Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosím o kotrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
petr-fiser
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 24 zář 2013 21:00

prosím o kotrolu logu

#1 Příspěvek od petr-fiser »

ahoj mužu poprosit o kontrolu logu jestli je vše v pořadku?

Logfile of random's system information tool 1.09 (written by random/random)
Run by Petr at 2013-09-24 22:04:03
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 766 GB (80%) free of 954 GB
Total RAM: 3319 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:04:05, on 24.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\RunDll32.exe
C:\PROGRA~1\AD-AWA~1\AdAware.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\SlimDrivers\SlimDrivers.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Petr\Downloads\RSIT.exe
C:\Program Files\trend micro\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch2.lavasoft.com/inde ... 5241031E34
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: PasswordBox Helper - {5DB69B97-934B-451D-94DB-32EF802A01CD} - C:\Program Files\PasswordBox\Application\pbbtn.dll
O2 - BHO: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll
O3 - Toolbar: PasswordBox Toolbar - {25E2E5C9-C43C-4EE8-B23E-4383915F2BCE} - C:\Program Files\PasswordBox\Application\pbbtn.dll
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
O4 - HKLM\..\Run: [Ad-Aware Antivirus] "C:\Program Files\Ad-Aware Antivirus\AdAwareLauncher" --windows-run
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1205113997-3902337868-2779247484-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1205113997-3902337868-2779247484-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Sledovat výstrahy inkoustu - HP Officejet 6700.lnk = ?
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files\Ad-Aware Antivirus\AdAwareService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PasswordBox - PasswordBox, Inc. - C:\Program Files\PasswordBox\pbbtnService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files\Ad-Aware Antivirus\SBAMSvc.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--
End of file - 8741 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\SlimDrivers Startup.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5DB69B97-934B-451D-94DB-32EF802A01CD}]
PasswordBox Helper - C:\Program Files\PasswordBox\Application\pbbtn.dll [2013-09-23 128008]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]
Ad-Aware Security Add-on - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll [2013-08-09 91536]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2011-01-20 988480]
{6c97a91e-4524-4019-86af-2aa2d567bf5c} - Ad-Aware Security Add-on - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll [2013-08-09 91536]
{25E2E5C9-C43C-4EE8-B23E-4383915F2BCE} - PasswordBox Toolbar - C:\Program Files\PasswordBox\Application\pbbtn.dll [2013-09-23 128008]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2011-03-24 49208]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-08 2221352]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2013-03-21 5078504]
"Ad-Aware Browsing Protection"=C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [2013-07-15 554384]
"Ad-Aware Antivirus"=C:\Program Files\Ad-Aware Antivirus\AdAwareLauncher --windows-run []
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-01-26 2144088]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NtVdmSrv]
C:\Windows\inf\ntvdm.vbe []

C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Sledovat výstrahy inkoustu - HP Officejet 6700.lnk - C:\Windows\system32\RunDll32.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MSIServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SBAMSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-09-24 21:45:48 ----D---- C:\rsit
2013-09-24 21:45:48 ----D---- C:\Program Files\trend micro
2013-09-24 17:59:03 ----D---- C:\Users\Petr\AppData\Roaming\Malwarebytes
2013-09-24 17:58:37 ----D---- C:\ProgramData\Malwarebytes
2013-09-24 17:58:36 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-09-24 17:58:36 ----A---- C:\Windows\system32\drivers\mbam.sys
2013-09-24 16:59:25 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-24 16:59:25 ----D---- C:\Program Files\Spybot - Search & Destroy
2013-09-24 16:36:51 ----A---- C:\Windows\system32\msonpmon.dll
2013-09-24 16:36:06 ----D---- C:\Program Files\Microsoft Works
2013-09-24 16:35:47 ----D---- C:\Program Files\Microsoft Visual Studio
2013-09-24 16:35:46 ----D---- C:\Program Files\Common Files\DESIGNER
2013-09-24 05:18:32 ----D---- C:\Program Files\PasswordBox
2013-09-24 05:17:17 ----D---- C:\Users\Petr\AppData\Roaming\LavasoftStatistics
2013-09-24 05:17:17 ----D---- C:\ProgramData\Ad-Aware Antivirus
2013-09-24 05:12:56 ----D---- C:\ProgramData\Lavasoft
2013-09-24 05:12:55 ----D---- C:\Program Files\Ad-Aware Antivirus
2013-09-24 05:12:49 ----D---- C:\ProgramData\Downloaded Installations
2013-09-24 05:12:48 ----D---- C:\ProgramData\Search Protection
2013-09-24 05:12:47 ----D---- C:\ProgramData\blekko toolbars
2013-09-24 05:12:46 ----D---- C:\ProgramData\Ad-Aware Browsing Protection
2013-09-24 05:12:42 ----D---- C:\Program Files\Toolbar Cleaner
2013-09-24 05:12:33 ----D---- C:\Program Files\Lavasoft
2013-09-24 05:11:32 ----D---- C:\Users\Petr\AppData\Roaming\Ad-Aware Antivirus
2013-09-24 05:11:32 ----A---- C:\Windows\system32\sbbd.exe
2013-09-24 05:11:32 ----A---- C:\Windows\system32\drivers\gfibto.sys
2013-09-24 03:27:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-24 03:27:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-24 03:27:45 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-09-24 03:27:45 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\wksprtPS.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\wksprt.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\tsgqec.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\rdpudd.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\mstsc.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\drivers\TsUsbGD.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\aaclient.dll
2013-09-24 03:27:43 ----A---- C:\Windows\system32\rdpcorets.dll
2013-09-24 03:27:43 ----A---- C:\Windows\system32\mstscax.dll
2013-09-24 03:27:05 ----D---- C:\Program Files\Microsoft Silverlight
2013-09-24 03:26:05 ----A---- C:\Windows\system32\qdvd.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\schannel.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\lsasrv.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-09-24 03:26:03 ----A---- C:\Windows\system32\drivers\cng.sys
2013-09-24 03:16:36 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-09-24 00:16:44 ----D---- C:\ProgramData\ESET
2013-09-24 00:16:44 ----D---- C:\Program Files\ESET
2013-09-23 23:50:59 ----RASH---- C:\MSDOS.SYS
2013-09-23 23:50:59 ----RASH---- C:\IO.SYS
2013-09-23 23:32:02 ----D---- C:\Users\Petr\AppData\Roaming\Macromedia
2013-09-21 22:33:03 ----D---- C:\Windows\PCHEALTH
2013-09-21 22:31:52 ----D---- C:\Program Files\Microsoft Visual Studio 8
2013-09-21 22:31:18 ----D---- C:\ProgramData\Microsoft Help
2013-09-21 22:31:18 ----D---- C:\Program Files\Microsoft Office
2013-09-19 23:40:38 ----SHD---- C:\Config.Msi
2013-09-19 22:35:30 ----A---- C:\Windows\system32\libcef.dll
2013-09-19 22:34:00 ----D---- C:\ProgramData\Logs
2013-09-19 22:33:59 ----D---- C:\ProgramData\TEMP
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvoglv32.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvoglshim32.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:23:18 ----A---- C:\Windows\system32\nvinit.dll
2013-09-17 22:23:18 ----A---- C:\Windows\system32\NvIFR.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvhdap32.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvhdagenco3220103.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\NvFBC.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvdispgenco3232723.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvdispco3232723.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\drivers\nvhda32v.sys
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-13 03:03:32 ----A---- C:\Windows\system32\jscript.dll
2013-09-13 03:03:31 ----A---- C:\Windows\system32\jscript9.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\ieui.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\iesetup.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\urlmon.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-13 03:03:29 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\iernonce.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-13 03:03:28 ----A---- C:\Windows\system32\iertutil.dll
2013-09-13 03:03:27 ----A---- C:\Windows\system32\wininet.dll
2013-09-13 03:03:26 ----A---- C:\Windows\system32\ieframe.dll
2013-09-13 03:03:24 ----A---- C:\Windows\system32\mshtml.dll
2013-09-12 04:47:28 ----A---- C:\Windows\system32\shell32.dll
2013-09-12 04:47:27 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-12 04:47:25 ----A---- C:\Windows\system32\win32k.sys
2013-09-12 04:47:25 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\winsrv.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\kernel32.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\conhost.exe
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 01:17:50 ----A---- C:\Windows\system32\nvStreaming.exe
2013-09-05 16:06:32 ----D---- C:\Users\Petr\AppData\Roaming\Theta
2013-09-05 15:48:30 ----D---- C:\Hry
2013-08-28 14:55:41 ----D---- C:\ProgramData\Ubisoft
2013-08-25 20:21:21 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-08-25 20:21:18 ----D---- C:\Windows\system32\Macromed

======List of files/folders modified in the last 1 month======

2013-09-24 21:56:02 ----D---- C:\Windows\system32\config
2013-09-24 21:55:51 ----D---- C:\Windows\Temp
2013-09-24 21:48:14 ----D---- C:\Windows\System32
2013-09-24 21:46:00 ----D---- C:\Windows\Prefetch
2013-09-24 21:45:48 ----RD---- C:\Program Files
2013-09-24 21:41:11 ----D---- C:\Windows\system32\drivers
2013-09-24 21:10:47 ----D---- C:\Windows\inf
2013-09-24 21:10:47 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-24 21:06:36 ----D---- C:\ProgramData\NVIDIA
2013-09-24 21:06:27 ----D---- C:\Windows\SchCache
2013-09-24 20:39:08 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2013-09-24 20:09:17 ----D---- C:\Windows\Cursors
2013-09-24 17:58:37 ----HD---- C:\ProgramData
2013-09-24 17:09:09 ----D---- C:\Windows\winsxs
2013-09-24 16:52:09 ----D---- C:\Windows
2013-09-24 16:43:46 ----SHD---- C:\Windows\Installer
2013-09-24 16:42:53 ----RSD---- C:\Windows\assembly
2013-09-24 16:38:46 ----RSD---- C:\Windows\Fonts
2013-09-24 16:38:43 ----D---- C:\Program Files\Common Files\microsoft shared
2013-09-24 16:37:39 ----A---- C:\Windows\win.ini
2013-09-24 16:37:38 ----D---- C:\Program Files\Common Files\System
2013-09-24 16:35:57 ----D---- C:\Program Files\MSBuild
2013-09-24 16:35:46 ----D---- C:\Program Files\Common Files
2013-09-24 16:35:44 ----D---- C:\Windows\ShellNew
2013-09-24 16:35:22 ----D---- C:\Program Files\Microsoft.NET
2013-09-24 16:31:50 ----SHD---- C:\System Volume Information
2013-09-24 07:27:00 ----D---- C:\Windows\rescache
2013-09-24 06:58:17 ----D---- C:\Windows\Microsoft.NET
2013-09-24 06:08:14 ----D---- C:\Windows\Logs
2013-09-24 05:17:28 ----D---- C:\Windows\system32\Tasks
2013-09-24 03:33:24 ----D---- C:\Windows\system32\wbem
2013-09-24 03:33:24 ----D---- C:\Windows\system32\en-US
2013-09-24 03:33:24 ----D---- C:\Windows\system32\drivers\en-US
2013-09-24 03:33:24 ----D---- C:\Windows\system32\cs-CZ
2013-09-24 03:33:24 ----D---- C:\Windows\PolicyDefinitions
2013-09-24 03:33:23 ----D---- C:\Windows\system32\DriverStore
2013-09-24 03:32:22 ----D---- C:\Program Files\OpenOffice.org 3
2013-09-24 03:27:53 ----D---- C:\Windows\system32\catroot
2013-09-24 03:27:52 ----D---- C:\Windows\system32\catroot2
2013-09-24 03:27:31 ----SD---- C:\ProgramData\Microsoft
2013-09-24 03:17:05 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-24 03:13:30 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2013-09-24 02:15:16 ----D---- C:\Users\Petr\AppData\Roaming\Media Player Classic
2013-09-24 00:07:45 ----HD---- C:\Windows\system32\GroupPolicy
2013-09-23 23:41:45 ----RD---- C:\Program Files (x86)
2013-09-23 23:40:57 ----D---- C:\Users\Petr\AppData\Roaming\Zoner
2013-09-23 23:27:01 ----D---- C:\Users\Petr\AppData\Roaming\HpUpdate
2013-09-23 23:21:37 ----D---- C:\Windows\Tasks
2013-09-23 23:21:37 ----D---- C:\Windows\system32\wfp
2013-09-23 23:20:28 ----D---- C:\Windows\system32\drivers\UMDF
2013-09-23 23:20:28 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-23 23:20:21 ----D---- C:\Windows\security
2013-09-23 23:20:21 ----D---- C:\Windows\Help
2013-09-23 23:20:21 ----D---- C:\Windows\AppCompat
2013-09-23 23:19:31 ----D---- C:\Windows\registration
2013-09-23 23:19:09 ----D---- C:\Windows.old
2013-09-23 23:18:30 ----RHD---- C:\MSOCache
2013-09-19 23:39:46 ----D---- C:\Windows\system32\directx
2013-09-19 23:03:19 ----D---- C:\Windows\LiveKernelReports
2013-09-19 22:18:32 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-09-19 22:16:42 ----D---- C:\Games
2013-09-19 22:16:20 ----D---- C:\Program Files\Microsoft Games
2013-09-19 21:28:36 ----HD---- C:\Windows\msdownld.tmp
2013-09-19 20:31:13 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2013-09-19 01:10:03 ----HD---- C:\Program Files\InstallShield Installation Information
2013-09-19 00:42:35 ----D---- C:\Users\Petr\AppData\Roaming\NVIDIA
2013-09-17 22:23:26 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 22:23:24 ----A---- C:\Windows\system32\nvwgf2um.dll
2013-09-17 22:23:22 ----A---- C:\Windows\system32\nvumdshim.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvd3dum.dll
2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvapi.dll
2013-09-13 18:34:09 ----D---- C:\Windows\Panther
2013-09-13 18:33:55 ----D---- C:\Windows\debug
2013-09-13 03:17:45 ----D---- C:\Program Files\Internet Explorer
2013-09-13 03:02:40 ----D---- C:\Windows\system32\MRT
2013-09-13 03:01:14 ----A---- C:\Windows\system32\MRT.exe
2013-09-12 08:28:40 ----A---- C:\Windows\system32\nvsvc.dll
2013-09-12 08:28:40 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvshext.dll
2013-09-12 08:28:36 ----A---- C:\Windows\system32\nvmctray.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 gfibto;gfibto; C:\Windows\system32\drivers\gfibto.sys [2013-09-24 13560]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-07-07 218688]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2013-02-14 171680]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2013-01-10 122240]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2013-01-10 105760]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2000-01-01 3240400]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-09-17 161056]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2000-01-01 514152]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\D:\NTIOLib.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2013-09-24 13464]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ad-Aware Service;Ad-Aware Service; C:\Program Files\Ad-Aware Antivirus\AdAwareService.exe [2013-06-13 1236336]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2013-03-21 1341664]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-09-12 662816]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-09-17 1364256]
R2 PasswordBox;PasswordBox; C:\Program Files\PasswordBox\pbbtnService.exe [2013-09-23 67584]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 SBAMSvc;Ad-Aware; C:\Program Files\Ad-Aware Antivirus\SBAMSvc.exe [2012-09-20 3677000]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-12 414496]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-30 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-19 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-30 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-07-01 1343400]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119530
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kotrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

petr-fiser
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 24 zář 2013 21:00

Re: prosím o kotrolu logu

#3 Příspěvek od petr-fiser »

# AdwCleaner v3.005 - Report created 24/09/2013 at 23:27:22
# Updated 22/09/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Petr - PETR-PC
# Running from : C:\Users\Petr\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\blekko toolbars
Folder Deleted : C:\ProgramData\Search Protection
Folder Deleted : C:\Program Files\DAEMON Tools Toolbar
Folder Deleted : C:\Users\Petr\AppData\LocalLow\adawaretb

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\DTToolbar.ToolBandObj
Key Deleted : HKLM\SOFTWARE\Classes\DTToolbar.ToolBandObj.1
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB8}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{6C97A91E-4524-4019-86AF-2AA2D567BF5C}]
Key Deleted : HKCU\Software\AppDataLow\Software\adawaretb
Key Deleted : HKLM\Software\adawaretb
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\adawaretb
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\daemon tools toolbar

***** [ Browsers ] *****

zde je log

-\\ Internet Explorer v10.0.9200.16686


-\\ Google Chrome v29.0.1547.76

[ File : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [2608 octets] - [24/09/2013 23:26:32]
AdwCleaner[S0].txt - [2581 octets] - [24/09/2013 23:27:22]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2641 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119530
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kotrolu logu

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

petr-fiser
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 24 zář 2013 21:00

Re: prosím o kotrolu logu

#5 Příspěvek od petr-fiser »

Zdravím nebyl jsem tu posílam dalši RSIT

Logfile of random's system information tool 1.09 (written by random/random)
Run by Petr at 2013-09-26 19:28:36
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 694 GB (73%) free of 954 GB
Total RAM: 3319 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:28:38, on 26.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\RunDll32.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Petr\Desktop\RSIT.exe
C:\Program Files\trend micro\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch2.lavasoft.com/inde ... 5241031E34
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NtVdmSrv] C:\Windows\inf\ntvdm.vbe
O4 - HKLM\..\RunOnce: [InstallShieldSetup] C:\PROGRA~1\INSTAL~1\{9D15E~1\setup.exe -rebootC:\PROGRA~1\INSTAL~1\{9D15E~1\reboot.ini
O4 - HKLM\..\RunOnce: [InstallShieldSetup1] C:\PROGRA~1\INSTAL~1\{9D15E~1\setup.exe -rebootC:\PROGRA~1\INSTAL~1\{9D15E~1\reboot.ini
O4 - HKLM\..\RunOnce: [InstallShieldSetup2] C:\PROGRA~1\INSTAL~1\{9D15E~1\setup.exe -rebootC:\PROGRA~1\INSTAL~1\{9D15E~1\reboot.ini
O4 - HKLM\..\RunOnce: [InstallShieldSetup3] C:\PROGRA~1\INSTAL~1\{9D15E~1\setup.exe -rebootC:\PROGRA~1\INSTAL~1\{9D15E~1\reboot.ini
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1205113997-3902337868-2779247484-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1205113997-3902337868-2779247484-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Sledovat výstrahy inkoustu - HP Officejet 6700.lnk = ?
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--
End of file - 7760 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\SlimDrivers Startup.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2011-03-24 49208]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-08 2221352]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2013-03-21 5078504]
"Ad-Aware Browsing Protection"=C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [2013-07-15 554384]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"NtVdmSrv"=C:\Windows\inf\ntvdm.vbe []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"InstallShieldSetup"=C:\PROGRA~1\INSTAL~1\{9D15E~1\setup.exe [2013-09-26 393216]
"InstallShieldSetup1"=C:\PROGRA~1\INSTAL~1\{9D15E~1\setup.exe [2013-09-26 393216]
"InstallShieldSetup2"=C:\PROGRA~1\INSTAL~1\{9D15E~1\setup.exe [2013-09-26 393216]
"InstallShieldSetup3"=C:\PROGRA~1\INSTAL~1\{9D15E~1\setup.exe [2013-09-26 393216]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-01-26 2144088]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NtVdmSrv]
C:\Windows\inf\ntvdm.vbe []

C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Sledovat výstrahy inkoustu - HP Officejet 6700.lnk - C:\Windows\system32\RunDll32.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-09-26 00:04:44 ----A---- C:\Windows\system32\PnkBstrB.exe
2013-09-26 00:04:43 ----A---- C:\Windows\system32\PnkBstrA.exe
2013-09-26 00:04:34 ----D---- C:\Program Files\Ubisoft
2013-09-25 21:47:07 ----A---- C:\Windows\system32\ubiorbitapi_r2_loader.dll
2013-09-25 19:46:16 ----D---- C:\ProgramData\Orbit
2013-09-25 15:51:50 ----D---- C:\assassins 3
2013-09-24 23:26:29 ----D---- C:\AdwCleaner
2013-09-24 21:45:48 ----D---- C:\rsit
2013-09-24 21:45:48 ----D---- C:\Program Files\trend micro
2013-09-24 17:59:03 ----D---- C:\Users\Petr\AppData\Roaming\Malwarebytes
2013-09-24 17:58:37 ----D---- C:\ProgramData\Malwarebytes
2013-09-24 17:58:36 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-09-24 17:58:36 ----A---- C:\Windows\system32\drivers\mbam.sys
2013-09-24 16:59:25 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-24 16:59:25 ----D---- C:\Program Files\Spybot - Search & Destroy
2013-09-24 16:36:51 ----A---- C:\Windows\system32\msonpmon.dll
2013-09-24 16:36:06 ----D---- C:\Program Files\Microsoft Works
2013-09-24 16:35:47 ----D---- C:\Program Files\Microsoft Visual Studio
2013-09-24 16:35:46 ----D---- C:\Program Files\Common Files\DESIGNER
2013-09-24 05:17:17 ----D---- C:\Users\Petr\AppData\Roaming\LavasoftStatistics
2013-09-24 05:17:17 ----D---- C:\ProgramData\Ad-Aware Antivirus
2013-09-24 05:12:56 ----D---- C:\ProgramData\Lavasoft
2013-09-24 05:12:55 ----D---- C:\Program Files\Ad-Aware Antivirus
2013-09-24 05:12:49 ----D---- C:\ProgramData\Downloaded Installations
2013-09-24 05:12:46 ----D---- C:\ProgramData\Ad-Aware Browsing Protection
2013-09-24 05:12:42 ----D---- C:\Program Files\Toolbar Cleaner
2013-09-24 05:12:33 ----D---- C:\Program Files\Lavasoft
2013-09-24 05:11:32 ----D---- C:\Users\Petr\AppData\Roaming\Ad-Aware Antivirus
2013-09-24 05:11:32 ----A---- C:\Windows\system32\sbbd.exe
2013-09-24 05:11:32 ----A---- C:\Windows\system32\drivers\gfibto.sys
2013-09-24 03:27:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-24 03:27:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-24 03:27:45 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-09-24 03:27:45 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\wksprtPS.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\wksprt.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\tsgqec.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\rdpudd.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\mstsc.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\drivers\TsUsbGD.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\aaclient.dll
2013-09-24 03:27:43 ----A---- C:\Windows\system32\rdpcorets.dll
2013-09-24 03:27:43 ----A---- C:\Windows\system32\mstscax.dll
2013-09-24 03:27:05 ----D---- C:\Program Files\Microsoft Silverlight
2013-09-24 03:26:05 ----A---- C:\Windows\system32\qdvd.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\schannel.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\lsasrv.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-09-24 03:26:03 ----A---- C:\Windows\system32\drivers\cng.sys
2013-09-24 03:16:36 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-09-24 00:16:44 ----D---- C:\ProgramData\ESET
2013-09-24 00:16:44 ----D---- C:\Program Files\ESET
2013-09-23 23:50:59 ----RASH---- C:\MSDOS.SYS
2013-09-23 23:50:59 ----RASH---- C:\IO.SYS
2013-09-23 23:32:02 ----D---- C:\Users\Petr\AppData\Roaming\Macromedia
2013-09-21 22:33:03 ----D---- C:\Windows\PCHEALTH
2013-09-21 22:31:52 ----D---- C:\Program Files\Microsoft Visual Studio 8
2013-09-21 22:31:18 ----D---- C:\ProgramData\Microsoft Help
2013-09-21 22:31:18 ----D---- C:\Program Files\Microsoft Office
2013-09-19 23:40:38 ----SHD---- C:\Config.Msi
2013-09-19 22:35:30 ----A---- C:\Windows\system32\libcef.dll
2013-09-19 22:34:00 ----D---- C:\ProgramData\Logs
2013-09-19 22:33:59 ----D---- C:\ProgramData\TEMP
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvoglv32.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvoglshim32.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:23:18 ----A---- C:\Windows\system32\nvinit.dll
2013-09-17 22:23:18 ----A---- C:\Windows\system32\NvIFR.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvhdap32.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvhdagenco3220103.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\NvFBC.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvdispgenco3232723.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvdispco3232723.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\drivers\nvhda32v.sys
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-13 03:03:32 ----A---- C:\Windows\system32\jscript.dll
2013-09-13 03:03:31 ----A---- C:\Windows\system32\jscript9.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\ieui.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\iesetup.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\urlmon.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-13 03:03:29 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\iernonce.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-13 03:03:28 ----A---- C:\Windows\system32\iertutil.dll
2013-09-13 03:03:27 ----A---- C:\Windows\system32\wininet.dll
2013-09-13 03:03:26 ----A---- C:\Windows\system32\ieframe.dll
2013-09-13 03:03:24 ----A---- C:\Windows\system32\mshtml.dll
2013-09-12 04:47:28 ----A---- C:\Windows\system32\shell32.dll
2013-09-12 04:47:27 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-12 04:47:25 ----A---- C:\Windows\system32\win32k.sys
2013-09-12 04:47:25 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\winsrv.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\kernel32.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\conhost.exe
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 01:17:50 ----A---- C:\Windows\system32\nvStreaming.exe
2013-09-05 16:06:32 ----D---- C:\Users\Petr\AppData\Roaming\Theta
2013-09-05 15:48:30 ----D---- C:\Hry
2013-08-28 14:55:41 ----D---- C:\ProgramData\Ubisoft

======List of files/folders modified in the last 1 month======

2013-09-26 19:28:37 ----D---- C:\Windows\Temp
2013-09-26 19:25:37 ----D---- C:\Windows\system32\drivers
2013-09-26 12:19:29 ----D---- C:\Windows\Prefetch
2013-09-26 12:03:01 ----D---- C:\Windows\system32\config
2013-09-26 09:12:53 ----SHD---- C:\System Volume Information
2013-09-26 01:20:45 ----D---- C:\Windows\System32
2013-09-26 00:46:28 ----D---- C:\Windows\inf
2013-09-26 00:46:28 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-26 00:41:41 ----D---- C:\Windows
2013-09-26 00:41:41 ----D---- C:\ProgramData\NVIDIA
2013-09-26 00:39:06 ----SHD---- C:\Windows\Installer
2013-09-26 00:37:31 ----RD---- C:\Program Files
2013-09-26 00:28:57 ----D---- C:\Windows\Logs
2013-09-26 00:05:03 ----HD---- C:\Program Files\InstallShield Installation Information
2013-09-26 00:03:58 ----RSD---- C:\Windows\assembly
2013-09-25 23:43:45 ----D---- C:\Windows\system32\Tasks
2013-09-25 22:03:03 ----D---- C:\Windows\Tasks
2013-09-25 22:01:25 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-09-25 19:46:16 ----HD---- C:\ProgramData
2013-09-25 16:09:28 ----D---- C:\Windows\SoftwareDistribution
2013-09-25 16:09:22 ----D---- C:\Windows\system32\LogFiles
2013-09-25 16:09:09 ----D---- C:\Windows\winsxs
2013-09-25 15:53:41 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2013-09-24 21:06:27 ----D---- C:\Windows\SchCache
2013-09-24 20:39:08 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2013-09-24 20:09:17 ----D---- C:\Windows\Cursors
2013-09-24 16:38:46 ----RSD---- C:\Windows\Fonts
2013-09-24 16:38:43 ----D---- C:\Program Files\Common Files\microsoft shared
2013-09-24 16:37:39 ----A---- C:\Windows\win.ini
2013-09-24 16:37:38 ----D---- C:\Program Files\Common Files\System
2013-09-24 16:35:57 ----D---- C:\Program Files\MSBuild
2013-09-24 16:35:46 ----D---- C:\Program Files\Common Files
2013-09-24 16:35:44 ----D---- C:\Windows\ShellNew
2013-09-24 16:35:22 ----D---- C:\Program Files\Microsoft.NET
2013-09-24 07:27:00 ----D---- C:\Windows\rescache
2013-09-24 06:58:17 ----D---- C:\Windows\Microsoft.NET
2013-09-24 03:33:24 ----D---- C:\Windows\system32\wbem
2013-09-24 03:33:24 ----D---- C:\Windows\system32\en-US
2013-09-24 03:33:24 ----D---- C:\Windows\system32\drivers\en-US
2013-09-24 03:33:24 ----D---- C:\Windows\system32\cs-CZ
2013-09-24 03:33:24 ----D---- C:\Windows\PolicyDefinitions
2013-09-24 03:33:23 ----D---- C:\Windows\system32\DriverStore
2013-09-24 03:32:22 ----D---- C:\Program Files\OpenOffice.org 3
2013-09-24 03:27:53 ----D---- C:\Windows\system32\catroot
2013-09-24 03:27:52 ----D---- C:\Windows\system32\catroot2
2013-09-24 03:27:31 ----SD---- C:\ProgramData\Microsoft
2013-09-24 03:17:05 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-24 03:13:30 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2013-09-24 02:15:16 ----D---- C:\Users\Petr\AppData\Roaming\Media Player Classic
2013-09-24 00:07:45 ----HD---- C:\Windows\system32\GroupPolicy
2013-09-23 23:41:45 ----RD---- C:\Program Files (x86)
2013-09-23 23:40:57 ----D---- C:\Users\Petr\AppData\Roaming\Zoner
2013-09-23 23:27:01 ----D---- C:\Users\Petr\AppData\Roaming\HpUpdate
2013-09-23 23:21:37 ----D---- C:\Windows\system32\wfp
2013-09-23 23:20:28 ----D---- C:\Windows\system32\drivers\UMDF
2013-09-23 23:20:28 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-23 23:20:21 ----D---- C:\Windows\security
2013-09-23 23:20:21 ----D---- C:\Windows\Help
2013-09-23 23:20:21 ----D---- C:\Windows\AppCompat
2013-09-23 23:19:31 ----D---- C:\Windows\registration
2013-09-23 23:19:09 ----D---- C:\Windows.old
2013-09-23 23:18:30 ----RHD---- C:\MSOCache
2013-09-19 23:39:46 ----D---- C:\Windows\system32\directx
2013-09-19 23:03:19 ----D---- C:\Windows\LiveKernelReports
2013-09-19 22:16:42 ----D---- C:\Games
2013-09-19 22:16:20 ----D---- C:\Program Files\Microsoft Games
2013-09-19 21:28:36 ----HD---- C:\Windows\msdownld.tmp
2013-09-19 20:17:55 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-09-19 00:42:35 ----D---- C:\Users\Petr\AppData\Roaming\NVIDIA
2013-09-17 22:23:26 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 22:23:24 ----A---- C:\Windows\system32\nvwgf2um.dll
2013-09-17 22:23:22 ----A---- C:\Windows\system32\nvumdshim.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvd3dum.dll
2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvapi.dll
2013-09-13 18:34:09 ----D---- C:\Windows\Panther
2013-09-13 18:33:55 ----D---- C:\Windows\debug
2013-09-13 03:17:45 ----D---- C:\Program Files\Internet Explorer
2013-09-13 03:02:40 ----D---- C:\Windows\system32\MRT
2013-09-13 03:01:14 ----A---- C:\Windows\system32\MRT.exe
2013-09-12 08:28:40 ----A---- C:\Windows\system32\nvsvc.dll
2013-09-12 08:28:40 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvshext.dll
2013-09-12 08:28:36 ----A---- C:\Windows\system32\nvmctray.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 gfibto;gfibto; C:\Windows\system32\drivers\gfibto.sys [2013-09-24 13560]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-07-07 218688]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2013-02-14 171680]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2013-01-10 122240]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2013-01-10 105760]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2000-01-01 3240400]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-09-17 161056]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2000-01-01 514152]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\D:\NTIOLib.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2013-03-21 1341664]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-09-12 662816]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-09-17 1364256]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2013-09-26 75136]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-12 414496]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-30 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-19 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-30 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-07-01 1343400]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119530
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kotrolu logu

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\inf\ntvdm.vbe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NtVdmSrv"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NtVdmSrv]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

petr-fiser
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 24 zář 2013 21:00

Re: prosím o kotrolu logu

#7 Příspěvek od petr-fiser »

Ahoj zde přikladam další RSIT po resetu .
Jen malá otázka , to sloužilo k čemu :D ? Jo a na ploše se my oběvily 2 soubory desktop.ini zašedlé

Logfile of random's system information tool 1.09 (written by random/random)
Run by Petr at 2013-09-26 22:06:29
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 695 GB (73%) free of 954 GB
Total RAM: 3319 MB (67% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:06:52, on 26.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal

Running processes:
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\SlimDrivers\SlimDrivers.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\RunDll32.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Petr\Desktop\čištění PC\RSIT.exe
C:\Program Files\trend micro\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch2.lavasoft.com/inde ... 5241031E34
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Sledovat výstrahy inkoustu - HP Officejet 6700.lnk = ?
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--
End of file - 6859 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\SlimDrivers Startup.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2011-03-24 49208]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-08 2221352]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2013-03-21 5078504]
"Ad-Aware Browsing Protection"=C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [2013-07-15 554384]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-01-26 2144088]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]

C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Sledovat výstrahy inkoustu - HP Officejet 6700.lnk - C:\Windows\system32\RunDll32.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-09-26 22:03:38 ----D---- C:\_OTM
2013-09-26 00:04:44 ----A---- C:\Windows\system32\PnkBstrB.exe
2013-09-26 00:04:43 ----A---- C:\Windows\system32\PnkBstrA.exe
2013-09-26 00:04:34 ----D---- C:\Program Files\Ubisoft
2013-09-25 21:47:07 ----A---- C:\Windows\system32\ubiorbitapi_r2_loader.dll
2013-09-25 19:46:16 ----D---- C:\ProgramData\Orbit
2013-09-25 15:51:50 ----D---- C:\assassins 3
2013-09-24 23:26:29 ----D---- C:\AdwCleaner
2013-09-24 21:45:48 ----D---- C:\rsit
2013-09-24 21:45:48 ----D---- C:\Program Files\trend micro
2013-09-24 17:59:03 ----D---- C:\Users\Petr\AppData\Roaming\Malwarebytes
2013-09-24 17:58:37 ----D---- C:\ProgramData\Malwarebytes
2013-09-24 17:58:36 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-09-24 17:58:36 ----A---- C:\Windows\system32\drivers\mbam.sys
2013-09-24 16:59:25 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-24 16:59:25 ----D---- C:\Program Files\Spybot - Search & Destroy
2013-09-24 16:36:51 ----A---- C:\Windows\system32\msonpmon.dll
2013-09-24 16:36:06 ----D---- C:\Program Files\Microsoft Works
2013-09-24 16:35:47 ----D---- C:\Program Files\Microsoft Visual Studio
2013-09-24 16:35:46 ----D---- C:\Program Files\Common Files\DESIGNER
2013-09-24 05:17:17 ----D---- C:\Users\Petr\AppData\Roaming\LavasoftStatistics
2013-09-24 05:17:17 ----D---- C:\ProgramData\Ad-Aware Antivirus
2013-09-24 05:12:56 ----D---- C:\ProgramData\Lavasoft
2013-09-24 05:12:55 ----D---- C:\Program Files\Ad-Aware Antivirus
2013-09-24 05:12:49 ----D---- C:\ProgramData\Downloaded Installations
2013-09-24 05:12:46 ----D---- C:\ProgramData\Ad-Aware Browsing Protection
2013-09-24 05:12:42 ----D---- C:\Program Files\Toolbar Cleaner
2013-09-24 05:12:33 ----D---- C:\Program Files\Lavasoft
2013-09-24 05:11:32 ----D---- C:\Users\Petr\AppData\Roaming\Ad-Aware Antivirus
2013-09-24 05:11:32 ----A---- C:\Windows\system32\sbbd.exe
2013-09-24 05:11:32 ----A---- C:\Windows\system32\drivers\gfibto.sys
2013-09-24 03:27:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-24 03:27:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-24 03:27:45 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-09-24 03:27:45 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\wksprtPS.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\wksprt.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\tsgqec.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\rdpudd.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\mstsc.exe
2013-09-24 03:27:44 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-09-24 03:27:44 ----A---- C:\Windows\system32\drivers\TsUsbGD.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-24 03:27:44 ----A---- C:\Windows\system32\aaclient.dll
2013-09-24 03:27:43 ----A---- C:\Windows\system32\rdpcorets.dll
2013-09-24 03:27:43 ----A---- C:\Windows\system32\mstscax.dll
2013-09-24 03:27:05 ----D---- C:\Program Files\Microsoft Silverlight
2013-09-24 03:26:05 ----A---- C:\Windows\system32\qdvd.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\schannel.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\lsasrv.dll
2013-09-24 03:26:03 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-09-24 03:26:03 ----A---- C:\Windows\system32\drivers\cng.sys
2013-09-24 03:16:36 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-09-24 03:05:35 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-09-24 00:16:44 ----D---- C:\ProgramData\ESET
2013-09-24 00:16:44 ----D---- C:\Program Files\ESET
2013-09-23 23:50:59 ----RASH---- C:\MSDOS.SYS
2013-09-23 23:50:59 ----RASH---- C:\IO.SYS
2013-09-23 23:32:02 ----D---- C:\Users\Petr\AppData\Roaming\Macromedia
2013-09-21 22:33:03 ----D---- C:\Windows\PCHEALTH
2013-09-21 22:31:52 ----D---- C:\Program Files\Microsoft Visual Studio 8
2013-09-21 22:31:18 ----D---- C:\ProgramData\Microsoft Help
2013-09-21 22:31:18 ----D---- C:\Program Files\Microsoft Office
2013-09-19 23:40:38 ----SHD---- C:\Config.Msi
2013-09-19 22:35:30 ----A---- C:\Windows\system32\libcef.dll
2013-09-19 22:34:00 ----D---- C:\ProgramData\Logs
2013-09-19 22:33:59 ----D---- C:\ProgramData\TEMP
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvoglv32.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvoglshim32.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:23:18 ----A---- C:\Windows\system32\nvinit.dll
2013-09-17 22:23:18 ----A---- C:\Windows\system32\NvIFR.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvhdap32.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvhdagenco3220103.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\NvFBC.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvdispgenco3232723.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvdispco3232723.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\drivers\nvhda32v.sys
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-17 22:23:14 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-13 03:03:32 ----A---- C:\Windows\system32\jscript.dll
2013-09-13 03:03:31 ----A---- C:\Windows\system32\jscript9.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\ieui.dll
2013-09-13 03:03:30 ----A---- C:\Windows\system32\iesetup.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\urlmon.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-13 03:03:29 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\iernonce.dll
2013-09-13 03:03:29 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-13 03:03:28 ----A---- C:\Windows\system32\iertutil.dll
2013-09-13 03:03:27 ----A---- C:\Windows\system32\wininet.dll
2013-09-13 03:03:26 ----A---- C:\Windows\system32\ieframe.dll
2013-09-13 03:03:24 ----A---- C:\Windows\system32\mshtml.dll
2013-09-12 04:47:28 ----A---- C:\Windows\system32\shell32.dll
2013-09-12 04:47:27 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-12 04:47:25 ----A---- C:\Windows\system32\win32k.sys
2013-09-12 04:47:25 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 04:47:24 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\winsrv.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\kernel32.dll
2013-09-12 04:47:24 ----A---- C:\Windows\system32\conhost.exe
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 04:47:23 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 01:17:50 ----A---- C:\Windows\system32\nvStreaming.exe
2013-09-05 16:06:32 ----D---- C:\Users\Petr\AppData\Roaming\Theta
2013-09-05 15:48:30 ----D---- C:\Hry
2013-08-28 14:55:41 ----D---- C:\ProgramData\Ubisoft

======List of files/folders modified in the last 1 month======

2013-09-26 22:06:27 ----D---- C:\Windows\Prefetch
2013-09-26 22:04:57 ----D---- C:\Windows\system32\drivers
2013-09-26 22:04:55 ----D---- C:\Windows\Temp
2013-09-26 22:04:51 ----D---- C:\Windows\system32\config
2013-09-26 22:04:37 ----D---- C:\ProgramData\NVIDIA
2013-09-26 22:03:43 ----D---- C:\Windows
2013-09-26 22:03:39 ----D---- C:\Windows\Tasks
2013-09-26 21:57:06 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2013-09-26 20:06:23 ----D---- C:\Windows\System32
2013-09-26 20:06:23 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-26 20:06:22 ----D---- C:\Windows\inf
2013-09-26 09:12:53 ----SHD---- C:\System Volume Information
2013-09-26 00:39:06 ----SHD---- C:\Windows\Installer
2013-09-26 00:37:31 ----RD---- C:\Program Files
2013-09-26 00:28:57 ----D---- C:\Windows\Logs
2013-09-26 00:05:03 ----HD---- C:\Program Files\InstallShield Installation Information
2013-09-26 00:03:58 ----RSD---- C:\Windows\assembly
2013-09-25 23:43:45 ----D---- C:\Windows\system32\Tasks
2013-09-25 22:01:25 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-09-25 19:46:16 ----HD---- C:\ProgramData
2013-09-25 16:09:28 ----D---- C:\Windows\SoftwareDistribution
2013-09-25 16:09:22 ----D---- C:\Windows\system32\LogFiles
2013-09-25 16:09:09 ----D---- C:\Windows\winsxs
2013-09-25 15:53:41 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2013-09-24 21:06:27 ----D---- C:\Windows\SchCache
2013-09-24 20:09:17 ----D---- C:\Windows\Cursors
2013-09-24 16:38:46 ----RSD---- C:\Windows\Fonts
2013-09-24 16:38:43 ----D---- C:\Program Files\Common Files\microsoft shared
2013-09-24 16:37:39 ----A---- C:\Windows\win.ini
2013-09-24 16:37:38 ----D---- C:\Program Files\Common Files\System
2013-09-24 16:35:57 ----D---- C:\Program Files\MSBuild
2013-09-24 16:35:46 ----D---- C:\Program Files\Common Files
2013-09-24 16:35:44 ----D---- C:\Windows\ShellNew
2013-09-24 16:35:22 ----D---- C:\Program Files\Microsoft.NET
2013-09-24 07:27:00 ----D---- C:\Windows\rescache
2013-09-24 06:58:17 ----D---- C:\Windows\Microsoft.NET
2013-09-24 03:33:24 ----D---- C:\Windows\system32\wbem
2013-09-24 03:33:24 ----D---- C:\Windows\system32\en-US
2013-09-24 03:33:24 ----D---- C:\Windows\system32\drivers\en-US
2013-09-24 03:33:24 ----D---- C:\Windows\system32\cs-CZ
2013-09-24 03:33:24 ----D---- C:\Windows\PolicyDefinitions
2013-09-24 03:33:23 ----D---- C:\Windows\system32\DriverStore
2013-09-24 03:32:22 ----D---- C:\Program Files\OpenOffice.org 3
2013-09-24 03:27:53 ----D---- C:\Windows\system32\catroot
2013-09-24 03:27:52 ----D---- C:\Windows\system32\catroot2
2013-09-24 03:27:31 ----SD---- C:\ProgramData\Microsoft
2013-09-24 03:17:05 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-24 03:13:30 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2013-09-24 02:15:16 ----D---- C:\Users\Petr\AppData\Roaming\Media Player Classic
2013-09-24 00:07:45 ----HD---- C:\Windows\system32\GroupPolicy
2013-09-23 23:41:45 ----RD---- C:\Program Files (x86)
2013-09-23 23:40:57 ----D---- C:\Users\Petr\AppData\Roaming\Zoner
2013-09-23 23:27:01 ----D---- C:\Users\Petr\AppData\Roaming\HpUpdate
2013-09-23 23:21:37 ----D---- C:\Windows\system32\wfp
2013-09-23 23:20:28 ----D---- C:\Windows\system32\drivers\UMDF
2013-09-23 23:20:28 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-23 23:20:21 ----D---- C:\Windows\security
2013-09-23 23:20:21 ----D---- C:\Windows\Help
2013-09-23 23:20:21 ----D---- C:\Windows\AppCompat
2013-09-23 23:19:31 ----D---- C:\Windows\registration
2013-09-23 23:19:09 ----D---- C:\Windows.old
2013-09-23 23:18:30 ----RHD---- C:\MSOCache
2013-09-19 23:39:46 ----D---- C:\Windows\system32\directx
2013-09-19 23:03:19 ----D---- C:\Windows\LiveKernelReports
2013-09-19 22:16:42 ----D---- C:\Games
2013-09-19 22:16:20 ----D---- C:\Program Files\Microsoft Games
2013-09-19 20:17:55 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-09-19 00:42:35 ----D---- C:\Users\Petr\AppData\Roaming\NVIDIA
2013-09-17 22:23:26 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 22:23:24 ----A---- C:\Windows\system32\nvwgf2um.dll
2013-09-17 22:23:22 ----A---- C:\Windows\system32\nvumdshim.dll
2013-09-17 22:23:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-17 22:23:16 ----A---- C:\Windows\system32\nvd3dum.dll
2013-09-17 22:23:02 ----A---- C:\Windows\system32\nvapi.dll
2013-09-13 18:34:09 ----D---- C:\Windows\Panther
2013-09-13 18:33:55 ----D---- C:\Windows\debug
2013-09-13 03:17:45 ----D---- C:\Program Files\Internet Explorer
2013-09-13 03:02:40 ----D---- C:\Windows\system32\MRT
2013-09-13 03:01:14 ----A---- C:\Windows\system32\MRT.exe
2013-09-12 08:28:40 ----A---- C:\Windows\system32\nvsvc.dll
2013-09-12 08:28:40 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-12 08:28:37 ----A---- C:\Windows\system32\nvshext.dll
2013-09-12 08:28:36 ----A---- C:\Windows\system32\nvmctray.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 gfibto;gfibto; C:\Windows\system32\drivers\gfibto.sys [2013-09-24 13560]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-07-07 218688]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2013-02-14 171680]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2013-01-10 122240]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2013-01-10 105760]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2000-01-01 3240400]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-09-17 161056]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2000-01-01 514152]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\D:\NTIOLib.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2013-09-26 13464]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2013-03-21 1341664]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-09-12 662816]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2013-09-26 75136]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-12 414496]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-30 116648]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-09-17 1364256]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-19 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-30 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-07-01 1343400]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119530
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kotrolu logu

#8 Příspěvek od Rudy »

Log je již OK. Ty soubory odstraníme. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Toto sloužilo k vyčištění PC od dočasných souborů a jiných zbytečností.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

petr-fiser
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 24 zář 2013 21:00

Re: prosím o kotrolu logu

#9 Příspěvek od petr-fiser »

Clean up proveden . Takže je to vše k tomuto pc ? . Jestli ano tak díky . A ještě měl bych jednu prosbu , brachovo PC tak trochu umíra zítra jsem hodit RSIT z jeho pc tam bude asi velkej bordel nepouživa pomalu žadny antivir a podobne věci a chybí tam par .dll a buhví co ještě teda jestlii s tim nebudu otravovat :?:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119530
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kotrolu logu

#10 Příspěvek od Rudy »

petr-fiser píše:Clean up proveden . Takže je to vše k tomuto pc ? . Jestli ano tak díky . A ještě měl bych jednu prosbu , brachovo PC tak trochu umíra zítra jsem hodit RSIT z jeho pc tam bude asi velkej bordel nepouživa pomalu žadny antivir a podobne věci a chybí tam par .dll a buhví co ještě teda jestlii s tim nebudu otravovat :?:
Váš PC: Pokud není jiný problém, je to vše.
Bratrův PC: Klidně sem log dejte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět