra.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [NUSB3MON] "c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [HP HD Webcam [Fixed]_Monitor] C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: DraftSight API Service - Dassault Systemes - C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe
O23 - Service: ZAtheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 10177 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\Hpservice.exe
atieclxx
C:\windows\system32\vcsFPService.exe
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
taskeng.exe {620F87DA-1777-4D7C-AE09-8EB9D3A9DE10}
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"taskhost.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtTray.exe"
C:\windows\SysWOW64\PnkBstrA.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
WLIDSvcM.exe 3172
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\HP HD Webcam [Fixed]\Monitor.exe"
C:\windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\servicing\TrustedInstaller.exe
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe" /hidden
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe" -Embedding
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelperx64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5464.0.1478916104\1285018503" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --disable-image-transport-surface --reduce-gpu-sandbox --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.840.7.0 --ignored=" --type=renderer " /prefetch:822062411
C:\windows\system32\igfxext.exe -Embedding
C:\windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_47/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5464.2.1708290133\1379467830" /prefetch:673131151
taskeng.exe {1B7930D4-453E-43CC-A481-FBBBBEB77949}
C:\windows\System32\svchost.exe -k WerSvcGroup
C:\windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Ondra\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\HPCeeScheduleForONDRA-HP$.job
C:\windows\tasks\HPCeeScheduleForOndra.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-08-19 64640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-27 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-27 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-27 418328]
"BtTray"=C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [2012-08-19 764032]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-08-19 127616]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-08-04 1664000]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-08-04 3011824]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2013-07-08 1502424]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-02-01 656920]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2011-01-29 299576]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-26 283160]
"NUSB3MON"=c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"HP HD Webcam [Fixed]_Monitor"=C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe [2010-11-26 267128]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-28 336384]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-27 385024]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 months======

2013-09-10 18:26:58 ----D---- C:\rsit
2013-09-10 15:47:28 ----D---- C:\Program Files\Defraggler
2013-09-10 15:19:27 ----SHD---- C:\$RECYCLE.BIN
2013-09-08 17:15:26 ----D---- C:\ProgramData\boost_interprocess
2013-09-08 16:53:05 ----SHD---- C:\Config.Msi
2013-09-08 16:29:43 ----D---- C:\Program Files (x86)\VS Revo Group
2013-09-08 16:01:38 ----D---- C:\windows\temp
2013-09-06 14:06:01 ----D---- C:\Program Files\trend micro
2013-09-06 13:05:32 ----D---- C:\Program Files\Blender Foundation
2013-09-06 12:57:06 ----D---- C:\Users\Ondra\AppData\Roaming\DraftSight
2013-09-06 12:56:51 ----D---- C:\ProgramData\Dassault Systemes
2013-09-06 12:56:51 ----D---- C:\Program Files\Dassault Systemes
2013-09-06 11:13:28 ----SD---- C:\ProgramData\Shared Space
2013-09-06 11:13:19 ----D---- C:\Program Files\COMODO
2013-09-06 11:13:15 ----D---- C:\ProgramData\Comodo
2013-09-06 11:13:12 ----D---- C:\ProgramData\Comodo Downloader
2013-09-06 10:50:13 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-06 10:50:13 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-06 10:50:12 ----A---- C:\windows\system32\RdpGroupPolicyExtension.dll
2013-09-06 10:50:05 ----A---- C:\windows\system32\drivers\rdpvideominiport.sys
2013-09-06 10:50:04 ----A---- C:\windows\system32\drivers\TsUsbFlt.sys
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\wksprtPS.dll
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\tsgqec.dll
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\rdpendp_winip.dll
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\MsRdpWebAccess.dll
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\aaclient.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\wksprtPS.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\TsUsbGDCoInstaller.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\tsgqec.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\MsRdpWebAccess.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\aaclient.dll
2013-09-06 10:49:57 ----A---- C:\windows\SYSWOW64\mstsc.exe
2013-09-06 10:49:57 ----A---- C:\windows\system32\wksprt.exe
2013-09-06 10:49:57 ----A---- C:\windows\system32\TSWbPrxy.exe
2013-09-06 10:49:57 ----A---- C:\windows\system32\rdpudd.dll
2013-09-06 10:49:57 ----A---- C:\windows\system32\rdpendp_winip.dll
2013-09-06 10:49:56 ----A---- C:\windows\system32\rdpcorets.dll
2013-09-06 10:49:56 ----A---- C:\windows\system32\mstsc.exe
2013-09-06 10:49:55 ----A---- C:\windows\SYSWOW64\mstscax.dll
2013-09-06 10:49:55 ----A---- C:\windows\system32\mstscax.dll
2013-09-06 10:49:29 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-09-06 10:49:29 ----A---- C:\windows\system32\schannel.dll
2013-09-06 10:49:29 ----A---- C:\windows\system32\lsasrv.dll
2013-09-06 10:49:29 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-09-06 10:49:29 ----A---- C:\windows\system32\drivers\cng.sys
2013-09-06 10:49:28 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-09-06 10:49:28 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-09-06 10:49:27 ----A---- C:\windows\SYSWOW64\qdvd.dll
2013-09-06 10:49:27 ----A---- C:\windows\system32\qdvd.dll
2013-09-06 10:30:30 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-09-06 10:30:29 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-09-06 10:30:29 ----A---- C:\windows\system32\ntoskrnl.exe
2013-09-06 10:30:29 ----A---- C:\windows\system32\ntdll.dll
2013-09-06 10:30:28 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-09-06 10:30:28 ----A---- C:\windows\system32\wow64.dll
2013-09-06 10:30:27 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-09-06 10:30:25 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-09-06 10:30:25 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-09-06 10:30:24 ----A---- C:\windows\SYSWOW64\user.exe
2013-09-06 10:30:24 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-09-06 09:11:15 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-09-06 09:11:15 ----A---- C:\windows\system32\mshtmled.dll
2013-09-06 09:11:12 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-09-06 09:11:11 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-09-06 09:11:11 ----A---- C:\windows\system32\ieui.dll
2013-09-06 09:11:10 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-09-06 09:11:10 ----A---- C:\windows\system32\ieUnatt.exe
2013-09-06 09:11:09 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-09-06 09:11:09 ----A---- C:\windows\SYSWOW64\url.dll
2013-09-06 09:11:09 ----A---- C:\windows\system32\url.dll
2013-09-06 09:11:08 ----A---- C:\windows\system32\wininet.dll
2013-09-06 09:11:06 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-09-06 09:11:06 ----A---- C:\windows\system32\urlmon.dll
2013-09-06 09:11:04 ----A---- C:\windows\system32\msfeeds.dll
2013-09-06 09:11:04 ----A---- C:\windows\system32\jscript9.dll
2013-09-06 09:11:02 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-09-06 09:11:01 ----A---- C:\windows\system32\jsproxy.dll
2013-09-06 09:11:00 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-09-06 09:11:00 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-09-06 09:11:00 ----A---- C:\windows\system32\vbscript.dll
2013-09-06 09:10:59 ----A---- C:\windows\system32\jscript.dll
2013-09-06 09:10:58 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-09-06 09:10:58 ----A---- C:\windows\system32\iertutil.dll
2013-09-06 09:10:55 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-09-06 09:10:52 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-09-06 09:10:48 ----A---- C:\windows\system32\mshtml.dll
2013-09-06 09:10:42 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-09-06 09:10:42 ----A---- C:\windows\system32\ieframe.dll
2013-09-06 09:09:39 ----A---- C:\windows\SYSWOW64\ncsi.dll
2013-09-06 09:09:39 ----A---- C:\windows\system32\nlasvc.dll
2013-09-06 09:09:39 ----A---- C:\windows\system32\netcorehc.dll
2013-09-06 09:09:39 ----A---- C:\windows\system32\ncsi.dll
2013-09-06 09:09:39 ----A---- C:\windows\system32\iphlpsvc.dll
2013-09-06 09:09:38 ----A---- C:\windows\SYSWOW64\nlaapi.dll
2013-09-06 09:09:38 ----A---- C:\windows\SYSWOW64\netevent.dll
2013-09-06 09:09:38 ----A---- C:\windows\SYSWOW64\netcorehc.dll
2013-09-06 09:09:38 ----A---- C:\windows\system32\nlaapi.dll
2013-09-06 09:09:38 ----A---- C:\windows\system32\netevent.dll
2013-09-06 09:09:38 ----A---- C:\windows\system32\drivers\tcpipreg.sys
2013-09-06 09:06:24 ----A---- C:\windows\system32\WMVDECOD.DLL
2013-09-06 09:06:23 ----A---- C:\windows\SYSWOW64\WMVDECOD.DLL
2013-09-06 09:06:19 ----A---- C:\windows\system32\shell32.dll
2013-09-06 09:06:18 ----A---- C:\windows\system32\authui.dll
2013-09-06 09:06:17 ----A---- C:\windows\SYSWOW64\shell32.dll
2013-09-06 09:06:17 ----A---- C:\windows\system32\shdocvw.dll
2013-09-06 09:06:16 ----A---- C:\windows\SYSWOW64\authui.dll
2013-09-06 09:06:16 ----A---- C:\windows\system32\consent.exe
2013-09-06 09:06:15 ----A---- C:\windows\SYSWOW64\shdocvw.dll
2013-09-06 09:06:15 ----A---- C:\windows\system32\appinfo.dll
2013-09-06 09:05:39 ----A---- C:\windows\SYSWOW64\wintrust.dll
2013-09-06 09:05:39 ----A---- C:\windows\SYSWOW64\cryptsvc.dll
2013-09-06 09:05:39 ----A---- C:\windows\SYSWOW64\cryptnet.dll
2013-09-06 09:05:39 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-09-06 09:05:39 ----A---- C:\windows\system32\wintrust.dll
2013-09-06 09:05:39 ----A---- C:\windows\system32\cryptsvc.dll
2013-09-06 09:05:39 ----A---- C:\windows\system32\cryptnet.dll
2013-09-06 09:05:39 ----A---- C:\windows\system32\crypt32.dll
2013-09-06 09:05:35 ----A---- C:\windows\system32\drivers\tssecsrv.sys
2013-09-06 09:05:24 ----A---- C:\windows\system32\OxpsConverter.exe
2013-09-06 09:05:19 ----A---- C:\windows\system32\drivers\ndis.sys
2013-09-06 09:05:18 ----A---- C:\windows\system32\drivers\RNDISMP.sys
2013-09-06 09:05:15 ----A---- C:\windows\system32\win32spl.dll
2013-09-06 09:05:15 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2013-09-06 09:05:15 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-09-06 09:05:14 ----A---- C:\windows\SYSWOW64\win32spl.dll
2013-09-06 09:05:14 ----A---- C:\windows\system32\rpcrt4.dll
2013-09-06 09:05:13 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2013-09-06 09:05:11 ----A---- C:\windows\system32\win32k.sys
2013-09-06 09:05:10 ----A---- C:\windows\SYSWOW64\dhcpcsvc6.dll
2013-09-06 09:05:10 ----A---- C:\windows\SYSWOW64\dhcpcore6.dll
2013-09-06 09:05:10 ----A---- C:\windows\system32\dhcpcsvc6.dll
2013-09-06 09:05:10 ----A---- C:\windows\system32\dhcpcore6.dll
2013-09-06 09:05:04 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-09-06 09:05:04 ----A---- C:\windows\system32\tzres.dll
2013-09-06 09:05:01 ----A---- C:\windows\SYSWOW64\qedit.dll
2013-09-06 09:05:01 ----A---- C:\windows\system32\taskhost.exe
2013-09-06 09:05:01 ----A---- C:\windows\system32\qedit.dll
2013-09-06 09:05:00 ----A---- C:\windows\system32\wwansvc.dll
2013-09-06 09:05:00 ----A---- C:\windows\system32\wwanprotdim.dll
2013-09-06 09:04:22 ----A---- C:\windows\system32\certutil.exe
2013-09-06 09:04:21 ----A---- C:\windows\SYSWOW64\certutil.exe
2013-09-06 09:04:20 ----A---- C:\windows\SYSWOW64\certenc.dll
2013-09-06 09:04:20 ----A---- C:\windows\system32\certenc.dll
2013-09-06 09:03:59 ----A---- C:\windows\SYSWOW64\cryptdlg.dll
2013-09-06 09:03:59 ----A---- C:\windows\system32\cryptdlg.dll
2013-09-06 09:03:53 ----A---- C:\windows\system32\DWrite.dll
2013-09-06 09:03:52 ----A---- C:\windows\SYSWOW64\DWrite.dll
2013-09-06 09:00:16 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-09-05 23:48:56 ----D---- C:\windows\system32\MRT
2013-09-05 23:48:53 ----A---- C:\windows\system32\MRT.exe
2013-09-05 23:44:00 ----D---- C:\windows\system32\SPReview
2013-09-05 23:43:33 ----D---- C:\windows\system32\EventProviders
2013-09-05 23:35:35 ----A---- C:\windows\system32\netfxperf.dll
2013-09-05 23:35:35 ----A---- C:\windows\system32\dfshim.dll
2013-09-05 23:35:30 ----A---- C:\windows\SYSWOW64\dfshim.dll
2013-09-05 23:35:26 ----A---- C:\windows\system32\d3d10warp.dll
2013-09-05 23:35:21 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2013-09-05 23:35:20 ----A---- C:\windows\SYSWOW64\mfc40u.dll
2013-09-05 23:35:20 ----A---- C:\windows\SYSWOW64\mfc40.dll
2013-09-05 23:35:20 ----A---- C:\windows\system32\sysmain.dll
2013-09-05 23:35:18 ----A---- C:\windows\system32\MSVidCtl.dll
2013-09-05 23:35:16 ----A---- C:\windows\system32\wmp.dll
2013-09-05 23:35:15 ----A---- C:\windows\system32\mscoree.dll
2013-09-05 23:35:15 ----A---- C:\windows\system32\mmcndmgr.dll
2013-09-05 23:35:14 ----A---- C:\windows\system32\secproc_isv.dll
2013-09-05 23:35:14 ----A---- C:\windows\system32\RMActivate_isv.exe
2013-09-05 23:35:14 ----A---- C:\windows\system32\mf.dll
2013-09-05 23:35:13 ----A---- C:\windows\SYSWOW64\secproc_isv.dll
2013-09-05 23:35:13 ----A---- C:\windows\system32\xpsservices.dll
2013-09-05 23:35:13 ----A---- C:\windows\system32\secproc.dll
2013-09-05 23:35:13 ----A---- C:\windows\system32\RMActivate.exe
2013-09-05 23:35:12 ----A---- C:\windows\SYSWOW64\secproc.dll
2013-09-05 23:35:12 ----A---- C:\windows\SYSWOW64\RMActivate_isv.exe
2013-09-05 23:35:11 ----A---- C:\windows\SYSWOW64\RMActivate.exe
2013-09-05 23:35:11 ----A---- C:\windows\system32\schedsvc.dll
2013-09-05 23:35:11 ----A---- C:\windows\system32\ole32.dll
2013-09-05 23:35:10 ----A---- C:\windows\SYSWOW64\mscoree.dll
2013-09-05 23:35:10 ----A---- C:\windows\system32\spwizui.dll
2013-09-05 23:35:09 ----A---- C:\windows\system32\taskschd.dll
2013-09-05 23:35:09 ----A---- C:\windows\system32\RacEngn.dll
2013-09-05 23:35:09 ----A---- C:\windows\system32\diagperf.dll
2013-09-05 23:35:08 ----A---- C:\windows\SYSWOW64\mf.dll
2013-09-05 23:35:08 ----A---- C:\windows\system32\wevtsvc.dll
2013-09-05 23:35:08 ----A---- C:\windows\system32\ExplorerFrame.dll
2013-09-05 23:35:07 ----A---- C:\windows\SYSWOW64\CertEnroll.dll
2013-09-05 23:35:07 ----A---- C:\windows\system32\vssapi.dll
2013-09-05 23:35:07 ----A---- C:\windows\system32\NaturalLanguage6.dll
2013-09-05 23:35:07 ----A---- C:\windows\system32\drivers\msiscsi.sys
2013-09-05 23:35:06 ----A---- C:\windows\system32\UIRibbon.dll
2013-09-05 23:35:06 ----A---- C:\windows\system32\mcupdate_GenuineIntel.dll
2013-09-05 23:35:05 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-09-05 23:35:04 ----A---- C:\windows\SYSWOW64\PresentationHostProxy.dll
2013-09-05 23:35:04 ----A---- C:\windows\SYSWOW64\PresentationHost.exe
2013-09-05 23:35:04 ----A---- C:\windows\system32\WsmSvc.dll
2013-09-05 23:35:04 ----A---- C:\windows\system32\WMVCORE.DLL
2013-09-05 23:35:03 ----A---- C:\windows\system32\spreview.exe
2013-09-05 23:35:03 ----A---- C:\windows\system32\spinstall.exe
2013-09-05 23:35:03 ----A---- C:\windows\system32\rdpdd.dll
2013-09-05 23:35:03 ----A---- C:\windows\system32\PresentationHostProxy.dll
2013-09-05 23:35:03 ----A---- C:\windows\system32\PresentationHost.exe
2013-09-05 23:35:03 ----A---- C:\windows\system32\MPSSVC.dll
2013-09-05 23:35:02 ----A---- C:\windows\system32\WinSAT.exe
2013-09-05 23:35:02 ----A---- C:\windows\system32\CertEnroll.dll
2013-09-05 23:35:01 ----A---- C:\windows\system32\d3d9.dll
2013-09-05 23:35:00 ----A---- C:\windows\SYSWOW64\RacEngn.dll
2013-09-05 23:35:00 ----A---- C:\windows\SYSWOW64\AuthFWSnapin.dll
2013-09-05 23:35:00 ----A---- C:\windows\system32\SearchFolder.dll
2013-09-05 23:35:00 ----A---- C:\windows\system32\IKEEXT.DLL
2013-09-05 23:35:00 ----A---- C:\windows\system32\AuthFWSnapin.dll
2013-09-05 23:34:59 ----A---- C:\windows\system32\VSSVC.exe
2013-09-05 23:34:59 ----A---- C:\windows\system32\gpsvc.dll
2013-09-05 23:34:59 ----A---- C:\windows\system32\dwmcore.dll
2013-09-05 23:34:58 ----A---- C:\windows\system32\drivers\http.sys
2013-09-05 23:34:58 ----A---- C:\windows\system32\dbgeng.dll
2013-09-05 23:34:57 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2013-09-05 23:34:56 ----A---- C:\windows\SYSWOW64\ole32.dll
2013-09-05 23:34:56 ----A---- C:\windows\system32\TSWorkspace.dll
2013-09-05 23:34:56 ----A---- C:\windows\system32\qmgr.dll
2013-09-05 23:34:56 ----A---- C:\windows\system32\audiosrv.dll
2013-09-05 23:34:56 ----A---- C:\windows\system32\actxprxy.dll
2013-09-05 23:34:55 ----A---- C:\windows\system32\termsrv.dll
2013-09-05 23:34:54 ----A---- C:\windows\SYSWOW64\vssapi.dll
2013-09-05 23:34:54 ----A---- C:\windows\system32\netlogon.dll
2013-09-05 23:34:54 ----A---- C:\windows\system32\imapi2fs.dll
2013-09-05 23:34:54 ----A---- C:\windows\system32\d3d11.dll
2013-09-05 23:34:53 ----A---- C:\windows\SYSWOW64\SearchFolder.dll
2013-09-05 23:34:53 ----A---- C:\windows\SYSWOW64\d3d9.dll
2013-09-05 23:34:53 ----A---- C:\windows\system32\winhttp.dll
2013-09-05 23:34:53 ----A---- C:\windows\system32\QAGENTRT.DLL
2013-09-05 23:34:53 ----A---- C:\windows\system32\propsys.dll
2013-09-05 23:34:53 ----A---- C:\windows\system32\msv1_0.dll
2013-09-05 23:34:52 ----A---- C:\windows\SYSWOW64\taskschd.dll
2013-09-05 23:34:52 ----A---- C:\windows\system32\wbengine.exe
2013-09-05 23:34:52 ----A---- C:\windows\system32\setupapi.dll
2013-09-05 23:34:52 ----A---- C:\windows\system32\rpcss.dll
2013-09-05 23:34:51 ----A---- C:\windows\system32\werconcpl.dll
2013-09-05 23:34:51 ----A---- C:\windows\system32\taskeng.exe
2013-09-05 23:34:51 ----A---- C:\windows\system32\odbc32.dll
2013-09-05 23:34:50 ----A---- C:\windows\system32\WSDApi.dll
2013-09-05 23:34:50 ----A---- C:\windows\system32\user32.dll
2013-09-05 23:34:50 ----A---- C:\windows\system32\dhcpcore.dll
2013-09-05 23:34:50 ----A---- C:\windows\system32\certmgr.dll
2013-09-05 23:34:49 ----A---- C:\windows\SYSWOW64\wer.dll
2013-09-05 23:34:49 ----A---- C:\windows\SYSWOW64\certcli.dll
2013-09-05 23:34:49 ----A---- C:\windows\system32\scavengeui.dll
2013-09-05 23:34:49 ----A---- C:\windows\system32\drivers\tdx.sys
2013-09-05 23:34:49 ----A---- C:\windows\system32\drivers\netbt.sys
2013-09-05 23:34:48 ----A---- C:\windows\SYSWOW64\dwmcore.dll
2013-09-05 23:34:48 ----A---- C:\windows\system32\tsmf.dll
2013-09-05 23:34:48 ----A---- C:\windows\system32\shlwapi.dll
2013-09-05 23:34:48 ----A---- C:\windows\system32\PortableDeviceApi.dll
2013-09-05 23:34:48 ----A---- C:\windows\system32\msdrm.dll
2013-09-05 23:34:47 ----A---- C:\windows\SYSWOW64\odbc32.dll
2013-09-05 23:34:47 ----A---- C:\windows\system32\netshell.dll
2013-09-05 23:34:47 ----A---- C:\windows\system32\msdtctm.dll
2013-09-05 23:34:47 ----A---- C:\windows\system32\framedynos.dll
2013-09-05 23:34:46 ----A---- C:\windows\SYSWOW64\tcpmonui.dll
2013-09-05 23:34:46 ----A---- C:\windows\system32\ws2_32.dll
2013-09-05 23:34:46 ----A---- C:\windows\system32\winlogon.exe
2013-09-05 23:34:46 ----A---- C:\windows\system32\netcfgx.dll
2013-09-05 23:34:46 ----A---- C:\windows\system32\lsm.exe
2013-09-05 23:34:46 ----A---- C:\windows\system32\dxgi.dll
2013-09-05 23:34:46 ----A---- C:\windows\system32\comdlg32.dll
2013-09-05 23:34:45 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2013-09-05 23:34:45 ----A---- C:\windows\SYSWOW64\tsmf.dll
2013-09-05 23:34:45 ----A---- C:\windows\SYSWOW64\dot3api.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\wpdshext.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\wmpps.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\Query.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\mswsock.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\azroles.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\apphelp.dll
2013-09-05 23:34:44 ----A---- C:\windows\SYSWOW64\winhttp.dll
2013-09-05 23:34:44 ----A---- C:\windows\SYSWOW64\setupapi.dll
2013-09-05 23:34:44 ----A---- C:\windows\SYSWOW64\apphelp.dll
2013-09-05 23:34:44 ----A---- C:\windows\system32\Vault.dll
2013-09-05 23:34:44 ----A---- C:\windows\system32\samsrv.dll
2013-09-05 23:34:44 ----A---- C:\windows\system32\QAGENT.DLL
2013-09-05 23:34:44 ----A---- C:\windows\system32\cmd.exe
2013-09-05 23:34:44 ----A---- C:\windows\system32\BFE.DLL

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#37 Příspěvek od vitkova_vitek »

2013-09-05 23:34:43 ----A---- C:\windows\SYSWOW64\netlogon.dll
2013-09-05 23:34:43 ----A---- C:\windows\SYSWOW64\MSVidCtl.dll
2013-09-05 23:34:43 ----A---- C:\windows\SYSWOW64\dbgeng.dll
2013-09-05 23:34:43 ----A---- C:\windows\system32\lpksetup.exe
2013-09-05 23:34:43 ----A---- C:\windows\system32\DShowRdpFilter.dll
2013-09-05 23:34:42 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2013-09-05 23:34:42 ----A---- C:\windows\SYSWOW64\netcfgx.dll
2013-09-05 23:34:42 ----A---- C:\windows\SYSWOW64\d3d11.dll
2013-09-05 23:34:42 ----A---- C:\windows\system32\WebClnt.dll
2013-09-05 23:34:41 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2013-09-05 23:34:41 ----A---- C:\windows\SYSWOW64\Query.dll
2013-09-05 23:34:41 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-09-05 23:34:41 ----A---- C:\windows\system32\Wldap32.dll
2013-09-05 23:34:41 ----A---- C:\windows\system32\WindowsCodecs.dll
2013-09-05 23:34:41 ----A---- C:\windows\system32\taskcomp.dll
2013-09-05 23:34:41 ----A---- C:\windows\system32\sxs.dll
2013-09-05 23:34:41 ----A---- C:\windows\system32\mfds.dll
2013-09-05 23:34:41 ----A---- C:\windows\system32\mcbuilder.exe
2013-09-05 23:34:41 ----A---- C:\windows\system32\drivers\vhdmp.sys
2013-09-05 23:34:40 ----A---- C:\windows\SYSWOW64\upnp.dll
2013-09-05 23:34:40 ----A---- C:\windows\SYSWOW64\mmcndmgr.dll
2013-09-05 23:34:40 ----A---- C:\windows\SYSWOW64\DShowRdpFilter.dll
2013-09-05 23:34:40 ----A---- C:\windows\system32\pnidui.dll
2013-09-05 23:34:40 ----A---- C:\windows\system32\ipsmsnap.dll
2013-09-05 23:34:40 ----A---- C:\windows\system32\hgprint.dll
2013-09-05 23:34:39 ----A---- C:\windows\SYSWOW64\netfxperf.dll
2013-09-05 23:34:39 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2013-09-05 23:34:39 ----A---- C:\windows\SYSWOW64\imapi2fs.dll
2013-09-05 23:34:39 ----A---- C:\windows\system32\webservices.dll
2013-09-05 23:34:39 ----A---- C:\windows\system32\SessEnv.dll
2013-09-05 23:34:38 ----A---- C:\windows\SYSWOW64\SessEnv.dll
2013-09-05 23:34:38 ----A---- C:\windows\SYSWOW64\PortableDeviceApi.dll
2013-09-05 23:34:38 ----A---- C:\windows\SYSWOW64\msdrm.dll
2013-09-05 23:34:38 ----A---- C:\windows\system32\winsta.dll
2013-09-05 23:34:38 ----A---- C:\windows\system32\sqlsrv32.dll
2013-09-05 23:34:38 ----A---- C:\windows\system32\fveapi.dll
2013-09-05 23:34:38 ----A---- C:\windows\system32\dot3api.dll
2013-09-05 23:34:37 ----A---- C:\windows\SYSWOW64\shlwapi.dll
2013-09-05 23:34:37 ----A---- C:\windows\SYSWOW64\mcbuilder.exe
2013-09-05 23:34:37 ----A---- C:\windows\system32\prncache.dll
2013-09-05 23:34:37 ----A---- C:\windows\system32\mcmde.dll
2013-09-05 23:34:37 ----A---- C:\windows\system32\gdi32.dll
2013-09-05 23:34:37 ----A---- C:\windows\system32\drivers\volsnap.sys
2013-09-05 23:34:37 ----A---- C:\windows\system32\drivers\msrpc.sys
2013-09-05 23:34:36 ----A---- C:\windows\SYSWOW64\userenv.dll
2013-09-05 23:34:36 ----A---- C:\windows\SYSWOW64\certmgr.dll
2013-09-05 23:34:36 ----A---- C:\windows\system32\WMNetMgr.dll
2013-09-05 23:34:36 ----A---- C:\windows\system32\wlanpref.dll
2013-09-05 23:34:36 ----A---- C:\windows\system32\vpnike.dll
2013-09-05 23:34:36 ----A---- C:\windows\system32\schtasks.exe
2013-09-05 23:34:35 ----A---- C:\windows\SYSWOW64\xpsservices.dll
2013-09-05 23:34:35 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-09-05 23:34:35 ----A---- C:\windows\SYSWOW64\comdlg32.dll
2013-09-05 23:34:35 ----A---- C:\windows\system32\userenv.dll
2013-09-05 23:34:35 ----A---- C:\windows\system32\photowiz.dll
2013-09-05 23:34:35 ----A---- C:\windows\system32\evr.dll
2013-09-05 23:34:35 ----A---- C:\windows\system32\drivers\rdbss.sys
2013-09-05 23:34:35 ----A---- C:\windows\system32\drivers\1394ohci.sys
2013-09-05 23:34:34 ----A---- C:\windows\SYSWOW64\cmd.exe
2013-09-05 23:34:34 ----A---- C:\windows\system32\wmpmde.dll
2013-09-05 23:34:34 ----A---- C:\windows\system32\SyncCenter.dll
2013-09-05 23:34:34 ----A---- C:\windows\system32\sppobjs.dll
2013-09-05 23:34:34 ----A---- C:\windows\system32\IPSECSVC.DLL
2013-09-05 23:34:34 ----A---- C:\windows\system32\FXSSVC.exe
2013-09-05 23:34:34 ----A---- C:\windows\system32\framedyn.dll
2013-09-05 23:34:34 ----A---- C:\windows\system32\AudioSes.dll
2013-09-05 23:34:34 ----A---- C:\windows\system32\aepdu.dll
2013-09-05 23:34:33 ----A---- C:\windows\system32\WMPEncEn.dll
2013-09-05 23:34:33 ----A---- C:\windows\system32\wmpeffects.dll
2013-09-05 23:34:33 ----A---- C:\windows\system32\srvsvc.dll
2013-09-05 23:34:33 ----A---- C:\windows\system32\shsvcs.dll
2013-09-05 23:34:33 ----A---- C:\windows\system32\mfreadwrite.dll
2013-09-05 23:34:33 ----A---- C:\windows\system32\aeinv.dll
2013-09-05 23:34:32 ----A---- C:\windows\SYSWOW64\Wldap32.dll
2013-09-05 23:34:32 ----A---- C:\windows\SYSWOW64\propsys.dll
2013-09-05 23:34:32 ----A---- C:\windows\SYSWOW64\mfds.dll
2013-09-05 23:34:32 ----A---- C:\windows\SYSWOW64\framedynos.dll
2013-09-05 23:34:32 ----A---- C:\windows\system32\WinSATAPI.dll
2013-09-05 23:34:32 ----A---- C:\windows\system32\stobject.dll
2013-09-05 23:34:32 ----A---- C:\windows\system32\localsec.dll
2013-09-05 23:34:32 ----A---- C:\windows\system32\imapi2.dll
2013-09-05 23:34:32 ----A---- C:\windows\system32\fde.dll
2013-09-05 23:34:31 ----A---- C:\windows\SYSWOW64\user32.dll
2013-09-05 23:34:31 ----A---- C:\windows\system32\netid.dll
2013-09-05 23:34:31 ----A---- C:\windows\system32\netdiagfx.dll
2013-09-05 23:34:31 ----A---- C:\windows\system32\inetpp.dll
2013-09-05 23:34:31 ----A---- C:\windows\system32\drivers\udfs.sys
2013-09-05 23:34:31 ----A---- C:\windows\system32\drivers\fltMgr.sys
2013-09-05 23:34:31 ----A---- C:\windows\system32\credui.dll
2013-09-05 23:34:31 ----A---- C:\windows\system32\bcryptprimitives.dll
2013-09-05 23:34:30 ----A---- C:\windows\SYSWOW64\azroles.dll
2013-09-05 23:34:30 ----A---- C:\windows\system32\tcpipcfg.dll
2013-09-05 23:34:30 ----A---- C:\windows\system32\spp.dll
2013-09-05 23:34:30 ----A---- C:\windows\system32\QSHVHOST.DLL
2013-09-05 23:34:30 ----A---- C:\windows\system32\davclnt.dll
2013-09-05 23:34:30 ----A---- C:\windows\system32\biocpl.dll
2013-09-05 23:34:29 ----A---- C:\windows\SYSWOW64\themeui.dll
2013-09-05 23:34:29 ----A---- C:\windows\SYSWOW64\credui.dll
2013-09-05 23:34:29 ----A---- C:\windows\system32\scansetting.dll
2013-09-05 23:34:29 ----A---- C:\windows\system32\printui.dll
2013-09-05 23:34:29 ----A---- C:\windows\system32\mspbda.dll
2013-09-05 23:34:29 ----A---- C:\windows\system32\msinfo32.exe
2013-09-05 23:34:28 ----A---- C:\windows\SYSWOW64\taskeng.exe
2013-09-05 23:34:28 ----A---- C:\windows\SYSWOW64\spp.dll
2013-09-05 23:34:28 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-09-05 23:34:28 ----A---- C:\windows\SYSWOW64\dhcpcore.dll
2013-09-05 23:34:28 ----A---- C:\windows\system32\wusa.exe
2013-09-05 23:34:28 ----A---- C:\windows\system32\pla.dll
2013-09-05 23:34:28 ----A---- C:\windows\system32\msdri.dll
2013-09-05 23:34:28 ----A---- C:\windows\system32\IPHLPAPI.DLL
2013-09-05 23:34:28 ----A---- C:\windows\system32\aitagent.exe
2013-09-05 23:34:27 ----A---- C:\windows\SYSWOW64\basecsp.dll
2013-09-05 23:34:27 ----A---- C:\windows\system32\wiaservc.dll
2013-09-05 23:34:27 ----A---- C:\windows\system32\vds.exe
2013-09-05 23:34:27 ----A---- C:\windows\system32\rpchttp.dll
2013-09-05 23:34:27 ----A---- C:\windows\system32\drivers\pci.sys
2013-09-05 23:34:26 ----A---- C:\windows\SYSWOW64\NaturalLanguage6.dll
2013-09-05 23:34:26 ----A---- C:\windows\SYSWOW64\mfreadwrite.dll
2013-09-05 23:34:26 ----A---- C:\windows\SYSWOW64\dxgi.dll
2013-09-05 23:34:26 ----A---- C:\windows\SYSWOW64\dbghelp.dll
2013-09-05 23:34:26 ----A---- C:\windows\system32\XpsRasterService.dll
2013-09-05 23:34:26 ----A---- C:\windows\system32\wisptis.exe
2013-09-05 23:34:26 ----A---- C:\windows\system32\mscms.dll
2013-09-05 23:34:26 ----A---- C:\windows\system32\FirewallControlPanel.dll
2013-09-05 23:34:26 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2013-09-05 23:34:25 ----A---- C:\windows\SYSWOW64\taskcomp.dll
2013-09-05 23:34:25 ----A---- C:\windows\SYSWOW64\evr.dll
2013-09-05 23:34:25 ----A---- C:\windows\system32\sppwinob.dll
2013-09-05 23:34:25 ----A---- C:\windows\system32\ocsetup.exe
2013-09-05 23:34:25 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-09-05 23:34:24 ----A---- C:\windows\SYSWOW64\WinSATAPI.dll
2013-09-05 23:34:24 ----A---- C:\windows\SYSWOW64\calc.exe
2013-09-05 23:34:24 ----A---- C:\windows\system32\ocsetapi.dll
2013-09-05 23:34:24 ----A---- C:\windows\system32\DXP.dll
2013-09-05 23:34:24 ----A---- C:\windows\system32\drivers\volmgr.sys
2013-09-05 23:34:23 ----A---- C:\windows\SYSWOW64\sqlsrv32.dll
2013-09-05 23:34:23 ----A---- C:\windows\system32\wpdbusenum.dll
2013-09-05 23:34:23 ----A---- C:\windows\system32\wcncsvc.dll
2013-09-05 23:34:23 ----A---- C:\windows\system32\upnp.dll
2013-09-05 23:34:23 ----A---- C:\windows\system32\Robocopy.exe
2013-09-05 23:34:23 ----A---- C:\windows\system32\mprapi.dll
2013-09-05 23:34:23 ----A---- C:\windows\system32\eapphost.dll
2013-09-05 23:34:23 ----A---- C:\windows\system32\eapp3hst.dll
2013-09-05 23:34:23 ----A---- C:\windows\system32\drivers\msdsm.sys
2013-09-05 23:34:23 ----A---- C:\windows\system32\ci.dll
2013-09-05 23:34:22 ----A---- C:\windows\SYSWOW64\ws2_32.dll
2013-09-05 23:34:22 ----A---- C:\windows\SYSWOW64\UIRibbon.dll
2013-09-05 23:34:22 ----A---- C:\windows\SYSWOW64\sxs.dll
2013-09-05 23:34:22 ----A---- C:\windows\SYSWOW64\stobject.dll
2013-09-05 23:34:22 ----A---- C:\windows\SYSWOW64\netshell.dll
2013-09-05 23:34:22 ----A---- C:\windows\system32\thumbcache.dll
2013-09-05 23:34:22 ----A---- C:\windows\system32\t2embed.dll
2013-09-05 23:34:22 ----A---- C:\windows\system32\hal.dll
2013-09-05 23:34:22 ----A---- C:\windows\system32\drivers\HpSAMD.sys
2013-09-05 23:34:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-09-05 23:34:21 ----A---- C:\windows\system32\scecli.dll
2013-09-05 23:34:21 ----A---- C:\windows\system32\PerfCenterCPL.dll
2013-09-05 23:34:21 ----A---- C:\windows\system32\MSMPEG2ENC.DLL
2013-09-05 23:34:21 ----A---- C:\windows\system32\DxpTaskSync.dll
2013-09-05 23:34:21 ----A---- C:\windows\system32\dwmredir.dll
2013-09-05 23:34:20 ----A---- C:\windows\SYSWOW64\prncache.dll
2013-09-05 23:34:20 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-09-05 23:34:20 ----A---- C:\windows\system32\themeui.dll
2013-09-05 23:34:20 ----A---- C:\windows\system32\puiobj.dll
2013-09-05 23:34:20 ----A---- C:\windows\system32\onex.dll
2013-09-05 23:34:20 ----A---- C:\windows\system32\msasn1.dll
2013-09-05 23:34:20 ----A---- C:\windows\system32\iasrad.dll
2013-09-05 23:34:20 ----A---- C:\windows\system32\DXPTaskRingtone.dll
2013-09-05 23:34:20 ----A---- C:\windows\system32\drivers\ipfltdrv.sys
2013-09-05 23:34:20 ----A---- C:\windows\system32\drivers\Classpnp.sys
2013-09-05 23:34:19 ----A---- C:\windows\SYSWOW64\WSDApi.dll
2013-09-05 23:34:19 ----A---- C:\windows\SYSWOW64\wmpeffects.dll
2013-09-05 23:34:19 ----A---- C:\windows\SYSWOW64\rpchttp.dll
2013-09-05 23:34:19 ----A---- C:\windows\SYSWOW64\printui.dll
2013-09-05 23:34:19 ----A---- C:\windows\SYSWOW64\net1.exe
2013-09-05 23:34:18 ----A---- C:\windows\SYSWOW64\scansetting.dll
2013-09-05 23:34:18 ----A---- C:\windows\system32\wdc.dll
2013-09-05 23:34:17 ----A---- C:\windows\system32\wlangpui.dll
2013-09-05 23:34:17 ----A---- C:\windows\system32\VAN.dll
2013-09-05 23:34:17 ----A---- C:\windows\system32\StructuredQuery.dll
2013-09-05 23:34:17 ----A---- C:\windows\system32\sdengin2.dll
2013-09-05 23:34:17 ----A---- C:\windows\system32\scesrv.dll
2013-09-05 23:34:17 ----A---- C:\windows\system32\rasmans.dll
2013-09-05 23:34:17 ----A---- C:\windows\system32\msftedit.dll
2013-09-05 23:34:16 ----A---- C:\windows\SYSWOW64\WMVCORE.DLL
2013-09-05 23:34:16 ----A---- C:\windows\SYSWOW64\wlangpui.dll
2013-09-05 23:34:16 ----A---- C:\windows\SYSWOW64\MMDevAPI.dll
2013-09-05 23:34:16 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-09-05 23:34:16 ----A---- C:\windows\system32\wscapi.dll
2013-09-05 23:34:16 ----A---- C:\windows\system32\wiadefui.dll
2013-09-05 23:34:16 ----A---- C:\windows\system32\SndVol.exe
2013-09-05 23:34:16 ----A---- C:\windows\system32\samcli.dll
2013-09-05 23:34:16 ----A---- C:\windows\system32\netcenter.dll
2013-09-05 23:34:16 ----A---- C:\windows\system32\iasacct.dll
2013-09-05 23:34:16 ----A---- C:\windows\system32\dskquoui.dll
2013-09-05 23:34:16 ----A---- C:\windows\system32\drivers\ndiswan.sys
2013-09-05 23:34:15 ----A---- C:\windows\SYSWOW64\QSHVHOST.DLL
2013-09-05 23:34:15 ----A---- C:\windows\system32\TabSvc.dll
2013-09-05 23:34:15 ----A---- C:\windows\system32\srchadmin.dll
2013-09-05 23:34:15 ----A---- C:\windows\system32\regapi.dll
2013-09-05 23:34:15 ----A---- C:\windows\system32\QUTIL.DLL
2013-09-05 23:34:15 ----A---- C:\windows\system32\drivers\termdd.sys
2013-09-05 23:34:14 ----A---- C:\windows\SYSWOW64\wpdshext.dll
2013-09-05 23:34:14 ----A---- C:\windows\SYSWOW64\webservices.dll
2013-09-05 23:34:14 ----A---- C:\windows\SYSWOW64\t2embed.dll
2013-09-05 23:34:14 ----A---- C:\windows\SYSWOW64\pnidui.dll
2013-09-05 23:34:14 ----A---- C:\windows\SYSWOW64\fde.dll
2013-09-05 23:34:14 ----A---- C:\windows\system32\setupcl.exe
2013-09-05 23:34:14 ----A---- C:\windows\system32\drivers\msahci.sys
2013-09-05 23:34:13 ----A---- C:\windows\SYSWOW64\wuapi.dll
2013-09-05 23:34:13 ----A---- C:\windows\SYSWOW64\wscapi.dll
2013-09-05 23:34:13 ----A---- C:\windows\SYSWOW64\SyncCenter.dll
2013-09-05 23:34:13 ----A---- C:\windows\SYSWOW64\netdiagfx.dll
2013-09-05 23:34:13 ----A---- C:\windows\system32\rastls.dll
2013-09-05 23:34:13 ----A---- C:\windows\system32\drivers\acpi.sys
2013-09-05 23:34:12 ----A---- C:\windows\SYSWOW64\WinSCard.dll
2013-09-05 23:34:12 ----A---- C:\windows\SYSWOW64\pla.dll
2013-09-05 23:34:12 ----A---- C:\windows\SYSWOW64\msasn1.dll
2013-09-05 23:34:12 ----A---- C:\windows\system32\tapisrv.dll
2013-09-05 23:34:12 ----A---- C:\windows\system32\netiohlp.dll
2013-09-05 23:34:12 ----A---- C:\windows\system32\msconfig.exe
2013-09-05 23:34:12 ----A---- C:\windows\system32\mimefilt.dll
2013-09-05 23:34:12 ----A---- C:\windows\system32\ListSvc.dll
2013-09-05 23:34:12 ----A---- C:\windows\system32\hgcpl.dll
2013-09-05 23:34:12 ----A---- C:\windows\system32\drivers\raspptp.sys
2013-09-05 23:34:11 ----A---- C:\windows\system32\lsmproxy.dll
2013-09-05 23:34:11 ----A---- C:\windows\system32\drivers\ks.sys
2013-09-05 23:34:11 ----A---- C:\windows\system32\clusapi.dll
2013-09-05 23:34:11 ----A---- C:\windows\system32\basecsp.dll
2013-09-05 23:34:10 ----A---- C:\windows\SYSWOW64\winsta.dll
2013-09-05 23:34:10 ----A---- C:\windows\SYSWOW64\MSMPEG2ENC.DLL
2013-09-05 23:34:10 ----A---- C:\windows\system32\mtxclu.dll
2013-09-05 23:34:10 ----A---- C:\windows\system32\fdeploy.dll
2013-09-05 23:34:10 ----A---- C:\windows\system32\drivers\sbp2port.sys
2013-09-05 23:34:10 ----A---- C:\windows\system32\AuxiliaryDisplayCpl.dll
2013-09-05 23:34:09 ----A---- C:\windows\SYSWOW64\imapi2.dll
2013-09-05 23:34:09 ----A---- C:\windows\SYSWOW64\DXPTaskRingtone.dll
2013-09-05 23:34:09 ----A---- C:\windows\system32\riched20.dll
2013-09-05 23:34:09 ----A---- C:\windows\system32\dnscmmc.dll
2013-09-05 23:34:08 ----A---- C:\windows\SYSWOW64\WMPEncEn.dll
2013-09-05 23:34:08 ----A---- C:\windows\SYSWOW64\onex.dll
2013-09-05 23:34:08 ----A---- C:\windows\system32\sharemediacpl.dll
2013-09-05 23:34:08 ----A---- C:\windows\system32\RpcRtRemote.dll
2013-09-05 23:34:08 ----A---- C:\windows\system32\powercpl.dll
2013-09-05 23:34:08 ----A---- C:\windows\system32\logoncli.dll
2013-09-05 23:34:07 ----A---- C:\windows\SYSWOW64\winmm.dll
2013-09-05 23:34:07 ----A---- C:\windows\SYSWOW64\shsvcs.dll
2013-09-05 23:34:07 ----A---- C:\windows\SYSWOW64\hbaapi.dll
2013-09-05 23:34:07 ----A---- C:\windows\SYSWOW64\autofmt.exe
2013-09-05 23:34:07 ----A---- C:\windows\system32\themecpl.dll
2013-09-05 23:34:07 ----A---- C:\windows\system32\SensorsCpl.dll
2013-09-05 23:34:07 ----A---- C:\windows\system32\netjoin.dll
2013-09-05 23:34:07 ----A---- C:\windows\system32\nci.dll
2013-09-05 23:34:07 ----A---- C:\windows\system32\Narrator.exe
2013-09-05 23:34:07 ----A---- C:\windows\system32\Faultrep.dll
2013-09-05 23:34:07 ----A---- C:\windows\system32\eudcedit.exe
2013-09-05 23:34:06 ----A---- C:\windows\SYSWOW64\samcli.dll
2013-09-05 23:34:06 ----A---- C:\windows\SYSWOW64\proquota.exe
2013-09-05 23:34:06 ----A---- C:\windows\SYSWOW64\netiohlp.dll
2013-09-05 23:34:06 ----A---- C:\windows\SYSWOW64\IPHLPAPI.DLL
2013-09-05 23:34:06 ----A---- C:\windows\SYSWOW64\autochk.exe
2013-09-05 23:34:06 ----A---- C:\windows\system32\wkssvc.dll
2013-09-05 23:34:06 ----A---- C:\windows\system32\vpnikeapi.dll
2013-09-05 23:34:06 ----A---- C:\windows\system32\sppcomapi.dll
2013-09-05 23:34:06 ----A---- C:\windows\system32\comctl32.dll
2013-09-05 23:34:06 ----A---- C:\windows\system32\cabview.dll
2013-09-05 23:34:05 ----A---- C:\windows\SYSWOW64\thumbcache.dll
2013-09-05 23:34:05 ----A---- C:\windows\SYSWOW64\regapi.dll
2013-09-05 23:34:05 ----A---- C:\windows\SYSWOW64\msutb.dll
2013-09-05 23:34:05 ----A---- C:\windows\SYSWOW64\msinfo32.exe
2013-09-05 23:34:05 ----A---- C:\windows\SYSWOW64\mimefilt.dll
2013-09-05 23:34:05 ----A---- C:\windows\SYSWOW64\ipsmsnap.dll
2013-09-05 23:34:05 ----A---- C:\windows\SYSWOW64\autoconv.exe
2013-09-05 23:34:05 ----A---- C:\windows\SYSWOW64\AudioSes.dll
2013-09-05 23:34:05 ----A---- C:\windows\system32\nshipsec.dll
2013-09-05 23:34:05 ----A---- C:\windows\system32\autochk.exe
2013-09-05 23:34:05 ----A---- C:\windows\system32\autofmt.exe
2013-09-05 23:34:05 ----A---- C:\windows\system32\autoconv.exe
2013-09-05 23:34:04 ----A---- C:\windows\SYSWOW64\wcncsvc.dll
2013-09-05 23:34:04 ----A---- C:\windows\SYSWOW64\tcpipcfg.dll
2013-09-05 23:34:04 ----A---- C:\windows\SYSWOW64\srchadmin.dll
2013-09-05 23:34:04 ----A---- C:\windows\SYSWOW64\schtasks.exe
2013-09-05 23:34:04 ----A---- C:\windows\SYSWOW64\powercpl.dll
2013-09-05 23:34:04 ----A---- C:\windows\SYSWOW64\msihnd.dll
2013-09-05 23:34:04 ----A---- C:\windows\SYSWOW64\framedyn.dll
2013-09-05 23:34:04 ----A---- C:\windows\SYSWOW64\eapphost.dll
2013-09-05 23:34:04 ----A---- C:\windows\system32\wpd_ci.dll
2013-09-05 23:34:04 ----A---- C:\windows\system32\shsetup.dll
2013-09-05 23:34:04 ----A---- C:\windows\system32\sdclt.exe
2013-09-05 23:34:04 ----A---- C:\windows\system32\fms.dll
2013-09-05 23:34:04 ----A---- C:\windows\system32\bcdsrv.dll
2013-09-05 23:34:04 ----A---- C:\windows\system32\audiodg.exe
2013-09-05 23:34:03 ----A---- C:\windows\SYSWOW64\mscorier.dll
2013-09-05 23:34:03 ----A---- C:\windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2013-09-05 23:34:03 ----A---- C:\windows\system32\wwanconn.dll
2013-09-05 23:34:03 ----A---- C:\windows\system32\wlanui.dll
2013-09-05 23:34:03 ----A---- C:\windows\system32\prntvpt.dll
2013-09-05 23:34:03 ----A---- C:\windows\system32\mscorier.dll
2013-09-05 23:34:03 ----A---- C:\windows\system32\drivers\winusb.sys
2013-09-05 23:34:03 ----A---- C:\windows\system32\drivers\wanarp.sys
2013-09-05 23:34:03 ----A---- C:\windows\system32\drivers\volmgrx.sys
2013-09-05 23:34:03 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-09-05 23:34:03 ----A---- C:\windows\system32\drivers\scsiport.sys
2013-09-05 23:34:03 ----A---- C:\windows\system32\dps.dll
2013-09-05 23:34:02 ----A---- C:\windows\SYSWOW64\QAGENT.DLL
2013-09-05 23:34:02 ----A---- C:\windows\SYSWOW64\netid.dll
2013-09-05 23:34:02 ----A---- C:\windows\SYSWOW64\actxprxy.dll
2013-09-05 23:34:02 ----A---- C:\windows\system32\mprddm.dll
2013-09-05 23:34:02 ----A---- C:\windows\system32\fontext.dll
2013-09-05 23:34:02 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-09-05 23:34:02 ----A---- C:\windows\system32\Display.dll
2013-09-05 23:34:02 ----A---- C:\windows\system32\credssp.dll
2013-09-05 23:34:02 ----A---- C:\windows\system32\batmeter.dll
2013-09-05 23:34:02 ----A---- C:\windows\system32\AxInstSv.dll
2013-09-05 23:34:01 ----A---- C:\windows\SYSWOW64\wdc.dll
2013-09-05 23:34:01 ----A---- C:\windows\SYSWOW64\Vault.dll
2013-09-05 23:34:01 ----A---- C:\windows\SYSWOW64\untfs.dll
2013-09-05 23:34:01 ----A---- C:\windows\SYSWOW64\StructuredQuery.dll
2013-09-05 23:34:01 ----A---- C:\windows\SYSWOW64\scesrv.dll
2013-09-05 23:34:01 ----A---- C:\windows\SYSWOW64\rastls.dll
2013-09-05 23:34:01 ----A---- C:\windows\SYSWOW64\nci.dll
2013-09-05 23:34:01 ----A---- C:\windows\system32\wmpsrcwp.dll
2013-09-05 23:34:01 ----A---- C:\windows\system32\mblctr.exe
2013-09-05 23:34:00 ----A---- C:\windows\SYSWOW64\WMNetMgr.dll
2013-09-05 23:34:00 ----A---- C:\windows\SYSWOW64\wlanpref.dll
2013-09-05 23:34:00 ----A---- C:\windows\SYSWOW64\RpcRtRemote.dll
2013-09-05 23:34:00 ----A---- C:\windows\SYSWOW64\Robocopy.exe
2013-09-05 23:34:00 ----A---- C:\windows\system32\usercpl.dll
2013-09-05 23:34:00 ----A---- C:\windows\system32\rtutils.dll
2013-09-05 23:34:00 ----A---- C:\windows\system32\DiagCpl.dll
2013-09-05 23:33:59 ----A---- C:\windows\system32\wpccpl.dll
2013-09-05 23:33:59 ----A---- C:\windows\system32\sppsvc.exe
2013-09-05 23:33:59 ----A---- C:\windows\system32\provsvc.dll
2013-09-05 23:33:59 ----A---- C:\windows\system32\MCEWMDRMNDBootstrap.dll
2013-09-05 23:33:59 ----A---- C:\windows\system32\bootres.dll
2013-09-05 23:33:58 ----A---- C:\windows\SYSWOW64\taskmgr.exe
2013-09-05 23:33:58 ----A---- C:\windows\SYSWOW64\mtxclu.dll
2013-09-05 23:33:58 ----A---- C:\windows\SYSWOW64\DxpTaskSync.dll
2013-09-05 23:33:58 ----A---- C:\windows\SYSWOW64\Display.dll
2013-09-05 23:33:58 ----A---- C:\windows\system32\SndVolSSO.dll
2013-09-05 23:33:58 ----A---- C:\windows\system32\rasppp.dll
2013-09-05 23:33:58 ----A---- C:\windows\system32\drivers\rdyboost.sys
2013-09-05 23:33:58 ----A---- C:\windows\system32\dot3cfg.dll
2013-09-05 23:33:57 ----A---- C:\windows\system32\dxdiagn.dll
2013-09-05 23:33:56 ----A---- C:\windows\SYSWOW64\XpsRasterService.dll
2013-09-05 23:33:56 ----A---- C:\windows\SYSWOW64\userinit.exe
2013-09-05 23:33:56 ----A---- C:\windows\SYSWOW64\termmgr.dll
2013-09-05 23:33:56 ----A---- C:\windows\SYSWOW64\puiobj.dll
2013-09-05 23:33:56 ----A---- C:\windows\system32\taskmgr.exe
2013-09-05 23:33:56 ----A---- C:\windows\system32\prnfldr.dll
2013-09-05 23:33:56 ----A---- C:\windows\system32\hbaapi.dll
2013-09-05 23:33:55 ----A---- C:\windows\SYSWOW64\eudcedit.exe
2013-09-05 23:33:55 ----A---- C:\windows\system32\WPDShServiceObj.dll
2013-09-05 23:33:55 ----A---- C:\windows\system32\proquota.exe
2013-09-05 23:33:55 ----A---- C:\windows\system32\pdh.dll
2013-09-05 23:33:55 ----A---- C:\windows\system32\drivers\mountmgr.sys
2013-09-05 23:33:55 ----A---- C:\windows\system32\drivers\ataport.sys
2013-09-05 23:33:54 ----A---- C:\windows\SYSWOW64\wiadefui.dll
2013-09-05 23:33:54 ----A---- C:\windows\SYSWOW64\sppcomapi.dll
2013-09-05 23:33:54 ----A---- C:\windows\SYSWOW64\shsetup.dll
2013-09-05 23:33:54 ----A---- C:\windows\SYSWOW64\rasppp.dll
2013-09-05 23:33:54 ----A---- C:\windows\SYSWOW64\logoncli.dll
2013-09-05 23:33:54 ----A---- C:\windows\SYSWOW64\cabview.dll
2013-09-05 23:33:54 ----A---- C:\windows\system32\userinit.exe
2013-09-05 23:33:54 ----A---- C:\windows\system32\untfs.dll
2013-09-05 23:33:54 ----A---- C:\windows\system32\MSAC3ENC.DLL
2013-09-05 23:33:54 ----A---- C:\windows\system32\accessibilitycpl.dll
2013-09-05 23:33:53 ----A---- C:\windows\SYSWOW64\themecpl.dll
2013-09-05 23:33:53 ----A---- C:\windows\SYSWOW64\SensorsCpl.dll
2013-09-05 23:33:53 ----A---- C:\windows\SYSWOW64\FirewallControlPanel.dll
2013-09-05 23:33:52 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-09-05 23:33:52 ----A---- C:\windows\SYSWOW64\dnscmmc.dll
2013-09-05 23:33:52 ----A---- C:\windows\system32\zipfldr.dll
2013-09-05 23:33:52 ----A---- C:\windows\system32\slui.exe
2013-09-05 23:33:52 ----A---- C:\windows\system32\defaultlocationcpl.dll
2013-09-05 23:33:51 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2013-09-05 23:33:51 ----A---- C:\windows\system32\msieftp.dll
2013-09-05 23:33:50 ----A---- C:\windows\SYSWOW64\tapisrv.dll
2013-09-05 23:33:50 ----A---- C:\windows\SYSWOW64\scecli.dll
2013-09-05 23:33:50 ----A---- C:\windows\SYSWOW64\mscories.dll
2013-09-05 23:33:50 ----A---- C:\windows\SYSWOW64\mscms.dll
2013-09-05 23:33:50 ----A---- C:\windows\SYSWOW64\mprddm.dll
2013-09-05 23:33:50 ----A---- C:\windows\SYSWOW64\localsec.dll
2013-09-05 23:33:50 ----A---- C:\windows\SYSWOW64\fontext.dll
2013-09-05 23:33:50 ----A---- C:\windows\system32\sud.dll
2013-09-05 23:33:50 ----A---- C:\windows\system32\dot3svc.dll
2013-09-05 23:33:50 ----A---- C:\windows\system32\DeviceCenter.dll
2013-09-05 23:33:49 ----A---- C:\windows\SYSWOW64\SndVolSSO.dll
2013-09-05 23:33:49 ----A---- C:\windows\SYSWOW64\iasacct.dll
2013-09-05 23:33:49 ----A---- C:\windows\system32\taskbarcpl.dll
2013-09-05 23:33:49 ----A---- C:\windows\system32\OnLineIDCpl.dll
2013-09-05 23:33:49 ----A---- C:\windows\system32\networkmap.dll
2013-09-05 23:33:49 ----A---- C:\windows\system32\cryptui.dll
2013-09-05 23:33:49 ----A---- C:\windows\system32\ActionCenter.dll
2013-09-05 23:33:48 ----A---- C:\windows\SYSWOW64\wlanui.dll
2013-09-05 23:33:48 ----A---- C:\windows\SYSWOW64\VAN.dll
2013-09-05 23:33:48 ----A---- C:\windows\SYSWOW64\usercpl.dll
2013-09-05 23:33:48 ----A---- C:\windows\SYSWOW64\SndVol.exe
2013-09-05 23:33:48 ----A---- C:\windows\SYSWOW64\prntvpt.dll
2013-09-05 23:33:48 ----A---- C:\windows\SYSWOW64\PerfCenterCPL.dll
2013-09-05 23:33:48 ----A---- C:\windows\SYSWOW64\netcenter.dll
2013-09-05 23:33:48 ----A---- C:\windows\SYSWOW64\batmeter.dll
2013-09-05 23:33:48 ----A---- C:\windows\system32\twext.dll
2013-09-05 23:33:47 ----A---- C:\windows\SYSWOW64\w32tm.exe
2013-09-05 23:33:47 ----A---- C:\windows\system32\uxlib.dll
2013-09-05 23:33:47 ----A---- C:\windows\system32\recovery.dll
2013-09-05 23:33:47 ----A---- C:\windows\system32\OobeFldr.dll
2013-09-05 23:33:47 ----A---- C:\windows\system32\isoburn.exe
2013-09-05 23:33:47 ----A---- C:\windows\system32\dsuiext.dll
2013-09-05 23:33:47 ----A---- C:\windows\system32\drivers\hwpolicy.sys
2013-09-05 23:33:47 ----A---- C:\windows\system32\cca.dll
2013-09-05 23:33:47 ----A---- C:\windows\system32\bcdedit.exe
2013-09-05 23:33:47 ----A---- C:\windows\system32\azroleui.dll
2013-09-05 23:33:47 ----A---- C:\windows\system32\asycfilt.dll
2013-09-05 23:33:46 ----A---- C:\windows\SYSWOW64\zipfldr.dll
2013-09-05 23:33:46 ----A---- C:\windows\SYSWOW64\spwizeng.dll
2013-09-05 23:33:46 ----A---- C:\windows\SYSWOW64\fdeploy.dll
2013-09-05 23:33:46 ----A---- C:\windows\SYSWOW64\azroleui.dll
2013-09-05 23:33:46 ----A---- C:\windows\SYSWOW64\accessibilitycpl.dll
2013-09-05 23:33:46 ----A---- C:\windows\system32\tzutil.exe
2013-09-05 23:33:46 ----A---- C:\windows\system32\syncui.dll
2013-09-05 23:33:46 ----A---- C:\windows\system32\sisbkup.dll
2013-09-05 23:33:46 ----A---- C:\windows\system32\sdcpl.dll
2013-09-05 23:33:46 ----A---- C:\windows\system32\MediaMetadataHandler.dll
2013-09-05 23:33:46 ----A---- C:\windows\system32\efscore.dll
2013-09-05 23:33:46 ----A---- C:\windows\system32\drivers\sdbus.sys
2013-09-05 23:33:45 ----A---- C:\windows\SYSWOW64\netjoin.dll
2013-09-05 23:33:45 ----A---- C:\windows\SYSWOW64\MSAC3ENC.DLL
2013-09-05 23:33:45 ----A---- C:\windows\SYSWOW64\cryptui.dll
2013-09-05 23:33:45 ----A---- C:\windows\system32\systemcpl.dll
2013-09-05 23:33:45 ----A---- C:\windows\system32\shwebsvc.dll
2013-09-05 23:33:45 ----A---- C:\windows\system32\recdisc.exe
2013-09-05 23:33:45 ----A---- C:\windows\system32\netplwiz.dll
2013-09-05 23:33:45 ----A---- C:\windows\system32\httpapi.dll
2013-09-05 23:33:45 ----A---- C:\windows\system32\drivers\mpio.sys
2013-09-05 23:33:45 ----A---- C:\windows\system32\autoplay.dll
2013-09-05 23:33:44 ----A---- C:\windows\SYSWOW64\networkmap.dll
2013-09-05 23:33:44 ----A---- C:\windows\SYSWOW64\Faultrep.dll
2013-09-05 23:33:44 ----A---- C:\windows\SYSWOW64\adsldp.dll
2013-09-05 23:33:44 ----A---- C:\windows\system32\wlanmsm.dll
2013-09-05 23:33:44 ----A---- C:\windows\system32\sysclass.dll
2013-09-05 23:33:44 ----A---- C:\windows\system32\sdrsvc.dll
2013-09-05 23:33:44 ----A---- C:\windows\system32\ncryptui.dll
2013-09-05 23:33:44 ----A---- C:\windows\system32\certcli.dll
2013-09-05 23:33:44 ----A---- C:\windows\system32\ActionCenterCPL.dll
2013-09-05 23:33:43 ----A---- C:\windows\SYSWOW64\wusa.exe
2013-09-05 23:33:43 ----A---- C:\windows\SYSWOW64\prnfldr.dll
2013-09-05 23:33:43 ----A---- C:\windows\SYSWOW64\OnLineIDCpl.dll
2013-09-05 23:33:43 ----A---- C:\windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2013-09-05 23:33:43 ----A---- C:\windows\system32\spwizeng.dll
2013-09-05 23:33:43 ----A---- C:\windows\system32\msvidc32.dll
2013-09-05 23:33:43 ----A---- C:\windows\system32\AuxiliaryDisplayServices.dll
2013-09-05 23:33:42 ----A---- C:\windows\SYSWOW64\sud.dll
2013-09-05 23:33:42 ----A---- C:\windows\SYSWOW64\photowiz.dll
2013-09-05 23:33:42 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-09-05 23:33:42 ----A---- C:\windows\SYSWOW64\MediaMetadataHandler.dll
2013-09-05 23:33:42 ----A---- C:\windows\SYSWOW64\credssp.dll
2013-09-05 23:33:42 ----A---- C:\windows\SYSWOW64\ActionCenter.dll
2013-09-05 23:33:42 ----A---- C:\windows\system32\vdsutil.dll
2013-09-05 23:33:42 ----A---- C:\windows\system32\termmgr.dll
2013-09-05 23:33:42 ----A---- C:\windows\system32\MFPlay.dll
2013-09-05 23:33:41 ----A---- C:\windows\SYSWOW64\iprtrmgr.dll
2013-09-05 23:33:41 ----A---- C:\windows\SYSWOW64\iasrad.dll
2013-09-05 23:33:41 ----A---- C:\windows\SYSWOW64\dot3cfg.dll
2013-09-05 23:33:41 ----A---- C:\windows\SYSWOW64\defaultlocationcpl.dll
2013-09-05 23:33:41 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-09-05 23:33:41 ----A---- C:\windows\system32\sethc.exe
2013-09-05 23:33:41 ----A---- C:\windows\system32\ReAgent.dll
2013-09-05 23:33:41 ----A---- C:\windows\system32\ntlanman.dll
2013-09-05 23:33:41 ----A---- C:\windows\system32\msscp.dll
2013-09-05 23:33:40 ----A---- C:\windows\SYSWOW64\sisbkup.dll
2013-09-05 23:33:40 ----A---- C:\windows\SYSWOW64\shwebsvc.dll
2013-09-05 23:33:40 ----A---- C:\windows\SYSWOW64\ifsutil.dll
2013-09-05 23:33:40 ----A---- C:\windows\SYSWOW64\ftp.exe
2013-09-05 23:33:40 ----A---- C:\windows\system32\sqlcese30.dll
2013-09-05 23:33:40 ----A---- C:\windows\system32\drivers\ndproxy.sys
2013-09-05 23:33:39 ----A---- C:\windows\SYSWOW64\efscore.dll
2013-09-05 23:33:39 ----A---- C:\windows\SYSWOW64\ActionCenterCPL.dll
2013-09-05 23:33:39 ----A---- C:\windows\system32\UserAccountControlSettings.dll
2013-09-05 23:33:39 ----A---- C:\windows\system32\rdpd3d.dll
2013-09-05 23:33:39 ----A---- C:\windows\system32\iTVData.dll
2013-09-05 23:33:39 ----A---- C:\windows\system32\iprtrmgr.dll
2013-09-05 23:33:38 ----A---- C:\windows\SYSWOW64\syncui.dll
2013-09-05 23:33:38 ----A---- C:\windows\SYSWOW64\autoplay.dll
2013-09-05 23:33:38 ----A---- C:\windows\system32\wmdrmsdk.dll
2013-09-05 23:33:38 ----A---- C:\windows\system32\srvcli.dll
2013-09-05 23:33:38 ----A---- C:\windows\system32\slwga.dll
2013-09-05 23:33:38 ----A---- C:\windows\system32\iyuv_32.dll
2013-09-05 23:33:38 ----A---- C:\windows\system32\drmmgrtn.dll
2013-09-05 23:33:37 ----A---- C:\windows\SYSWOW64\wmpmde.dll
2013-09-05 23:33:37 ----A---- C:\windows\SYSWOW64\rtutils.dll
2013-09-05 23:33:37 ----A---- C:\windows\SYSWOW64\OobeFldr.dll
2013-09-05 23:33:37 ----A---- C:\windows\SYSWOW64\ntlanman.dll
2013-09-05 23:33:37 ----A---- C:\windows\SYSWOW64\dskquoui.dll
2013-09-05 23:33:37 ----A---- C:\windows\SYSWOW64\DeviceCenter.dll
2013-09-05 23:33:37 ----A---- C:\windows\system32\wavemsp.dll
2013-09-05 23:33:37 ----A---- C:\windows\system32\nslookup.exe
2013-09-05 23:33:37 ----A---- C:\windows\system32\msiexec.exe
2013-09-05 23:33:36 ----A---- C:\windows\SYSWOW64\systemcpl.dll
2013-09-05 23:33:36 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-09-05 23:33:36 ----A---- C:\windows\SYSWOW64\sethc.exe
2013-09-05 23:33:36 ----A---- C:\windows\SYSWOW64\riched20.dll
2013-09-05 23:33:36 ----A---- C:\windows\SYSWOW64\ntprint.dll
2013-09-05 23:33:36 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-09-05 23:33:36 ----A---- C:\windows\system32\srrstr.dll
2013-09-05 23:33:36 ----A---- C:\windows\system32\ntprint.dll
2013-09-05 23:33:36 ----A---- C:\windows\system32\NAPHLPR.DLL
2013-09-05 23:33:36 ----A---- C:\windows\system32\DevicePairingFolder.dll
2013-09-05 23:33:36 ----A---- C:\windows\system32\bcdboot.exe
2013-09-05 23:33:36 ----A---- C:\windows\system32\acppage.dll
2013-09-05 23:33:35 ----A---- C:\windows\SYSWOW64\NAPHLPR.DLL
2013-09-05 23:33:35 ----A---- C:\windows\SYSWOW64\blackbox.dll
2013-09-05 23:33:35 ----A---- C:\windows\system32\sppnp.dll
2013-09-05 23:33:35 ----A---- C:\windows\system32\certprop.dll
2013-09-05 23:33:34 ----A---- C:\windows\SYSWOW64\wmpsrcwp.dll
2013-09-05 23:33:34 ----A---- C:\windows\SYSWOW64\netplwiz.dll
2013-09-05 23:33:34 ----A---- C:\windows\SYSWOW64\migisol.dll
2013-09-05 23:33:34 ----A---- C:\windows\SYSWOW64\fms.dll
2013-09-05 23:33:34 ----A---- C:\windows\SYSWOW64\activeds.dll
2013-09-05 23:33:34 ----A---- C:\windows\system32\TSpkg.dll
2013-09-05 23:33:34 ----A---- C:\windows\system32\networkexplorer.dll
2013-09-05 23:33:34 ----A---- C:\windows\system32\cabinet.dll
2013-09-05 23:33:33 ----A---- C:\windows\SYSWOW64\nshipsec.dll
2013-09-05 23:33:33 ----A---- C:\windows\SYSWOW64\isoburn.exe
2013-09-05 23:33:33 ----A---- C:\windows\SYSWOW64\httpapi.dll
2013-09-05 23:33:33 ----A---- C:\windows\SYSWOW64\asycfilt.dll
2013-09-05 23:33:33 ----A---- C:\windows\system32\wkscli.dll
2013-09-05 23:33:33 ----A---- C:\windows\system32\remotepg.dll
2013-09-05 23:33:33 ----A---- C:\windows\system32\dfrgui.exe
2013-09-05 23:33:32 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2013-09-05 23:33:32 ----A---- C:\windows\SYSWOW64\wlanmsm.dll
2013-09-05 23:33:32 ----A---- C:\windows\SYSWOW64\wavemsp.dll
2013-09-05 23:33:32 ----A---- C:\windows\SYSWOW64\ReAgent.dll
2013-09-05 23:33:32 ----A---- C:\windows\SYSWOW64\provsvc.dll
2013-09-05 23:33:32 ----A---- C:\windows\SYSWOW64\msftedit.dll
2013-09-05 23:33:32 ----A---- C:\windows\SYSWOW64\dot3ui.dll
2013-09-05 23:33:32 ----A---- C:\windows\system32\wsnmp32.dll
2013-09-05 23:33:32 ----A---- C:\windows\system32\wmpdxm.dll
2013-09-05 23:33:32 ----A---- C:\windows\system32\WinSCard.dll
2013-09-05 23:33:32 ----A---- C:\windows\system32\net1.exe
2013-09-05 23:33:32 ----A---- C:\windows\system32\ftp.exe
2013-09-05 23:33:31 ----A---- C:\windows\SYSWOW64\tzutil.exe
2013-09-05 23:33:31 ----A---- C:\windows\SYSWOW64\ocsetup.exe
2013-09-05 23:33:31 ----A---- C:\windows\SYSWOW64\dsuiext.dll
2013-09-05 23:33:31 ----A---- C:\windows\SYSWOW64\dfrgui.exe
2013-09-05 23:33:31 ----A---- C:\windows\system32\wvc.dll
2013-09-05 23:33:31 ----A---- C:\windows\system32\wsqmcons.exe
2013-09-05 23:33:31 ----A---- C:\windows\system32\wmdrmdev.dll
2013-09-05 23:33:31 ----A---- C:\windows\system32\WerFaultSecure.exe
2013-09-05 23:33:31 ----A---- C:\windows\system32\blackbox.dll
2013-09-05 23:33:30 ----A---- C:\windows\SYSWOW64\wvc.dll
2013-09-05 23:33:30 ----A---- C:\windows\SYSWOW64\wtsapi32.dll
2013-09-05 23:33:30 ----A---- C:\windows\SYSWOW64\wimgapi.dll
2013-09-05 23:33:30 ----A---- C:\windows\SYSWOW64\twext.dll
2013-09-05 23:33:30 ----A---- C:\windows\SYSWOW64\mstask.dll
2013-09-05 23:33:30 ----A---- C:\windows\system32\msyuv.dll
2013-09-05 23:33:30 ----A---- C:\windows\system32\mfps.dll
2013-09-05 23:33:29 ----A---- C:\windows\twain_32.dll
2013-09-05 23:33:29 ----A---- C:\windows\SYSWOW64\setupugc.exe
2013-09-05 23:33:29 ----A---- C:\windows\SYSWOW64\qcap.dll
2013-09-05 23:33:29 ----A---- C:\windows\system32\unimdmat.dll
2013-09-05 23:33:29 ----A---- C:\windows\system32\OpcServices.dll
2013-09-05 23:33:29 ----A---- C:\windows\system32\msrle32.dll
2013-09-05 23:33:29 ----A---- C:\windows\system32\mapistub.dll
2013-09-05 23:33:29 ----A---- C:\windows\system32\mapi32.dll
2013-09-05 23:33:28 ----A---- C:\windows\SYSWOW64\uxlib.dll
2013-09-05 23:33:28 ----A---- C:\windows\SYSWOW64\slwga.dll
2013-09-05 23:33:28 ----A---- C:\windows\SYSWOW64\qasf.dll
2013-09-05 23:33:28 ----A---- C:\windows\system32\tsbyuv.dll
2013-09-05 23:33:28 ----A---- C:\windows\system32\seclogon.dll
2013-09-05 23:33:28 ----A---- C:\windows\system32\iscsium.dll
2013-09-05 23:33:28 ----A---- C:\windows\system32\ifsutil.dll
2013-09-05 23:33:28 ----A---- C:\windows\system32\diskraid.exe
2013-09-05 23:33:27 ----A---- C:\windows\SYSWOW64\msvfw32.dll
2013-09-05 23:33:27 ----A---- C:\windows\SYSWOW64\mciavi32.dll
2013-09-05 23:33:27 ----A---- C:\windows\SYSWOW64\audiodev.dll
2013-09-05 23:33:27 ----A---- C:\windows\system32\drivers\umbus.sys
2013-09-05 23:33:26 ----A---- C:\windows\SYSWOW64\WPDShServiceObj.dll
2013-09-05 23:33:26 ----A---- C:\windows\SYSWOW64\wmdrmsdk.dll
2013-09-05 23:33:26 ----A---- C:\windows\SYSWOW64\nslookup.exe
2013-09-05 23:33:26 ----A---- C:\windows\SYSWOW64\DevicePairingFolder.dll
2013-09-05 23:33:26 ----A---- C:\windows\SYSWOW64\clusapi.dll
2013-09-05 23:33:26 ----A---- C:\windows\system32\wmpshell.dll
2013-09-05 23:33:26 ----A---- C:\windows\system32\WindowsAnytimeUpgradeResults.exe
2013-09-05 23:33:26 ----A---- C:\windows\system32\rdpencom.dll
2013-09-05 23:33:26 ----A---- C:\windows\system32\perfmon.exe
2013-09-05 23:33:26 ----A---- C:\windows\system32\muifontsetup.dll
2013-09-05 23:33:25 ----A---- C:\windows\SYSWOW64\wimserv.exe
2013-09-05 23:33:25 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2013-09-05 23:33:25 ----A---- C:\windows\SYSWOW64\rdpencom.dll
2013-09-05 23:33:25 ----A---- C:\windows\SYSWOW64\perfmon.exe
2013-09-05 23:33:25 ----A---- C:\windows\SYSWOW64\msscp.dll
2013-09-05 23:33:25 ----A---- C:\windows\SYSWOW64\diskraid.exe
2013-09-05 23:33:25 ----A---- C:\windows\SYSWOW64\acppage.dll
2013-09-05 23:33:25 ----A---- C:\windows\system32\umb.dll
2013-09-05 23:33:25 ----A---- C:\windows\system32\tlscsp.dll
2013-09-05 23:33:25 ----A---- C:\windows\system32\qasf.dll
2013-09-05 23:33:25 ----A---- C:\windows\system32\netutils.dll
2013-09-05 23:33:25 ----A---- C:\windows\system32\NAPCRYPT.DLL
2013-09-05 23:33:25 ----A---- C:\windows\system32\FXSAPI.dll
2013-09-05 23:33:25 ----A---- C:\windows\system32\dbghelp.dll
2013-09-05 23:33:25 ----A---- C:\windows\system32\AzSqlExt.dll
2013-09-05 23:33:25 ----A---- C:\windows\system32\ActionQueue.dll
2013-09-05 23:33:24 ----A---- C:\windows\SYSWOW64\remotepg.dll
2013-09-05 23:33:24 ----A---- C:\windows\SYSWOW64\raschap.dll
2013-09-05 23:33:24 ----A---- C:\windows\SYSWOW64\QUTIL.DLL
2013-09-05 23:33:24 ----A---- C:\windows\SYSWOW64\NAPCRYPT.DLL
2013-09-05 23:33:24 ----A---- C:\windows\SYSWOW64\input.dll
2013-09-05 23:33:24 ----A---- C:\windows\SYSWOW64\drmmgrtn.dll
2013-09-05 23:33:24 ----A---- C:\windows\system32\wiavideo.dll
2013-09-05 23:33:24 ----A---- C:\windows\system32\runonce.exe
2013-09-05 23:33:24 ----A---- C:\windows\system32\raschap.dll
2013-09-05 23:33:24 ----A---- C:\windows\bfsvc.exe
2013-09-05 23:33:23 ----A---- C:\windows\SYSWOW64\wmpdxm.dll
2013-09-05 23:33:23 ----A---- C:\windows\SYSWOW64\vpnikeapi.dll
2013-09-05 23:33:23 ----A---- C:\windows\SYSWOW64\UserAccountControlSettings.dll
2013-09-05 23:33:23 ----A---- C:\windows\SYSWOW64\olepro32.dll
2013-09-05 23:33:23 ----A---- C:\windows\SYSWOW64\ocsetapi.dll
2013-09-05 23:33:23 ----A---- C:\windows\SYSWOW64\networkexplorer.dll
2013-09-05 23:33:23 ----A---- C:\windows\system32\wpdwcn.dll
2013-09-05 23:33:23 ----A---- C:\windows\system32\WMVSDECD.DLL
2013-09-05 23:33:23 ----A---- C:\windows\system32\WMADMOD.DLL
2013-09-05 23:33:23 ----A---- C:\windows\system32\vdsbas.dll
2013-09-05 23:33:23 ----A---- C:\windows\system32\syssetup.dll
2013-09-05 23:33:23 ----A---- C:\windows\system32\PrintIsolationProxy.dll
2013-09-05 23:33:23 ----A---- C:\windows\system32\MdSched.exe
2013-09-05 23:33:22 ----A---- C:\windows\SYSWOW64\wpdwcn.dll
2013-09-05 23:33:22 ----A---- C:\windows\SYSWOW64\vdsbas.dll
2013-09-05 23:33:22 ----A---- C:\windows\SYSWOW64\runonce.exe
2013-09-05 23:33:22 ----A---- C:\windows\SYSWOW64\onexui.dll
2013-09-05 23:33:22 ----A---- C:\windows\SYSWOW64\iTVData.dll
2013-09-05 23:33:22 ----A---- C:\windows\SYSWOW64\dxdiagn.dll
2013-09-05 23:33:22 ----A---- C:\windows\system32\mstask.dll
2013-09-05 23:33:22 ----A---- C:\windows\system32\Mcx2Svc.dll
2013-09-05 23:33:21 ----A---- C:\windows\SYSWOW64\msvidc32.dll
2013-09-05 23:33:21 ----A---- C:\windows\SYSWOW64\MFPlay.dll
2013-09-05 23:33:21 ----A---- C:\windows\SYSWOW64\logagent.exe
2013-09-05 23:33:21 ----A---- C:\windows\SYSWOW64\eapp3hst.dll
2013-09-05 23:33:21 ----A---- C:\windows\system32\nltest.exe
2013-09-05 23:33:21 ----A---- C:\windows\system32\drivers\rmcast.sys
2013-09-05 23:33:21 ----A---- C:\windows\system32\bitsadmin.exe
2013-09-05 23:33:20 ----A---- C:\windows\SYSWOW64\wmdrmdev.dll
2013-09-05 23:33:20 ----A---- C:\windows\SYSWOW64\shacct.dll
2013-09-05 23:33:20 ----A---- C:\windows\SYSWOW64\msiexec.exe
2013-09-05 23:33:20 ----A---- C:\windows\system32\vss_ps.dll
2013-09-05 23:33:20 ----A---- C:\windows\system32\tabcal.exe
2013-09-05 23:33:20 ----A---- C:\windows\system32\shacct.dll
2013-09-05 23:33:20 ----A---- C:\windows\system32\QSVRMGMT.DLL
2013-09-05 23:33:20 ----A---- C:\windows\system32\cscapi.dll
2013-09-05 23:33:19 ----A---- C:\windows\SYSWOW64\wudriver.dll
2013-09-05 23:33:19 ----A---- C:\windows\SYSWOW64\wmpshell.dll
2013-09-05 23:33:19 ----A---- C:\windows\SYSWOW64\lsmproxy.dll
2013-09-05 23:33:19 ----A---- C:\windows\SYSWOW64\bitsadmin.exe
2013-09-05 23:33:19 ----A---- C:\windows\system32\WPDSp.dll
2013-09-05 23:33:19 ----A---- C:\windows\system32\wmdrmnet.dll
2013-09-05 23:33:19 ----A---- C:\windows\system32\secproc_ssp_isv.dll
2013-09-05 23:33:19 ----A---- C:\windows\system32\qcap.dll
2013-09-05 23:33:19 ----A---- C:\windows\system32\logman.exe
2013-09-05 23:33:18 ----A---- C:\windows\SYSWOW64\unimdmat.dll
2013-09-05 23:33:18 ----A---- C:\windows\SYSWOW64\sqlcese30.dll
2013-09-05 23:33:18 ----A---- C:\windows\SYSWOW64\rdpd3d.dll
2013-09-05 23:33:18 ----A---- C:\windows\SYSWOW64\mprapi.dll
2013-09-05 23:33:18 ----A---- C:\windows\SYSWOW64\iscsium.dll
2013-09-05 23:33:18 ----A---- C:\windows\system32\WMSPDMOD.DLL
2013-09-05 23:33:18 ----A---- C:\windows\system32\secproc_ssp.dll
2013-09-05 23:33:18 ----A---- C:\windows\system32\qdv.dll
2013-09-05 23:33:18 ----A---- C:\windows\system32\PortableDeviceSyncProvider.dll
2013-09-05 23:33:18 ----A---- C:\windows\system32\msnetobj.dll
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\WPDSp.dll
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\srvcli.dll
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\PortableDeviceSyncProvider.dll
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\pdh.dll
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\OpcServices.dll
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\olethk32.dll
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\ncryptui.dll
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\logman.exe
2013-09-05 23:33:17 ----A---- C:\windows\SYSWOW64\cscapi.dll
2013-09-05 23:33:17 ----A---- C:\windows\system32\spbcd.dll
2013-09-05 23:33:17 ----A---- C:\windows\system32\PortableDeviceStatus.dll
2013-09-05 23:33:17 ----A---- C:\windows\system32\fphc.dll
2013-09-05 23:33:17 ----A---- C:\windows\system32\drivers\ndisuio.sys
2013-09-05 23:33:16 ----A---- C:\windows\SYSWOW64\QSVRMGMT.DLL
2013-09-05 23:33:16 ----A---- C:\windows\SYSWOW64\PortableDeviceStatus.dll
2013-09-05 23:33:16 ----A---- C:\windows\SYSWOW64\mapi32.dll
2013-09-05 23:33:16 ----A---- C:\windows\system32\takeown.exe
2013-09-05 23:33:16 ----A---- C:\windows\system32\PnPUnattend.exe
2013-09-05 23:33:16 ----A---- C:\windows\system32\dot3ui.dll
2013-09-05 23:33:15 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-09-05 23:33:15 ----A---- C:\windows\SYSWOW64\WMADMOD.DLL
2013-09-05 23:33:15 ----A---- C:\windows\SYSWOW64\wiavideo.dll
2013-09-05 23:33:15 ----A---- C:\windows\SYSWOW64\utildll.dll
2013-09-05 23:33:15 ----A---- C:\windows\SYSWOW64\mapistub.dll
2013-09-05 23:33:15 ----A---- C:\windows\SYSWOW64\fphc.dll
2013-09-05 23:33:15 ----A---- C:\windows\SYSWOW64\dot3msm.dll
2013-09-05 23:33:15 ----A---- C:\windows\SYSWOW64\avifil32.dll
2013-09-05 23:33:15 ----A---- C:\windows\system32\WMPhoto.dll
2013-09-05 23:33:15 ----A---- C:\windows\system32\amstream.dll
2013-09-05 23:33:14 ----A---- C:\windows\SYSWOW64\WMVSDECD.DLL
2013-09-05 23:33:14 ----A---- C:\windows\SYSWOW64\wmdrmnet.dll
2013-09-05 23:33:14 ----A---- C:\windows\SYSWOW64\takeown.exe

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#38 Příspěvek od vitkova_vitek »

2013-09-05 23:33:14 ----A---- C:\windows\SYSWOW64\iyuv_32.dll
2013-09-05 23:33:14 ----A---- C:\windows\system32\vfwwdm32.dll
2013-09-05 23:33:14 ----A---- C:\windows\system32\shimgvw.dll
2013-09-05 23:33:14 ----A---- C:\windows\system32\HotStartUserAgent.dll
2013-09-05 23:33:14 ----A---- C:\windows\system32\EhStorAPI.dll
2013-09-05 23:33:13 ----A---- C:\windows\SYSWOW64\sppinst.dll
2013-09-05 23:33:13 ----A---- C:\windows\SYSWOW64\qdv.dll
2013-09-05 23:33:13 ----A---- C:\windows\SYSWOW64\QCLIPROV.DLL
2013-09-05 23:33:13 ----A---- C:\windows\SYSWOW64\msyuv.dll
2013-09-05 23:33:13 ----A---- C:\windows\SYSWOW64\msnetobj.dll
2013-09-05 23:33:13 ----A---- C:\windows\SYSWOW64\EhStorAPI.dll
2013-09-05 23:33:13 ----A---- C:\windows\system32\WavDest.dll
2013-09-05 23:33:13 ----A---- C:\windows\system32\QCLIPROV.DLL
2013-09-05 23:33:13 ----A---- C:\windows\system32\nrpsrv.dll
2013-09-05 23:33:13 ----A---- C:\windows\system32\iasrecst.dll
2013-09-05 23:33:13 ----A---- C:\windows\system32\djoin.exe
2013-09-05 23:33:13 ----A---- C:\windows\system32\cmstp.exe
2013-09-05 23:33:13 ----A---- C:\windows\system32\CertPolEng.dll
2013-09-05 23:33:12 ----A---- C:\windows\SYSWOW64\vfwwdm32.dll
2013-09-05 23:33:12 ----A---- C:\windows\SYSWOW64\pdhui.dll
2013-09-05 23:33:12 ----A---- C:\windows\SYSWOW64\MuiUnattend.exe
2013-09-05 23:33:12 ----A---- C:\windows\SYSWOW64\msrle32.dll
2013-09-05 23:33:12 ----A---- C:\windows\SYSWOW64\cmstp.exe
2013-09-05 23:33:12 ----A---- C:\windows\SYSWOW64\cca.dll
2013-09-05 23:33:12 ----A---- C:\windows\system32\MultiDigiMon.exe
2013-09-05 23:33:12 ----A---- C:\windows\system32\KMSVC.DLL
2013-09-05 23:33:12 ----A---- C:\windows\system32\fdProxy.dll
2013-09-05 23:33:12 ----A---- C:\windows\system32\drivers\pacer.sys
2013-09-05 23:33:11 ----A---- C:\windows\SYSWOW64\wsnmp32.dll
2013-09-05 23:33:11 ----A---- C:\windows\SYSWOW64\WMSPDMOD.DLL
2013-09-05 23:33:11 ----A---- C:\windows\SYSWOW64\tsbyuv.dll
2013-09-05 23:33:11 ----A---- C:\windows\SYSWOW64\setupcln.dll
2013-09-05 23:33:11 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2013-09-05 23:33:11 ----A---- C:\windows\SYSWOW64\iasrecst.dll
2013-09-05 23:33:11 ----A---- C:\windows\SYSWOW64\AzSqlExt.dll
2013-09-05 23:33:11 ----A---- C:\windows\system32\sscore.dll
2013-09-05 23:33:11 ----A---- C:\windows\system32\relog.exe
2013-09-05 23:33:11 ----A---- C:\windows\system32\mydocs.dll
2013-09-05 23:33:11 ----A---- C:\windows\system32\iscsicli.exe
2013-09-05 23:33:11 ----A---- C:\windows\system32\diskpart.exe
2013-09-05 23:33:10 ----A---- C:\windows\SYSWOW64\wkscli.dll
2013-09-05 23:33:10 ----A---- C:\windows\SYSWOW64\spbcd.dll
2013-09-05 23:33:10 ----A---- C:\windows\SYSWOW64\relog.exe
2013-09-05 23:33:10 ----A---- C:\windows\SYSWOW64\netiougc.exe
2013-09-05 23:33:10 ----A---- C:\windows\SYSWOW64\iscsicli.exe
2013-09-05 23:33:10 ----A---- C:\windows\system32\mobsync.exe
2013-09-05 23:33:10 ----A---- C:\windows\system32\itircl.dll
2013-09-05 23:33:10 ----A---- C:\windows\system32\BWUnpairElevated.dll
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\secproc_ssp_isv.dll
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\secproc_ssp.dll
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\resutils.dll
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\rastapi.dll
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\netbtugc.exe
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\mydocs.dll
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\itircl.dll
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\diskpart.exe
2013-09-05 23:33:09 ----A---- C:\windows\SYSWOW64\amstream.dll
2013-09-05 23:33:09 ----A---- C:\windows\system32\RMActivate_ssp_isv.exe
2013-09-05 23:33:09 ----A---- C:\windows\system32\RMActivate_ssp.exe
2013-09-05 23:33:09 ----A---- C:\windows\system32\msdmo.dll
2013-09-05 23:33:09 ----A---- C:\windows\system32\dot3msm.dll
2013-09-05 23:33:08 ----A---- C:\windows\SYSWOW64\wmpps.dll
2013-09-05 23:33:08 ----A---- C:\windows\SYSWOW64\syssetup.dll
2013-09-05 23:33:08 ----A---- C:\windows\SYSWOW64\CertPolEng.dll
2013-09-05 23:33:08 ----A---- C:\windows\system32\FXSTIFF.dll
2013-09-05 23:33:07 ----A---- C:\windows\SYSWOW64\wuapp.exe
2013-09-05 23:33:07 ----A---- C:\windows\SYSWOW64\WerFaultSecure.exe
2013-09-05 23:33:07 ----A---- C:\windows\SYSWOW64\tlscsp.dll
2013-09-05 23:33:07 ----A---- C:\windows\SYSWOW64\RMActivate_ssp_isv.exe
2013-09-05 23:33:07 ----A---- C:\windows\SYSWOW64\RMActivate_ssp.exe
2013-09-05 23:33:07 ----A---- C:\windows\SYSWOW64\ReAgentc.exe
2013-09-05 23:33:07 ----A---- C:\windows\SYSWOW64\findstr.exe
2013-09-05 23:33:07 ----A---- C:\windows\SYSWOW64\eappgnui.dll
2013-09-05 23:33:07 ----A---- C:\windows\system32\sppc.dll
2013-09-05 23:33:07 ----A---- C:\windows\system32\mciqtz32.dll
2013-09-05 23:33:07 ----A---- C:\windows\system32\luainstall.dll
2013-09-05 23:33:07 ----A---- C:\windows\system32\choice.exe
2013-09-05 23:33:07 ----A---- C:\windows\system32\findstr.exe
2013-09-05 23:33:07 ----A---- C:\windows\system32\eappgnui.dll
2013-09-05 23:33:07 ----A---- C:\windows\system32\drivers\tunnel.sys
2013-09-05 23:33:06 ----A---- C:\windows\SYSWOW64\netutils.dll
2013-09-05 23:33:06 ----A---- C:\windows\SYSWOW64\mobsync.exe
2013-09-05 23:33:06 ----A---- C:\windows\SYSWOW64\mciqtz32.dll
2013-09-05 23:33:06 ----A---- C:\windows\system32\schedcli.dll
2013-09-05 23:33:06 ----A---- C:\windows\system32\onexui.dll
2013-09-05 23:33:06 ----A---- C:\windows\system32\drivers\dfsc.sys
2013-09-05 23:33:05 ----A---- C:\windows\SYSWOW64\sppc.dll
2013-09-05 23:33:05 ----A---- C:\windows\SYSWOW64\spopk.dll
2013-09-05 23:33:05 ----A---- C:\windows\SYSWOW64\shimgvw.dll
2013-09-05 23:33:05 ----A---- C:\windows\SYSWOW64\muifontsetup.dll
2013-09-05 23:33:05 ----A---- C:\windows\SYSWOW64\iccvid.dll
2013-09-05 23:33:05 ----A---- C:\windows\SYSWOW64\cabinet.dll
2013-09-05 23:33:05 ----A---- C:\windows\system32\wdiasqmmodule.dll
2013-09-05 23:33:05 ----A---- C:\windows\system32\spopk.dll
2013-09-05 23:33:05 ----A---- C:\windows\system32\repair-bde.exe
2013-09-05 23:33:05 ----A---- C:\windows\system32\manage-bde.exe
2013-09-05 23:33:05 ----A---- C:\windows\system32\inetmib1.dll
2013-09-05 23:33:04 ----A---- C:\windows\SYSWOW64\unlodctr.exe
2013-09-05 23:33:04 ----A---- C:\windows\SYSWOW64\msdmo.dll
2013-09-05 23:33:04 ----A---- C:\windows\SYSWOW64\luainstall.dll
2013-09-05 23:33:04 ----A---- C:\windows\system32\RDPENCDD.dll
2013-09-05 23:33:04 ----A---- C:\windows\system32\odbcconf.dll
2013-09-05 23:33:03 ----A---- C:\windows\SYSWOW64\rdprefdrvapi.dll
2013-09-05 23:33:03 ----A---- C:\windows\SYSWOW64\inetmib1.dll
2013-09-05 23:33:03 ----A---- C:\windows\system32\fixmapi.exe
2013-09-05 23:33:02 ----A---- C:\windows\SYSWOW64\UIRibbonRes.dll
2013-09-05 23:33:02 ----A---- C:\windows\SYSWOW64\odbcconf.dll
2013-09-05 23:33:02 ----A---- C:\windows\system32\UIRibbonRes.dll
2013-09-05 23:33:02 ----A---- C:\windows\system32\FXSMON.dll
2013-09-05 23:33:02 ----A---- C:\windows\system32\elsTrans.dll
2013-09-05 23:33:01 ----A---- C:\windows\SYSWOW64\wups.dll
2013-09-05 23:33:01 ----A---- C:\windows\SYSWOW64\perfts.dll
2013-09-05 23:33:01 ----A---- C:\windows\system32\wshbth.dll
2013-09-05 23:33:01 ----A---- C:\windows\system32\TRAPI.dll
2013-09-05 23:33:01 ----A---- C:\windows\system32\drivers\tdi.sys
2013-09-05 23:33:00 ----A---- C:\windows\SYSWOW64\imm32.dll
2013-09-05 23:33:00 ----A---- C:\windows\system32\napdsnap.dll
2013-09-05 23:33:00 ----A---- C:\windows\system32\LogonUI.exe
2013-09-05 23:33:00 ----A---- C:\windows\system32\dsauth.dll
2013-09-05 23:32:59 ----A---- C:\windows\SYSWOW64\TRAPI.dll
2013-09-05 23:32:59 ----A---- C:\windows\SYSWOW64\elsTrans.dll
2013-09-05 23:32:59 ----A---- C:\windows\system32\rdprefdrvapi.dll
2013-09-05 23:32:59 ----A---- C:\windows\system32\FXSUNATD.exe
2013-09-05 23:32:59 ----A---- C:\windows\system32\cscdll.dll
2013-09-05 23:32:58 ----A---- C:\windows\SYSWOW64\wshbth.dll
2013-09-05 23:32:58 ----A---- C:\windows\SYSWOW64\schedcli.dll
2013-09-05 23:32:58 ----A---- C:\windows\SYSWOW64\bitsperf.dll
2013-09-05 23:32:58 ----A---- C:\windows\system32\drivers\usbrpm.sys
2013-09-05 23:32:58 ----A---- C:\windows\system32\bitsperf.dll
2013-09-05 23:32:57 ----A---- C:\windows\SYSWOW64\napdsnap.dll
2013-09-05 23:32:57 ----A---- C:\windows\SYSWOW64\dsauth.dll
2013-09-05 23:32:57 ----A---- C:\windows\SYSWOW64\cscdll.dll
2013-09-05 23:32:57 ----A---- C:\windows\system32\drivers\acpipmi.sys
2013-09-05 23:32:56 ----A---- C:\windows\SYSWOW64\sscore.dll
2013-09-05 23:32:56 ----A---- C:\windows\system32\wsdchngr.dll
2013-09-05 23:32:56 ----A---- C:\windows\system32\shgina.dll
2013-09-05 23:32:55 ----A---- C:\windows\SYSWOW64\wsdchngr.dll
2013-09-05 23:32:55 ----A---- C:\windows\SYSWOW64\shgina.dll
2013-09-05 23:32:55 ----A---- C:\windows\SYSWOW64\riched32.dll
2013-09-05 23:32:54 ----A---- C:\windows\system32\drivers\USBCAMD2.sys
2013-09-05 23:32:54 ----A---- C:\windows\system32\drivers\CompositeBus.sys
2013-09-05 23:32:53 ----A---- C:\windows\system32\wshirda.dll
2013-09-05 23:32:53 ----A---- C:\windows\system32\drivers\hidusb.sys
2013-09-05 23:32:53 ----A---- C:\windows\system32\drivers\appid.sys
2013-09-05 23:32:52 ----A---- C:\windows\SYSWOW64\wshirda.dll
2013-09-05 23:32:52 ----A---- C:\windows\system32\riched32.dll
2013-09-05 23:32:52 ----A---- C:\windows\system32\rdpcfgex.dll
2013-09-05 23:32:52 ----A---- C:\windows\system32\drivers\kbdhid.sys
2013-09-05 23:32:51 ----A---- C:\windows\system32\spwmp.dll
2013-09-05 23:32:51 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2013-09-05 23:32:51 ----A---- C:\windows\system32\browseui.dll
2013-09-05 23:32:50 ----A---- C:\windows\SYSWOW64\spwmp.dll
2013-09-05 23:32:50 ----A---- C:\windows\SYSWOW64\browseui.dll
2013-09-05 23:32:50 ----A---- C:\windows\system32\C_ISCII.DLL
2013-09-05 23:32:49 ----A---- C:\windows\SYSWOW64\C_ISCII.DLL
2013-09-05 23:32:49 ----A---- C:\windows\system32\dxmasf.dll
2013-09-05 23:32:49 ----A---- C:\windows\system32\drivers\sffp_sd.sys
2013-09-05 23:32:49 ----A---- C:\windows\system32\drivers\scfilter.sys
2013-09-05 23:32:49 ----A---- C:\windows\system32\drivers\HdAudio.sys
2013-09-05 23:32:49 ----A---- C:\windows\system32\drivers\hdaudbus.sys
2013-09-05 23:32:49 ----A---- C:\windows\system32\drivers\cdrom.sys
2013-09-05 23:32:48 ----AH---- C:\windows\system32\api-ms-win-core-ums-l1-1-0.dll
2013-09-05 23:32:48 ----A---- C:\windows\SYSWOW64\shunimpl.dll
2013-09-05 23:32:48 ----A---- C:\windows\SYSWOW64\dxmasf.dll
2013-09-05 23:32:48 ----A---- C:\windows\system32\shunimpl.dll
2013-09-05 23:32:47 ----A---- C:\windows\SYSWOW64\KBDTUQ.DLL
2013-09-05 23:32:47 ----A---- C:\windows\SYSWOW64\KBDTUF.DLL
2013-09-05 23:32:47 ----A---- C:\windows\SYSWOW64\KBDSG.DLL
2013-09-05 23:32:47 ----A---- C:\windows\SYSWOW64\kbdlk41a.dll
2013-09-05 23:32:47 ----A---- C:\windows\SYSWOW64\KBDGR1.DLL
2013-09-05 23:32:47 ----A---- C:\windows\system32\KBDTUQ.DLL
2013-09-05 23:32:47 ----A---- C:\windows\system32\KBDTUF.DLL
2013-09-05 23:32:47 ----A---- C:\windows\system32\KBDSF.DLL
2013-09-05 23:32:47 ----A---- C:\windows\system32\KBDPO.DLL
2013-09-05 23:32:46 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-09-05 23:32:46 ----A---- C:\windows\SYSWOW64\KBDGKL.DLL
2013-09-05 23:32:46 ----A---- C:\windows\system32\KBDSG.DLL
2013-09-05 23:32:46 ----A---- C:\windows\system32\KBDNEPR.DLL
2013-09-05 23:32:46 ----A---- C:\windows\system32\kbdlk41a.dll
2013-09-05 23:32:46 ----A---- C:\windows\system32\KBDGR1.DLL
2013-09-05 23:32:46 ----A---- C:\windows\system32\KBDGKL.DLL
2013-09-05 23:32:45 ----A---- C:\windows\SYSWOW64\KBDUS.DLL
2013-09-05 23:32:45 ----A---- C:\windows\SYSWOW64\KBDTURME.DLL
2013-09-05 23:32:45 ----A---- C:\windows\SYSWOW64\KBDTAJIK.DLL
2013-09-05 23:32:45 ----A---- C:\windows\SYSWOW64\KBDMON.DLL
2013-09-05 23:32:45 ----A---- C:\windows\SYSWOW64\KBDGEO.DLL
2013-09-05 23:32:45 ----A---- C:\windows\SYSWOW64\KBDCZ1.DLL
2013-09-05 23:32:45 ----A---- C:\windows\SYSWOW64\KBDBLR.DLL
2013-09-05 23:32:45 ----A---- C:\windows\system32\wmploc.DLL
2013-09-05 23:32:45 ----A---- C:\windows\system32\KBDGEO.DLL
2013-09-05 23:32:45 ----A---- C:\windows\system32\KBDCZ1.DLL
2013-09-05 23:32:44 ----A---- C:\windows\SYSWOW64\KBDUGHR1.DLL
2013-09-05 23:32:44 ----A---- C:\windows\SYSWOW64\KBDMAORI.DLL
2013-09-05 23:32:44 ----A---- C:\windows\SYSWOW64\KBDLT1.DLL
2013-09-05 23:32:44 ----A---- C:\windows\system32\KBDUS.DLL
2013-09-05 23:32:44 ----A---- C:\windows\system32\KBDUGHR1.DLL
2013-09-05 23:32:44 ----A---- C:\windows\system32\KBDTAJIK.DLL
2013-09-05 23:32:44 ----A---- C:\windows\system32\KBDMON.DLL
2013-09-05 23:32:44 ----A---- C:\windows\system32\KBDLT1.DLL
2013-09-05 23:32:43 ----A---- C:\windows\SYSWOW64\nlsbres.dll
2013-09-05 23:32:43 ----A---- C:\windows\SYSWOW64\KBDSF.DLL
2013-09-05 23:32:43 ----A---- C:\windows\SYSWOW64\KBDPO.DLL
2013-09-05 23:32:43 ----A---- C:\windows\SYSWOW64\KBDNEPR.DLL
2013-09-05 23:32:43 ----A---- C:\windows\SYSWOW64\KBDBULG.DLL
2013-09-05 23:32:43 ----A---- C:\windows\SYSWOW64\KBDBASH.DLL
2013-09-05 23:32:43 ----A---- C:\windows\system32\nlsbres.dll
2013-09-05 23:32:43 ----A---- C:\windows\system32\KBDTURME.DLL
2013-09-05 23:32:43 ----A---- C:\windows\system32\KBDMAORI.DLL
2013-09-05 23:32:43 ----A---- C:\windows\system32\KBDBULG.DLL
2013-09-05 23:32:43 ----A---- C:\windows\system32\KBDBLR.DLL
2013-09-05 23:32:43 ----A---- C:\windows\system32\KBDBASH.DLL
2013-09-05 23:32:42 ----A---- C:\windows\SYSWOW64\spwizres.dll
2013-09-05 23:32:42 ----A---- C:\windows\SYSWOW64\pifmgr.dll
2013-09-05 23:32:42 ----A---- C:\windows\system32\spwizres.dll
2013-09-05 23:32:42 ----A---- C:\windows\system32\pifmgr.dll
2013-09-05 23:32:42 ----A---- C:\windows\system32\BlbEvents.dll
2013-09-05 23:32:08 ----A---- C:\windows\SYSWOW64\wdscore.dll
2013-09-05 23:32:08 ----A---- C:\windows\SYSWOW64\sqmapi.dll
2013-09-05 23:32:08 ----A---- C:\windows\SYSWOW64\PkgMgr.exe
2013-09-05 23:32:05 ----A---- C:\windows\SYSWOW64\drvstore.dll
2013-09-05 23:32:05 ----A---- C:\windows\SYSWOW64\dpx.dll
2013-09-05 23:32:04 ----A---- C:\windows\SYSWOW64\wbemcomn.dll
2013-09-05 23:30:56 ----A---- C:\windows\system32\wmicmiplugin.dll
2013-09-05 23:30:56 ----A---- C:\windows\system32\wbemcomn.dll
2013-09-05 23:30:53 ----A---- C:\windows\system32\sqmapi.dll
2013-09-05 23:30:53 ----A---- C:\windows\system32\SmiEngine.dll
2013-09-05 23:30:51 ----A---- C:\windows\system32\PkgMgr.exe
2013-09-05 23:30:39 ----A---- C:\windows\system32\drvstore.dll
2013-09-05 23:30:39 ----A---- C:\windows\system32\dpx.dll
2013-09-05 23:09:14 ----A---- C:\windows\SYSWOW64\apisetschema.dll
2013-09-05 23:09:14 ----A---- C:\windows\system32\smss.exe
2013-09-05 23:09:14 ----A---- C:\windows\system32\csrsrv.dll
2013-09-05 23:08:33 ----A---- C:\windows\system32\drivers\ntfs.sys
2013-09-05 23:08:17 ----A---- C:\windows\system32\drivers\fvevol.sys
2013-09-05 21:48:09 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-09-05 20:18:49 ----D---- C:\Users\Ondra\AppData\Roaming\Malwarebytes
2013-09-05 20:18:40 ----D---- C:\ProgramData\Malwarebytes
2013-09-05 19:25:25 ----D---- C:\Program Files\CCleaner
2013-09-05 19:22:31 ----A---- C:\windows\system32\drivers\athrx.sys
2013-08-14 10:32:19 ----D---- C:\Users\Ondra\AppData\Roaming\Atheros

======List of files/folders modified in the last 1 months======

2013-09-10 18:32:08 ----D---- C:\windows\Prefetch
2013-09-10 18:21:11 ----A---- C:\windows\SYSWOW64\log.txt
2013-09-10 18:19:44 ----D---- C:\windows\system32\config
2013-09-10 18:19:43 ----D---- C:\ProgramData\PDFC
2013-09-10 18:19:32 ----D---- C:\windows\inf
2013-09-10 18:16:46 ----D---- C:\Windows
2013-09-10 17:41:02 ----SHD---- C:\System Volume Information
2013-09-10 15:47:28 ----RD---- C:\Program Files
2013-09-10 15:41:33 ----SHD---- C:\windows\Installer
2013-09-09 22:36:50 ----D---- C:\windows\system32\drivers
2013-09-09 15:59:26 ----D---- C:\Program Files (x86)\Common Files
2013-09-09 15:59:06 ----D---- C:\Program Files (x86)
2013-09-09 15:51:31 ----D---- C:\windows\system32\catroot2
2013-09-08 17:28:12 ----D---- C:\windows\Microsoft.NET
2013-09-08 17:27:47 ----D---- C:\windows\winsxs
2013-09-08 17:15:26 ----D---- C:\ProgramData
2013-09-08 17:12:53 ----RSD---- C:\windows\assembly
2013-09-08 17:10:56 ----D---- C:\Program Files\Common Files\Autodesk Shared
2013-09-08 17:09:49 ----D---- C:\windows\SysWOW64
2013-09-08 17:09:22 ----D---- C:\ProgramData\Autodesk
2013-09-08 17:08:55 ----RSD---- C:\windows\Fonts
2013-09-08 17:08:29 ----D---- C:\Program Files\Common Files
2013-09-08 17:00:11 ----D---- C:\windows\System32
2013-09-08 16:38:03 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-09-08 16:38:03 ----D---- C:\Program Files (x86)\Activision
2013-09-08 15:56:01 ----A---- C:\windows\system.ini
2013-09-08 15:55:49 ----D---- C:\windows\system32\drivers\etc
2013-09-08 15:50:58 ----D---- C:\windows\Tasks
2013-09-08 15:47:46 ----D---- C:\windows\SYSWOW64\drivers
2013-09-08 15:47:46 ----D---- C:\windows\AppPatch
2013-09-07 23:48:20 ----D---- C:\windows\Downloaded Program Files
2013-09-06 15:09:02 ----D---- C:\windows\rescache
2013-09-06 11:29:15 ----D---- C:\windows\debug
2013-09-06 11:14:17 ----D---- C:\windows\system32\Tasks
2013-09-06 11:13:51 ----D---- C:\windows\system32\DriverStore
2013-09-06 11:13:51 ----D---- C:\windows\system32\catroot
2013-09-06 10:56:49 ----D---- C:\windows\SYSWOW64\wbem
2013-09-06 10:56:49 ----D---- C:\windows\SYSWOW64\en-US
2013-09-06 10:56:49 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-09-06 10:56:49 ----D---- C:\windows\system32\wbem
2013-09-06 10:56:49 ----D---- C:\windows\system32\en-US
2013-09-06 10:56:49 ----D---- C:\windows\system32\drivers\en-US
2013-09-06 10:56:49 ----D---- C:\windows\system32\cs-CZ
2013-09-06 10:56:49 ----D---- C:\windows\PolicyDefinitions
2013-09-06 10:34:44 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2013-09-06 10:34:35 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-09-06 09:32:09 ----D---- C:\windows\SYSWOW64\migration
2013-09-06 09:32:09 ----D---- C:\windows\system32\migration
2013-09-06 09:32:09 ----D---- C:\Program Files\Windows Defender
2013-09-06 09:32:09 ----D---- C:\Program Files (x86)\Windows Defender
2013-09-06 09:32:08 ----D---- C:\Program Files\Windows Journal
2013-09-06 09:32:08 ----D---- C:\Program Files (x86)\Internet Explorer
2013-09-06 09:32:07 ----D---- C:\Program Files\Internet Explorer
2013-09-06 07:05:55 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-09-06 07:05:55 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-09-06 07:05:55 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-09-06 07:05:55 ----D---- C:\Program Files (x86)\Windows Media Player
2013-09-06 07:05:55 ----D---- C:\Program Files (x86)\Windows Mail
2013-09-06 07:05:54 ----D---- C:\Program Files\Windows Sidebar
2013-09-06 07:05:54 ----D---- C:\Program Files\Windows Portable Devices
2013-09-06 07:05:54 ----D---- C:\Program Files\Windows Photo Viewer
2013-09-06 07:05:54 ----D---- C:\Program Files\Windows Media Player
2013-09-06 07:05:54 ----D---- C:\Program Files\Windows Mail
2013-09-06 07:05:54 ----D---- C:\Program Files\DVD Maker
2013-09-06 07:05:54 ----D---- C:\Program Files\Common Files\System
2013-09-06 07:05:52 ----D---- C:\windows\servicing
2013-09-06 07:05:51 ----D---- C:\windows\ehome
2013-09-06 07:05:50 ----D---- C:\windows\SYSWOW64\oobe
2013-09-06 07:05:50 ----D---- C:\windows\SYSWOW64\da-DK
2013-09-06 07:05:49 ----D---- C:\windows\SYSWOW64\sppui
2013-09-06 07:05:49 ----D---- C:\windows\SYSWOW64\Setup
2013-09-06 07:05:49 ----D---- C:\windows\SYSWOW64\migwiz
2013-09-06 07:05:49 ----D---- C:\windows\SYSWOW64\manifeststore
2013-09-06 07:05:49 ----D---- C:\windows\SYSWOW64\es-ES
2013-09-06 07:05:49 ----D---- C:\windows\SYSWOW64\Dism
2013-09-06 07:05:49 ----D---- C:\windows\SYSWOW64\cs
2013-09-06 07:05:49 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-09-06 07:05:41 ----D---- C:\windows\system32\Setup
2013-09-06 07:05:41 ----D---- C:\windows\system32\oobe
2013-09-06 07:05:41 ----D---- C:\windows\system32\da-DK
2013-09-06 07:05:41 ----D---- C:\windows\system32\cs
2013-09-06 07:05:41 ----D---- C:\windows\system32\AdvancedInstallers
2013-09-06 07:05:40 ----D---- C:\windows\system32\sppui
2013-09-06 07:05:40 ----D---- C:\windows\system32\migwiz
2013-09-06 07:05:40 ----D---- C:\windows\system32\manifeststore
2013-09-06 07:05:40 ----D---- C:\windows\system32\es-ES
2013-09-06 07:05:40 ----D---- C:\windows\system32\drivers\cs-CZ
2013-09-06 07:05:40 ----D---- C:\windows\system32\Dism
2013-09-06 07:05:24 ----D---- C:\windows\system32\Boot
2013-09-06 07:02:35 ----A---- C:\windows\SYSWOW64\msclmd.dll
2013-09-06 07:02:35 ----A---- C:\windows\system32\msclmd.dll
2013-09-06 06:55:13 ----D---- C:\Program Files\Microsoft Silverlight
2013-09-06 06:55:12 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-09-05 23:50:56 ----D---- C:\ProgramData\Microsoft Help
2013-09-05 23:50:22 ----D---- C:\Program Files (x86)\Microsoft Office
2013-09-05 19:28:38 ----D---- C:\Users\Ondra\AppData\Roaming\DAEMON Tools Lite
2013-09-05 19:28:23 ----D---- C:\windows\Panther
2013-09-05 19:28:23 ----D---- C:\windows\Logs
2013-09-05 19:21:54 ----D---- C:\ProgramData\Hewlett-Packard
2013-09-05 19:21:54 ----D---- C:\Program Files\Hewlett-Packard
2013-09-05 19:14:47 ----D---- C:\Program Files (x86)\Hewlett-Packard
2013-09-05 19:14:34 ----D---- C:\windows\SYSWOW64\pt-BR
2013-09-05 19:14:34 ----D---- C:\windows\system32\pt-BR
2013-09-05 19:14:23 ----D---- C:\ProgramData\DigitalPersona
2013-09-05 19:12:44 ----D---- C:\Program Files (x86)\Intel
2013-09-05 18:29:05 ----D---- C:\swsetup
2013-09-05 18:18:53 ----D---- C:\Users\Ondra\AppData\Roaming\hpqLog
2013-09-05 18:16:44 ----AD---- C:\ProgramData\TEMP
2013-09-05 18:11:36 ----D---- C:\ProgramData\Atheros
2013-09-05 18:04:03 ----AD---- C:\SYSTEM.SAV
2013-09-05 17:54:22 ----D---- C:\windows\system32\zh-TW
2013-09-05 17:54:22 ----D---- C:\windows\system32\zh-CN
2013-09-05 17:54:22 ----D---- C:\windows\system32\tr-TR
2013-09-05 17:54:22 ----D---- C:\windows\system32\sv-SE
2013-09-05 17:54:22 ----D---- C:\windows\system32\ru-RU
2013-09-05 17:54:22 ----D---- C:\windows\system32\pt-PT
2013-09-05 17:54:22 ----D---- C:\windows\system32\pl-PL
2013-09-05 17:54:22 ----D---- C:\windows\system32\nl-NL
2013-09-05 17:54:22 ----D---- C:\windows\system32\ko-KR
2013-09-05 17:54:22 ----D---- C:\windows\system32\ja-JP
2013-09-05 17:54:22 ----D---- C:\windows\system32\it-IT
2013-09-05 17:54:22 ----D---- C:\windows\system32\hu-HU
2013-09-05 17:54:22 ----D---- C:\windows\system32\fr-FR
2013-09-05 17:54:22 ----D---- C:\windows\system32\fi-FI
2013-09-05 17:54:22 ----D---- C:\windows\system32\el-GR
2013-09-05 17:54:22 ----D---- C:\windows\system32\de-DE
2013-09-05 17:39:10 ----SD---- C:\ProgramData\Microsoft
2013-09-04 21:15:07 ----D---- C:\windows\system32\NDF
2013-09-01 10:28:57 ----A---- C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\windows\system32\drivers\aswVmm.sys [2013-07-01 189936]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-13 439320]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswRdr;aswRdr; C:\windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2013-07-01 1030952]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2013-07-01 378944]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\windows\System32\DRIVERS\cmderd.sys [2013-06-18 23168]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\windows\system32\DRIVERS\cmdguard.sys [2013-07-08 708632]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\windows\System32\DRIVERS\cmdhlp.sys [2013-06-18 48360]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\windows\system32\DRIVERS\dtsoftbus01.sys [2011-12-29 279616]
R1 inspect;COMODO Internet Security Firewall Driver; C:\windows\system32\DRIVERS\inspect.sys [2013-06-18 96800]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 43320]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-28 9319424]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-28 303616]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2010-11-11 32192]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class; C:\windows\system32\DRIVERS\btath_flt.sys [2012-08-19 88728]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2013-05-23 3948544]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\windows\system32\drivers\btath_a2dp.sys [2012-08-19 344216]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service; C:\windows\system32\drivers\btath_avdt.sys [2012-08-19 114840]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus; C:\windows\system32\DRIVERS\btath_bus.sys [2012-08-19 33944]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\windows\system32\DRIVERS\btath_hcrp.sys [2012-08-19 178840]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\windows\system32\DRIVERS\btath_lwflt.sys [2012-08-19 77464]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\windows\system32\DRIVERS\btath_rcp.sys [2012-08-19 135832]
R3 BtFilter;BtFilter; C:\windows\system32\DRIVERS\btfilter.sys [2012-08-19 567808]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-12-03 25912]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-27 12273408]
R3 JMCR;JMCR; C:\windows\system32\DRIVERS\jmcr.sys [2011-01-31 174168]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2013-08-04 708200]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2011-02-12 2612728]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\windows\system32\DRIVERS\stwrt64.sys [2013-08-04 543744]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-08-04 468720]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 ALSysIO;ALSysIO; \??\C:\Users\Ondra\AppData\Local\Temp\ALSysIO64.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\windows\system32\DRIVERS\ewusbnet.sys [2009-07-23 132608]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\windows\system32\DRIVERS\ewusbmdm.sys [2009-07-23 116992]
S3 hwusbfake;Huawei DataCard USB Fake; C:\windows\system32\DRIVERS\ewusbfake.sys [2009-07-23 113792]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2013-08-04 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-28 203264]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-08-19 211584]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2013-07-08 6199520]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-01-27 131128]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [2011-01-29 281656]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2011-05-13 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-26 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-01-17 326168]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-01-18 113264]
R2 PnkBstrA;PnkBstrA; C:\windows\syswow64\PnkBstrA.exe [2011-12-29 66872]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2013-08-04 323072]
R2 uArcCapture;ArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [2010-11-11 502464]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-01-17 2656280]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2011-01-22 3154224]
R2 VMCService;Vodafone Mobile Connect Service; C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [2009-09-18 9216]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 DraftSight API Service;DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [2013-06-28 123392]
S3 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2013-06-18 158936]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2013-04-05 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Conduit, PriceGong - 4xlog

#39 Příspěvek od Márty84 »

:arrow: Bud ten autodesk nainstalujete znovu a pak korektne odinstalujete treba pomoci CCleaneru, nebo ho proste smazte.

:arrow: Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#40 Příspěvek od vitkova_vitek »

Autodesk už jsme celý odebrali, už nic nevidím. Deinstalace se spustí, ale skončí chybou. Odebrání aplikace ze seznamu v Ccleaneru také končí chybou, že msi instalátor nelze odebrat. Revo uninstaler i správce programů ve win tuto aplikaci nevidí, tak to nebude nějaký velký problém. Fyzicky na HDD už také není.
Tady je log:

----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x64)
Date : 2013/09/10 21:31:20

-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- SAMSUNG HM641JI
- hp CDDVDW SN-208BB

-- Disk List ---------------------------------------------------------------
(1) SAMSUNG HM641JI : 640,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) SAMSUNG HM641JI
----------------------------------------------------------------------------
Model : SAMSUNG HM641JI
Firmware : 2AJ10003
Serial Number : S25YJ9BB905690
Disk Size : 640,1 GB (8,4/137,4/640,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1250263728
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/300
Power On Hours : 2599 hod.
Power On Count : 923 krát
Temparature : 30 C (86 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [OFF]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _51 000000000001 Počet chyb čtení
02 252 252 __0 000000000000 Průchodnost disku
03 _89 _88 _25 000000000D4D Čas na roztočení ploten
04 100 100 __0 00000000039C Počet spuštění/zastavení
05 252 252 _10 000000000000 Počet přemapovaných sektorů
07 252 252 _51 000000000000 Počet chybných hledání
08 252 252 _15 000000000000 Čas potřebný na vyhledání
09 100 100 __0 000000000A27 Hodin v činnosti
0A 252 252 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000001 Počet pokusů o překalibrování
0C 100 100 __0 00000000039B Počet cyklů zapnutí zařízení
B7 252 252 _10 000000000000 Neznámý
B8 252 252 _48 000000000000 Ukončovacích chyb
BA 252 252 __0 000000000000 Neznámý
BB 252 252 __0 000000000000 Ohlášeno neopravitelných chyb
BC 252 252 __0 000000000000 Časový limit příkazu
BE _70 _59 _40 002B0009001E Teplota toku vzduchu
BF 100 100 __0 000000001A91 Počet udalostí zaznamenaných otřesovým senzorem
C0 252 252 __0 000000000000 Počet vypnutí disku
C1 100 100 __0 0000000024AE Počet cyklů načítání/vymazání
C2 _64 _59 __0 002B0009001E Teplota
C3 100 100 __0 000000000000 Počet oprav chybného čtení
C4 252 252 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 252 252 __0 000000000000 Počet podezřelých sektorů
C6 252 252 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 100 __0 000000000017 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 5332 3559 4A39 4242 3930 3930 3930 2020 2020 2020
020: 0000 4000 0004 3241 4A31 3033 3033 5341 4D53 554E
030: 4720 484D 3634 314A 4920 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0D06 0D06 0000 004C 004C
080: 01FF 0028 706B 7C09 6123 BC01 BC01 6123 407F 004E
090: 004E 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 82B0 4A85 0000 0000 0000 4000 4000 0000 5002 4E92
110: 0603 2F3C 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 003D 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 4CA5

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#41 Příspěvek od vitkova_vitek »

Ještě jedno zjištění, start až do loginu je rychlý (normální), dlouho trvá až naběhnutí systému po loginu, respektive spuštění všeho, co se po startu spouští a začátek normální reakce systému na podněty.
Pokud nechám okno loginu cca 5 minut a teprve potom se přihlásím, systém nabíhá okamžitě a také okamžitě normálně reaguje. Zjistil jsem to dnes ráno, když jsem spustil ntb a šel jsem dceru vypravit do školy.
Zatím díky za další rady a hezký den.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Conduit, PriceGong - 4xlog

#42 Příspěvek od Márty84 »

To s tim pc hrajete vybijenou? :arcisit:
BF 100 100 __0 000000001A91 Počet udalostí zaznamenaných otřesovým senzorem
C8 100 100 __0 000000000017 Počet chyb při zápisu sektorů
I to muze byt pricina problemu.
Vypnete vse, co nepotrebujete, aby bezelo hned po startu.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

vitkova_vitek
Návštěvník
Návštěvník
Příspěvky: 45
Registrován: 30 srp 2013 08:49

Re: Conduit, PriceGong - 4xlog

#43 Příspěvek od vitkova_vitek »

:lol:
Ne žádný sporty, cestoval v zapnutém stavu po D1.
Teď vážně, nevím, co s ním kdo dělal. Není můj.
Právě, že po startu se moc věcí nespouští. Navíc, jak koukám je snad jen winrar.
Já to začínám vidět na konec záchrany tohoto systému a reinstall.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Conduit, PriceGong - 4xlog

#44 Příspěvek od Márty84 »

No jelikoz logy nic moc neukazuji, byla by to asi nejrychlejsi cesta. Akorat neni zarucene, ze to pomuze :)


3.11. pro neaktivitu :lock: http://forum.viry.cz/viewtopic.php?f=12&t=123975
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno