Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kotrolu logu - DiVapton a další

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Prosím o kotrolu logu - DiVapton a další

#1 Příspěvek od zbynadovirycz »

Dobrý den, přinesl jsem si od svého dodavatele nově nainstalovaný repasovaný NTB a se značnou nelibostí jsem zjistil, že doplňky IE obsahují různý adware (!) - např DiVapton. Tento jsem standardní cestou odinstaloval (snad úspěšně), přesto bych chtěl požádat o kontrolu logu, zda se v ještě prázdném stroji nevyskytuje další havěť a zbytečnosti.

Díky moc

Zbyna

Log je dlouhý, rozděluji na 2x.



Logfile of random's system information tool 1.09 (written by random/random)
Run by Admin at 2013-10-14 15:11:17
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 180 GB (83%) free of 218 GB
Total RAM: 3510 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:11:32, on 14.10.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16720)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe
C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe
C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
C:\Users\Admin\AppData\Local\FilesFrog Update Checker\update_checker.exe
C:\Users\Admin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\dfsvc.exe
C:\Program Files\Xmarks\IE Extension\xmarkssync.exe
C:\Program Files\SetPoint\SetPoint.exe
C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe
C:\Users\Admin\AppData\Local\Apps\2.0\NGH5NATK.WT9\G3HE08OW.HJ3\dell..tion_0f612f649c4a10af_0005.0003_d2152cbf7ce307ec\DellSystemDetect.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Windows\system32\conhost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil32_11_9_900_117_ActiveX.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Admin\instal\Odv_i_ir_131014\RSIT.exe
C:\Program Files\trend micro\Admin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UsProvider Class - {539F76FD-084E-4858-86D5-62F02F54AE86} - C:\Program Files\Minibar\Minibar.dll
O2 - BHO: Movies Toolbar (Dist. by Somoto Ltd.) - {3444c3c5-6c56-4a16-a453-832b05bf6ea4} - C:\PROGRA~1\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: MinibarBHO - {AA74D58F-ACD0-450D-A85E-6C04B171C044} - C:\Program Files\Minibar\Minibar.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O3 - Toolbar: Movies Toolbar (Dist. by Somoto Ltd.) - {3444c3c5-6c56-4a16-a453-832b05bf6ea4} - C:\PROGRA~1\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IntelPROSet] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [DFEPApplication] C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe
O4 - HKLM\..\Run: [TdmNotify] C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Dell Webcam Central] "C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKCU\..\Run: [SDP] C:\Users\Admin\AppData\Local\FilesFrog Update Checker\update_checker.exe /auto
O4 - HKCU\..\Run: [AppsHat] C:\Users\Admin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe
O4 - HKCU\..\Run: [DellSystemDetect] C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms
O4 - HKCU\..\Run: [Xmarks] C:\Program Files\Xmarks\IE Extension\xmarkssync.exe -q
O4 - HKCU\..\Run: [BrowserChoice] "C:\Windows\System32\browserchoice.exe" /run
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - .DEFAULT User Startup: Smart Settings.lnk = C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe (User 'Default user')
O4 - Startup: Smart Settings.lnk = C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe
O4 - Global Startup: SetPoint.lnk = C:\Program Files\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Visit AppsHat.com - {AAA38851-3CFF-475F-B5E0-720D3645E4A5} - C:\Program Files\Minibar\Minibar.dll
O9 - Extra button: (no name) - {638F11AA-DF27-433b-BA2E-7281CE561D71} - C:\Program Files\Xmarks\IE Extension\xmarkssync.exe (HKCU)
O9 - Extra 'Tools' menuitem: Xmarks for IE... - {638F11AA-DF27-433b-BA2E-7281CE561D71} - C:\Program Files\Xmarks\IE Extension\xmarkssync.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~2\Wincert\WIN32C~1.DLL C:\PROGRA~1\MOVIES~1\SAFETY~1\SAFETY~2.DLL
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\aestsrv.exe
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\AtService.exe
O23 - Service: Dell Feature Enhancement Pack Service (DFEPService) - Dell Inc. - C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe
O23 - Service: EmbassyService - Unknown owner - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: SafetyNut Manager (SafetyNutManager) - SafetyNut Inc. - C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe
O23 - Service: SecureStorageService - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Secure Storage Manager\SecureStorageService.exe
O23 - Service: @%SystemRoot%\system32\stlang.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe
O23 - Service: NTRU TSS v1.2.1.37 TCS (tcsd_win32.exe) - Unknown owner - C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe
O23 - Service: TdmService - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Wave Authentication Manager Service - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe
O23 - Service: WvPCR - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Common\WvPCR.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 11722 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3444c3c5-6c56-4a16-a453-832b05bf6ea4}]
Movies Toolbar (Dist. by Somoto Ltd.) - C:\PROGRA~1\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx.dll [2013-08-19 92560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-10-10 194640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA74D58F-ACD0-450D-A85E-6C04B171C044}]
MinibarBHO - C:\Program Files\Minibar\Minibar.dll [2013-09-19 331264]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{3444c3c5-6c56-4a16-a453-832b05bf6ea4} - Movies Toolbar (Dist. by Somoto Ltd.) - C:\PROGRA~1\MOVIES~1\SAFETY~1\SRTOOL~1\IE\searchresultsDx.dll [2013-08-19 92560]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-10-10 194640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelPROSet"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2012-08-23 3457840]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-08-12 995176]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2013-02-21 555352]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-01-31 137752]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-01-31 171032]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-01-31 172568]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-07-22 495708]
"DFEPApplication"=C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe [2013-01-22 6307320]
"TdmNotify"=C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe [2011-12-08 323952]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"Dell Webcam Central"=C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [2009-06-24 409744]
"Kernel and Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2009-06-17 55824]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SDP"=C:\Users\Admin\AppData\Local\FilesFrog Update Checker\update_checker.exe [2013-01-31 201808]
"AppsHat"=C:\Users\Admin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe [2012-10-26 202752]
"DellSystemDetect"=C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms [2013-10-10 370]
"Xmarks"=C:\Program Files\Xmarks\IE Extension\xmarkssync.exe [2013-06-06 1125376]
"BrowserChoice"=C:\Windows\System32\browserchoice.exe [2010-02-11 293376]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SetPoint.lnk - C:\Program Files\SetPoint\SetPoint.exe

C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Smart Settings.lnk - C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\Wincert\WIN32C~1.DLL C:\PROGRA~1\MOVIES~1\SAFETY~1\SAFETY~2.DLL "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-01-12 228864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\spba]
C:\Program Files\Common Files\SPBA\homefus2.dll [2010-09-15 1971536]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
wvauth

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe]
"Debugger="tasklist.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-10-14 15:11:18 ----D---- C:\Program Files\trend micro
2013-10-14 15:11:17 ----D---- C:\rsit
2013-10-14 14:18:35 ----D---- C:\Program Files\Xmarks
2013-10-11 15:52:06 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-10-11 15:47:00 ----D---- C:\ProgramData\Creative
2013-10-11 15:46:59 ----D---- C:\Users\Admin\AppData\Roaming\Creative
2013-10-11 15:42:53 ----D---- C:\Program Files\Common Files\Reallusion
2013-10-11 15:42:37 ----D---- C:\Users\Admin\AppData\Roaming\InstallShield
2013-10-11 15:42:15 ----D---- C:\Program Files\Creative
2013-10-11 15:41:19 ----D---- C:\Program Files\Dell Webcam
2013-10-11 15:41:17 ----A---- C:\Windows\system32\drivers\CtClsFlt.sys
2013-10-11 15:41:17 ----A---- C:\Windows\system32\drivers\CtAudDrv.sys
2013-10-11 15:41:13 ----D---- C:\Program Files\Creative Live! Cam
2013-10-11 15:05:15 ----D---- C:\Program Files\Common Files\InstallShield
2013-10-10 21:11:02 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-10-10 21:11:02 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-10-10 21:11:01 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-10-10 21:11:01 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-10-10 21:11:00 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-10-10 21:10:57 ----A---- C:\Windows\system32\wksprtPS.dll
2013-10-10 21:10:57 ----A---- C:\Windows\system32\wksprt.exe
2013-10-10 21:10:57 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-10-10 21:10:57 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-10-10 21:10:57 ----A---- C:\Windows\system32\tsgqec.dll
2013-10-10 21:10:57 ----A---- C:\Windows\system32\rdpudd.dll
2013-10-10 21:10:57 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-10-10 21:10:57 ----A---- C:\Windows\system32\mstsc.exe
2013-10-10 21:10:57 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-10-10 21:10:57 ----A---- C:\Windows\system32\aaclient.dll
2013-10-10 21:10:56 ----A---- C:\Windows\system32\rdpcorets.dll
2013-10-10 21:10:56 ----A---- C:\Windows\system32\mstscax.dll
2013-10-10 20:38:53 ----D---- C:\Users\Admin\AppData\Roaming\Babylon
2013-10-10 20:38:53 ----D---- C:\ProgramData\Babylon
2013-10-10 20:16:01 ----D---- C:\Program Files\MSXML 4.0
2013-10-10 20:06:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-10-10 20:06:00 ----A---- C:\Windows\system32\elshyph.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\wininet.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\wextract.exe
2013-10-10 20:05:59 ----A---- C:\Windows\system32\vbscript.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\urlmon.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-10 20:05:59 ----A---- C:\Windows\system32\pngfilt.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\occache.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\msrating.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\msls31.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\mshtmled.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\mshtml.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\msfeeds.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\jsproxy.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\inseng.dll
2013-10-10 20:05:59 ----A---- C:\Windows\system32\iexpress.exe
2013-10-10 20:05:59 ----A---- C:\Windows\system32\ieUnatt.exe
2013-10-10 20:05:59 ----A---- C:\Windows\system32\iertutil.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-10-10 20:05:58 ----A---- C:\Windows\system32\mshtmler.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\mshta.exe
2013-10-10 20:05:58 ----A---- C:\Windows\system32\msfeedssync.exe
2013-10-10 20:05:58 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\jscript9.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\jscript.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\imgutil.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\ieui.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\iesysprep.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\iernonce.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\iepeers.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\ieframe.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\ieapfltr.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\ieapfltr.dat
2013-10-10 20:05:58 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\ie4uinit.exe
2013-10-10 20:05:58 ----A---- C:\Windows\system32\icardie.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\dxtrans.dll
2013-10-10 20:05:58 ----A---- C:\Windows\system32\dxtmsft.dll
2013-10-10 20:05:57 ----A---- C:\Windows\system32\webcheck.dll
2013-10-10 20:05:57 ----A---- C:\Windows\system32\url.dll
2013-10-10 20:05:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-10-10 20:05:57 ----A---- C:\Windows\system32\licmgr10.dll
2013-10-10 20:05:57 ----A---- C:\Windows\system32\iesetup.dll
2013-10-10 20:05:57 ----A---- C:\Windows\system32\iedkcs32.dll
2013-10-10 20:05:24 ----A---- C:\Windows\system32\taskhost.exe
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-10-10 20:04:55 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\XpsPrint.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\WMPhoto.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\FntCache.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\DWrite.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\d3d10warp.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\d3d10level9.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\d3d10core.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\d3d10_1.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\d3d10.dll
2013-10-10 20:04:55 ----A---- C:\Windows\system32\d2d1.dll
2013-10-10 20:04:54 ----A---- C:\Windows\system32\UIAnimation.dll
2013-10-10 20:04:54 ----A---- C:\Windows\system32\dxgi.dll
2013-10-10 20:03:24 ----A---- C:\Windows\system32\d3d11.dll
2013-10-10 20:00:44 ----A---- C:\Windows\system32\certutil.exe
2013-10-10 20:00:44 ----A---- C:\Windows\system32\certenc.dll
2013-10-10 20:00:38 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-10-10 20:00:37 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-10-10 20:00:36 ----A---- C:\Windows\system32\tdh.dll
2013-10-10 20:00:36 ----A---- C:\Windows\system32\ntdll.dll
2013-10-10 20:00:35 ----A---- C:\Windows\system32\advapi32.dll
2013-10-10 19:59:37 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-10-10 19:59:35 ----A---- C:\Windows\system32\ncsi.dll
2013-10-10 19:59:34 ----A---- C:\Windows\system32\nlasvc.dll
2013-10-10 19:59:34 ----A---- C:\Windows\system32\netcorehc.dll
2013-10-10 19:59:34 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-10-10 19:59:34 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-10-10 19:59:33 ----A---- C:\Windows\system32\nlaapi.dll
2013-10-10 19:59:33 ----A---- C:\Windows\system32\netevent.dll
2013-10-10 19:59:30 ----A---- C:\Windows\system32\lpk.dll
2013-10-10 19:59:30 ----A---- C:\Windows\system32\fontsub.dll
2013-10-10 19:59:30 ----A---- C:\Windows\system32\dciman32.dll
2013-10-10 19:59:30 ----A---- C:\Windows\system32\atmfd.dll
2013-10-10 19:59:29 ----A---- C:\Windows\system32\atmlib.dll
2013-10-10 19:59:26 ----A---- C:\Windows\system32\schannel.dll
2013-10-10 19:59:26 ----A---- C:\Windows\system32\lsasrv.dll
2013-10-10 19:59:26 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-10-10 19:59:26 ----A---- C:\Windows\system32\drivers\cng.sys
2013-10-10 19:59:22 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-10-10 19:59:21 ----A---- C:\Windows\system32\mswsock.dll
2013-10-10 19:59:21 ----A---- C:\Windows\system32\drivers\afd.sys
2013-10-10 19:59:18 ----A---- C:\Windows\system32\wintrust.dll
2013-10-10 19:59:18 ----A---- C:\Windows\system32\cryptsvc.dll
2013-10-10 19:59:18 ----A---- C:\Windows\system32\cryptnet.dll
2013-10-10 19:59:18 ----A---- C:\Windows\system32\crypt32.dll
2013-10-10 19:59:12 ----A---- C:\Windows\system32\rpcrt4.dll
2013-10-10 19:59:08 ----A---- C:\Windows\system32\cryptdlg.dll
2013-10-10 19:59:05 ----A---- C:\Windows\system32\qedit.dll
2013-10-10 19:59:04 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-10-10 19:59:01 ----A---- C:\Windows\system32\scavengeui.dll
2013-10-10 19:58:52 ----A---- C:\Windows\system32\win32k.sys
2013-10-10 19:58:49 ----A---- C:\Windows\system32\qdvd.dll
2013-10-10 19:58:39 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 19:58:37 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-10-10 19:58:37 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-10-10 19:58:36 ----A---- C:\Windows\system32\win32spl.dll
2013-10-10 19:58:36 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-10-10 19:58:36 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-10-10 19:58:34 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-10-10 19:58:34 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-10-10 19:58:34 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-10-10 19:58:33 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-10-10 19:58:33 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-10-10 19:58:33 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-10-10 19:58:33 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-10-10 19:58:32 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-10-10 19:58:32 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-10-10 19:58:31 ----A---- C:\Windows\system32\comctl32.dll
2013-10-10 19:58:30 ----A---- C:\Windows\system32\wwansvc.dll
2013-10-10 19:58:30 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-10-10 19:58:04 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-10-10 19:58:02 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-10-10 19:58:02 ----A---- C:\Windows\system32\winsrv.dll
2013-10-10 19:58:02 ----A---- C:\Windows\system32\KernelBase.dll
2013-10-10 19:58:02 ----A---- C:\Windows\system32\kernel32.dll
2013-10-10 19:58:02 ----A---- C:\Windows\system32\conhost.exe
2013-10-10 19:58:01 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-10-10 19:58:01 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-10-10 19:58:01 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-10-10 19:58:01 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-10-10 19:58:01 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-10-10 19:58:01 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-10-10 19:58:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-10-10 19:58:01 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-10-10 19:57:59 ----A---- C:\Windows\system32\shell32.dll
2013-10-10 19:57:55 ----A---- C:\Windows\system32\shdocvw.dll
2013-10-10 19:57:50 ----A---- C:\Windows\system32\WebClnt.dll
2013-10-10 19:57:50 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-10-10 19:57:50 ----A---- C:\Windows\system32\davclnt.dll
2013-10-10 19:57:49 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-10-10 19:57:49 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-10-10 19:57:47 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-10-10 19:57:47 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-10-10 19:57:46 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-10-10 19:57:44 ----A---- C:\Windows\system32\tzres.dll
2013-10-10 19:51:12 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-10-10 19:47:34 ----A---- C:\Windows\system32\consent.exe
2013-10-10 19:47:34 ----A---- C:\Windows\system32\authui.dll
2013-10-10 19:47:34 ----A---- C:\Windows\system32\appinfo.dll
2013-10-10 19:31:21 ----D---- C:\Users\Admin\AppData\Roaming\Dell
2013-10-10 19:31:03 ----D---- C:\ProgramData\PCDr
2013-10-10 19:31:03 ----D---- C:\ProgramData\PC-Doctor for Windows
2013-10-10 19:31:02 ----D---- C:\Program Files\Dell Support Center
2013-10-10 19:30:36 ----D---- C:\Program Files\My Dell
2013-10-10 19:28:10 ----D---- C:\Users\Admin\AppData\Roaming\PCDr
2013-10-10 19:28:02 ----D---- C:\temp
2013-10-10 18:37:00 ----D---- C:\ProgramData\Google
2013-10-10 18:36:11 ----D---- C:\Program Files\Google
2013-10-10 18:35:37 ----D---- C:\Program Files\Common Files\Adobe
2013-10-10 18:35:37 ----D---- C:\Program Files\Adobe
2013-10-10 18:35:20 ----D---- C:\ProgramData\Adobe
2013-10-10 18:09:30 ----D---- C:\apps
2013-10-10 18:09:25 ----D---- C:\ProgramData\NTRU Cryptosystems
2013-10-10 18:09:25 ----D---- C:\Program Files\NTRU Cryptosystems
2013-10-10 18:08:07 ----D---- C:\Program Files\Common Files\SPBA
2013-10-10 18:07:56 ----DC---- C:\Windows\system32\DRVSTORE
2013-10-10 18:07:56 ----A---- C:\Windows\system32\pbadrvdll.dll
2013-10-10 18:07:56 ----A---- C:\Windows\system32\drivers\PBADRV.sys
2013-10-10 18:07:31 ----D---- C:\Program Files\DIFX
2013-10-10 18:07:26 ----D---- C:\Program Files\Fingerprint Sensor
2013-10-10 18:07:14 ----D---- C:\Program Files\Gemalto
2013-10-10 18:06:56 ----A---- C:\Windows\hbcikrnl.ini
2013-10-10 18:06:55 ----D---- C:\Program Files\O2Micro OZ776 SCR Driver
2013-10-10 18:06:36 ----D---- C:\Windows\system32\BioAPIFFDB
2013-10-10 18:06:23 ----D---- C:\Windows\Downloaded Installations
2013-10-10 18:06:22 ----A---- C:\Windows\system32\ct32O2.dll
2013-10-10 18:06:15 ----D---- C:\Users\Admin\AppData\Roaming\Wave Systems Corp
2013-10-10 18:06:15 ----D---- C:\ProgramData\Wave Systems Corp
2013-10-10 18:03:59 ----D---- C:\Windows\{26CBB88B-A63B-4EE2-92DA-062CFEB69EB8}
2013-10-10 18:01:01 ----D---- C:\Program Files\Dell
2013-10-10 17:57:12 ----A---- C:\Windows\system32\aestecap.dll
2013-10-10 17:57:12 ----A---- C:\Windows\system32\aestaren.dll
2013-10-10 17:57:12 ----A---- C:\Windows\system32\aestacap.dll
2013-10-10 17:57:11 ----A---- C:\Windows\system32\stlang.dll
2013-10-10 17:57:10 ----D---- C:\Windows\system32\SRSLabs
2013-10-10 17:56:24 ----A---- C:\Windows\system32\drivers\stwrt.sys
2013-10-10 17:56:23 ----N---- C:\Windows\system32\stapi32.dll
2013-10-10 17:56:23 ----A---- C:\Windows\system32\stcplx.dll
2013-10-10 17:56:23 ----A---- C:\Windows\system32\stapo.dll
2013-10-10 17:56:22 ----A---- C:\Windows\system32\st326292.dll
2013-10-10 17:56:19 ----D---- C:\Program Files\IDT
2013-10-10 17:49:34 ----A---- C:\Windows\system32\TVWSetup.exe
2013-10-10 17:49:34 ----A---- C:\Windows\system32\igfxtray.exe
2013-10-10 17:49:34 ----A---- C:\Windows\system32\igfxsrvc.exe
2013-10-10 17:49:34 ----A---- C:\Windows\system32\igfxpers.exe
2013-10-10 17:49:34 ----A---- C:\Windows\system32\igfxext.exe
2013-10-10 17:49:34 ----A---- C:\Windows\system32\hkcmd.exe
2013-10-10 17:49:33 ----A---- C:\Windows\system32\GfxUI.exe
2013-10-10 17:49:31 ----A---- C:\Windows\system32\IntcDAuC.dll
2013-10-10 17:49:31 ----A---- C:\Windows\system32\iglhsip32.dll
2013-10-10 17:49:31 ----A---- C:\Windows\system32\iglhcp32.dll
2013-10-10 17:49:31 ----A---- C:\Windows\system32\igfxTMM.dll
2013-10-10 17:49:31 ----A---- C:\Windows\system32\igfxCoIn_v2281.dll
2013-10-10 17:49:31 ----A---- C:\Windows\system32\drivers\IntcDAud.sys
2013-10-10 17:49:31 ----A---- C:\Windows\system32\drivers\Impcd.sys
2013-10-10 17:49:30 ----A---- C:\Windows\system32\igfxpph.dll
2013-10-10 17:49:30 ----A---- C:\Windows\system32\igfxexps.dll
2013-10-10 17:49:29 ----A---- C:\Windows\system32\igfxdo.dll
2013-10-10 17:49:29 ----A---- C:\Windows\system32\IGFXDEVLib.dll
2013-10-10 17:49:29 ----A---- C:\Windows\system32\igfxdev.dll
2013-10-10 17:49:29 ----A---- C:\Windows\system32\igdumdx32.dll
2013-10-10 17:49:29 ----A---- C:\Windows\system32\igdumd32.dll
2013-10-10 17:49:28 ----A---- C:\Windows\system32\drivers\igdkmd32.sys
2013-10-10 17:49:27 ----A---- C:\Windows\system32\ig4icd32.dll
2013-10-10 17:49:27 ----A---- C:\Windows\system32\gfxSrvc.dll
2013-10-10 17:46:31 ----A---- C:\Windows\system32\Vxdif.dll
2013-10-10 17:46:31 ----A---- C:\Windows\system32\drivers\Apfiltr.sys
2013-10-10 17:43:15 ----D---- C:\Users\Admin\AppData\Roaming\Logitech
2013-10-10 17:41:33 ----A---- C:\Windows\system32\KemXML.dll
2013-10-10 17:41:33 ----A---- C:\Windows\system32\kemutb.dll
2013-10-10 17:41:32 ----A---- C:\Windows\system32\KemWnd.dll
2013-10-10 17:41:32 ----A---- C:\Windows\system32\KemUtil.dll
2013-10-10 17:41:22 ----D---- C:\ProgramData\Logitech
2013-10-10 17:41:14 ----D---- C:\Program Files\Common Files\Logishrd
2013-10-10 17:41:09 ----D---- C:\Program Files\SetPoint
2013-10-10 17:39:26 ----A---- C:\Windows\system32\log.txt
2013-10-10 17:39:00 ----D---- C:\Program Files\Common Files\postureAgent
2013-10-10 17:37:18 ----A---- C:\Windows\system32\RiSDIcon.dll
2013-10-10 17:37:18 ----A---- C:\Windows\system32\RiMMCIcon.dll
2013-10-10 17:37:18 ----A---- C:\Windows\system32\drivers\risdpe86.sys
2013-10-10 17:37:17 ----HD---- C:\Program Files\InstallShield Installation Information
2013-10-10 17:33:05 ----A---- C:\Windows\system32\CSVer.dll
2013-10-10 16:50:16 ----D---- C:\Program Files\Microsoft Silverlight
2013-10-10 16:49:30 ----D---- C:\Windows\system32\Wat
2013-10-10 15:17:06 ----D---- C:\Windows\system32\SPReview
2013-10-10 15:16:22 ----D---- C:\Windows\system32\EventProviders
2013-10-10 14:57:56 ----A---- C:\Windows\system32\dfshim.dll
2013-10-10 14:57:49 ----A---- C:\Windows\system32\mfc40u.dll
2013-10-10 14:57:49 ----A---- C:\Windows\system32\mfc40.dll
2013-10-10 14:57:48 ----A---- C:\Windows\system32\sysmain.dll
2013-10-10 14:57:47 ----A---- C:\Windows\system32\secproc_isv.dll
2013-10-10 14:57:46 ----A---- C:\Windows\system32\secproc.dll
2013-10-10 14:57:46 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-10-10 14:57:45 ----A---- C:\Windows\system32\RMActivate.exe
2013-10-10 14:57:44 ----A---- C:\Windows\system32\spwizui.dll
2013-10-10 14:57:44 ----A---- C:\Windows\system32\mscoree.dll
2013-10-10 14:57:43 ----A---- C:\Windows\system32\mf.dll
2013-10-10 14:57:42 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-10-10 14:57:42 ----A---- C:\Windows\system32\CertEnroll.dll
2013-10-10 14:57:41 ----A---- C:\Windows\system32\wmp.dll
2013-10-10 14:57:41 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-10-10 14:57:41 ----A---- C:\Windows\system32\PresentationHost.exe
2013-10-10 14:57:41 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-10-10 14:57:40 ----A---- C:\Windows\system32\schedsvc.dll
2013-10-10 14:57:40 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-10-10 14:57:39 ----A---- C:\Windows\system32\RacEngn.dll
2013-10-10 14:57:39 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-10-10 14:57:38 ----A---- C:\Windows\system32\rdpdd.dll
2013-10-10 14:57:38 ----A---- C:\Windows\system32\qmgr.dll
2013-10-10 14:57:37 ----A---- C:\Windows\system32\ole32.dll
2013-10-10 14:57:37 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-10-10 14:57:36 ----A---- C:\Windows\system32\wevtsvc.dll
2013-10-10 14:57:36 ----A---- C:\Windows\system32\vssapi.dll
2013-10-10 14:57:36 ----A---- C:\Windows\system32\SearchFolder.dll
2013-10-10 14:57:36 ----A---- C:\Windows\system32\d3d9.dll
2013-10-10 14:57:35 ----A---- C:\Windows\system32\taskschd.dll
2013-10-10 14:57:35 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-10-10 14:57:34 ----A---- C:\Windows\system32\wer.dll
2013-10-10 14:57:34 ----A---- C:\Windows\system32\termsrv.dll
2013-10-10 14:57:34 ----A---- C:\Windows\system32\spreview.exe
2013-10-10 14:57:34 ----A---- C:\Windows\system32\spinstall.exe
2013-10-10 14:57:34 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2013-10-10 14:57:33 ----A---- C:\Windows\system32\gpsvc.dll
2013-10-10 14:57:33 ----A---- C:\Windows\system32\certcli.dll
2013-10-10 14:57:32 ----A---- C:\Windows\system32\wbengine.exe
2013-10-10 14:57:32 ----A---- C:\Windows\system32\odbc32.dll
2013-10-10 14:57:32 ----A---- C:\Windows\system32\MPSSVC.dll
2013-10-10 14:57:32 ----A---- C:\Windows\system32\dwmcore.dll
2013-10-10 14:57:32 ----A---- C:\Windows\system32\diagperf.dll
2013-10-10 14:57:31 ----A---- C:\Windows\system32\WinSAT.exe
2013-10-10 14:57:31 ----A---- C:\Windows\system32\umrdp.dll
2013-10-10 14:57:31 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-10-10 14:57:31 ----A---- C:\Windows\system32\tsmf.dll
2013-10-10 14:57:31 ----A---- C:\Windows\system32\dot3api.dll
2013-10-10 14:57:30 ----A---- C:\Windows\system32\winhttp.dll
2013-10-10 14:57:30 ----A---- C:\Windows\system32\setupapi.dll
2013-10-10 14:57:30 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-10-10 14:57:30 ----A---- C:\Windows\system32\dbgeng.dll
2013-10-10 14:57:30 ----A---- C:\Windows\system32\apphelp.dll
2013-10-10 14:57:29 ----A---- C:\Windows\system32\winlogon.exe
2013-10-10 14:57:29 ----A---- C:\Windows\system32\VSSVC.exe
2013-10-10 14:57:29 ----A---- C:\Windows\system32\user32.dll
2013-10-10 14:57:29 ----A---- C:\Windows\system32\netlogon.dll
2013-10-10 14:57:29 ----A---- C:\Windows\system32\netcfgx.dll
2013-10-10 14:57:28 ----A---- C:\Windows\system32\WsmSvc.dll
2013-10-10 14:57:28 ----A---- C:\Windows\system32\upnp.dll
2013-10-10 14:57:28 ----A---- C:\Windows\system32\Query.dll
2013-10-10 14:57:28 ----A---- C:\Windows\system32\gpprefcl.dll
2013-10-10 14:57:28 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-10-10 14:57:27 ----A---- C:\Windows\system32\netfxperf.dll
2013-10-10 14:57:27 ----A---- C:\Windows\system32\msv1_0.dll
2013-10-10 14:57:27 ----A---- C:\Windows\system32\msdrm.dll
2013-10-10 14:57:27 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-10-10 14:57:27 ----A---- C:\Windows\system32\lsm.exe
2013-10-10 14:57:27 ----A---- C:\Windows\system32\imapi2fs.dll
2013-10-10 14:57:27 ----A---- C:\Windows\system32\drivers\csc.sys
2013-10-10 14:57:26 ----A---- C:\Windows\system32\sppobjs.dll
2013-10-10 14:57:26 ----A---- C:\Windows\system32\shlwapi.dll
2013-10-10 14:57:26 ----A---- C:\Windows\system32\SessEnv.dll
2013-10-10 14:57:26 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-10-10 14:57:26 ----A---- C:\Windows\system32\mcbuilder.exe
2013-10-10 14:57:25 ----A---- C:\Windows\system32\xpsservices.dll
2013-10-10 14:57:25 ----A---- C:\Windows\system32\winload.exe
2013-10-10 14:57:25 ----A---- C:\Windows\system32\userenv.dll
2013-10-10 14:57:25 ----A---- C:\Windows\system32\sppwinob.dll
2013-10-10 14:57:25 ----A---- C:\Windows\system32\drvstore.dll
2013-10-10 14:57:25 ----A---- C:\Windows\system32\comdlg32.dll
2013-10-10 14:57:25 ----A---- C:\Windows\system32\certmgr.dll
2013-10-10 14:57:25 ----A---- C:\Windows\system32\audiosrv.dll
2013-10-10 14:57:24 ----A---- C:\Windows\system32\Wldap32.dll
2013-10-10 14:57:24 ----A---- C:\Windows\system32\rpcss.dll
2013-10-10 14:57:24 ----A---- C:\Windows\system32\propsys.dll
2013-10-10 14:57:24 ----A---- C:\Windows\system32\mfds.dll
2013-10-10 14:57:24 ----A---- C:\Windows\system32\framedynos.dll
2013-10-10 14:57:24 ----A---- C:\Windows\system32\cmd.exe
2013-10-10 14:57:24 ----A---- C:\Windows\system32\BFE.DLL
2013-10-10 14:57:23 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-10-10 14:57:23 ----A---- C:\Windows\system32\winresume.exe
2013-10-10 14:57:23 ----A---- C:\Windows\system32\samsrv.dll
2013-10-10 14:57:23 ----A---- C:\Windows\system32\rdpendp.dll
2013-10-10 14:57:23 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-10-10 14:57:23 ----A---- C:\Windows\system32\cscsvc.dll
2013-10-10 14:57:22 ----A---- C:\Windows\system32\werconcpl.dll
2013-10-10 14:57:22 ----A---- C:\Windows\system32\themeui.dll
2013-10-10 14:57:22 ----A---- C:\Windows\system32\taskeng.exe
2013-10-10 14:57:22 ----A---- C:\Windows\system32\spp.dll
2013-10-10 14:57:22 ----A---- C:\Windows\system32\rdpclip.exe
2013-10-10 14:57:22 ----A---- C:\Windows\system32\dhcpcore.dll
2013-10-10 14:57:22 ----A---- C:\Windows\system32\credui.dll
2013-10-10 14:57:22 ----A---- C:\Windows\system32\azroles.dll
2013-10-10 14:57:22 ----A---- C:\Windows\system32\appmgr.dll
2013-10-10 14:57:21 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-10-10 14:57:21 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-10-10 14:57:21 ----A---- C:\Windows\system32\drivers\http.sys
2013-10-10 14:57:21 ----A---- C:\Windows\system32\dbghelp.dll
2013-10-10 14:57:21 ----A---- C:\Windows\system32\basecsp.dll
2013-10-10 14:57:20 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-10-10 14:57:20 ----A---- C:\Windows\system32\taskcomp.dll
2013-10-10 14:57:20 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-10-10 14:57:20 ----A---- C:\Windows\system32\gdi32.dll
2013-10-10 14:57:20 ----A---- C:\Windows\system32\evr.dll
2013-10-10 14:57:20 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-10-10 14:57:20 ----A---- C:\Windows\system32\calc.exe
2013-10-10 14:57:19 ----A---- C:\Windows\system32\vpnike.dll
2013-10-10 14:57:19 ----A---- C:\Windows\system32\UIRibbon.dll
2013-10-10 14:57:19 ----A---- C:\Windows\system32\srvsvc.dll
2013-10-10 14:57:19 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-10-10 14:57:19 ----A---- C:\Windows\system32\lpksetup.exe
2013-10-10 14:57:19 ----A---- C:\Windows\system32\fveapi.dll
2013-10-10 14:57:18 ----A---- C:\Windows\system32\ws2_32.dll
2013-10-10 14:57:18 ----A---- C:\Windows\system32\sxs.dll
2013-10-10 14:57:18 ----A---- C:\Windows\system32\stobject.dll
2013-10-10 14:57:18 ----A---- C:\Windows\system32\netshell.dll
2013-10-10 14:57:18 ----A---- C:\Windows\system32\inetpp.dll
2013-10-10 14:57:18 ----A---- C:\Windows\system32\hgprint.dll
2013-10-10 14:57:18 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-10-10 14:57:17 ----A---- C:\Windows\system32\prncache.dll
2013-10-10 14:57:17 ----A---- C:\Windows\system32\printui.dll
2013-10-10 14:57:17 ----A---- C:\Windows\system32\dps.dll
2013-10-10 14:57:16 ----A---- C:\Windows\system32\WSDApi.dll
2013-10-10 14:57:16 ----A---- C:\Windows\system32\wmpeffects.dll
2013-10-10 14:57:16 ----A---- C:\Windows\system32\rpchttp.dll
2013-10-10 14:57:16 ----A---- C:\Windows\system32\net1.exe
2013-10-10 14:57:16 ----A---- C:\Windows\system32\drivers\vmbus.sys
2013-10-10 14:57:16 ----A---- C:\Windows\system32\drivers\pci.sys
2013-10-10 14:57:16 ----A---- C:\Windows\system32\ci.dll
2013-10-10 14:57:16 ----A---- C:\Windows\system32\aitagent.exe
2013-10-10 14:57:16 ----A---- C:\Windows\system32\aepdu.dll
2013-10-10 14:57:15 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-10-10 14:57:15 ----A---- C:\Windows\system32\wlangpui.dll
2013-10-10 14:57:15 ----A---- C:\Windows\system32\vds.exe
2013-10-10 14:57:15 ----A---- C:\Windows\system32\scansetting.dll
2013-10-10 14:57:15 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-10-10 14:57:15 ----A---- C:\Windows\system32\FXSSVC.exe
2013-10-10 14:57:14 ----A---- C:\Windows\system32\wpdshext.dll
2013-10-10 14:57:14 ----A---- C:\Windows\system32\webservices.dll
2013-10-10 14:57:14 ----A---- C:\Windows\system32\tscfgwmi.dll
2013-10-10 14:57:14 ----A---- C:\Windows\system32\t2embed.dll
2013-10-10 14:57:14 ----A---- C:\Windows\system32\scrptadm.dll
2013-10-10 14:57:14 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-10-10 14:57:14 ----A---- C:\Windows\system32\pnidui.dll
2013-10-10 14:57:14 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-10-10 14:57:14 ----A---- C:\Windows\system32\fde.dll
2013-10-10 14:57:14 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-10-10 14:57:14 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2013-10-10 14:57:13 ----A---- C:\Windows\system32\wscapi.dll
2013-10-10 14:57:13 ----A---- C:\Windows\system32\vmicsvc.exe
2013-10-10 14:57:13 ----A---- C:\Windows\system32\SyncCenter.dll
2013-10-10 14:57:13 ----A---- C:\Windows\system32\sdengin2.dll
2013-10-10 14:57:13 ----A---- C:\Windows\system32\netdiagfx.dll
2013-10-10 14:57:13 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-10-10 14:57:12 ----A---- C:\Windows\system32\wisptis.exe
2013-10-10 14:57:12 ----A---- C:\Windows\system32\winsta.dll
2013-10-10 14:57:12 ----A---- C:\Windows\system32\WinSCard.dll
2013-10-10 14:57:12 ----A---- C:\Windows\system32\pla.dll
2013-10-10 14:57:12 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-10-10 14:57:12 ----A---- C:\Windows\system32\msasn1.dll
2013-10-10 14:57:12 ----A---- C:\Windows\system32\mcmde.dll
2013-10-10 14:57:12 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-10-10 14:57:12 ----A---- C:\Windows\system32\cscobj.dll
2013-10-10 14:57:11 ----A---- C:\Windows\system32\wiaservc.dll
2013-10-10 14:57:11 ----A---- C:\Windows\system32\setupcl.exe
2013-10-10 14:57:11 ----A---- C:\Windows\system32\imapi2.dll
2013-10-10 14:57:11 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-10-10 14:57:11 ----A---- C:\Windows\system32\aeinv.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\winmm.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\vaultsvc.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\TabSvc.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\shsvcs.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\rasmans.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\onex.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\hbaapi.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\dwmredir.dll
2013-10-10 14:57:10 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-10-10 14:57:10 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-10-10 14:57:10 ----A---- C:\Windows\system32\autofmt.exe
2013-10-10 14:57:09 ----A---- C:\Windows\system32\samcli.dll
2013-10-10 14:57:09 ----A---- C:\Windows\system32\proquota.exe
2013-10-10 14:57:09 ----A---- C:\Windows\system32\netiohlp.dll
2013-10-10 14:57:09 ----A---- C:\Windows\system32\Narrator.exe
2013-10-10 14:57:09 ----A---- C:\Windows\system32\msutb.dll
2013-10-10 14:57:09 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-10-10 14:57:09 ----A---- C:\Windows\system32\halmacpi.dll
2013-10-10 14:57:09 ----A---- C:\Windows\system32\hal.dll
2013-10-10 14:57:09 ----A---- C:\Windows\system32\bootres.dll
2013-10-10 14:57:09 ----A---- C:\Windows\system32\autochk.exe
2013-10-10 14:57:09 ----A---- C:\Windows\system32\AudioSes.dll
2013-10-10 14:57:09 ----A---- C:\Windows\system32\audiodg.exe
2013-10-10 14:57:08 ----A---- C:\Windows\system32\wcncsvc.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\thumbcache.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\srchadmin.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\schtasks.exe
2013-10-10 14:57:08 ----A---- C:\Windows\system32\regapi.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\powercpl.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\msinfo32.exe
2013-10-10 14:57:08 ----A---- C:\Windows\system32\msihnd.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\mimefilt.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\framedyn.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\eapphost.dll
2013-10-10 14:57:08 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-10-10 14:57:08 ----A---- C:\Windows\system32\autoconv.exe
2013-10-10 14:57:07 ----A---- C:\Windows\system32\umpo.dll
2013-10-10 14:57:07 ----A---- C:\Windows\system32\QAGENT.DLL
2013-10-10 14:57:07 ----A---- C:\Windows\system32\netid.dll
2013-10-10 14:57:07 ----A---- C:\Windows\system32\mscorier.dll
2013-10-10 14:57:07 ----A---- C:\Windows\system32\DXP.dll
2013-10-10 14:57:07 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-10-10 14:57:07 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-10-10 14:57:07 ----A---- C:\Windows\system32\actxprxy.dll
2013-10-10 14:57:06 ----A---- C:\Windows\system32\wdc.dll
2013-10-10 14:57:06 ----A---- C:\Windows\system32\Vault.dll
2013-10-10 14:57:06 ----A---- C:\Windows\system32\untfs.dll
2013-10-10 14:57:06 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-10-10 14:57:06 ----A---- C:\Windows\system32\sdclt.exe
2013-10-10 14:57:06 ----A---- C:\Windows\system32\scesrv.dll
2013-10-10 14:57:06 ----A---- C:\Windows\system32\rastls.dll
2013-10-10 14:57:06 ----A---- C:\Windows\system32\nci.dll
2013-10-10 14:57:05 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-10-10 14:57:05 ----A---- C:\Windows\system32\wlanpref.dll
2013-10-10 14:57:05 ----A---- C:\Windows\system32\sppsvc.exe
2013-10-10 14:57:05 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-10-10 14:57:05 ----A---- C:\Windows\system32\Robocopy.exe
2013-10-10 14:57:05 ----A---- C:\Windows\system32\ListSvc.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\userinit.exe
2013-10-10 14:57:04 ----A---- C:\Windows\system32\termmgr.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\taskmgr.exe
2013-10-10 14:57:04 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\puiobj.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\mtxclu.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\msdri.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-10-10 14:57:04 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-10-10 14:57:04 ----A---- C:\Windows\system32\Display.dll
2013-10-10 14:57:04 ----A---- C:\Windows\system32\cscui.dll
2013-10-10 14:57:03 ----A---- C:\Windows\system32\msdtctm.dll
2013-10-10 14:57:03 ----A---- C:\Windows\system32\logoncli.dll
2013-10-10 14:57:03 ----A---- C:\Windows\system32\eudcedit.exe
2013-10-10 14:57:03 ----A---- C:\Windows\system32\drivers\winhv.sys
2013-10-10 14:57:03 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2013-10-10 14:57:03 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-10-10 14:57:03 ----A---- C:\Windows\system32\DiagCpl.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\wiadefui.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\themecpl.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\sppcomapi.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\shsetup.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\rasppp.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\msconfig.exe
2013-10-10 14:57:02 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\drivers\storvsc.sys
2013-10-10 14:57:02 ----A---- C:\Windows\system32\cabview.dll
2013-10-10 14:57:02 ----A---- C:\Windows\system32\biocpl.dll
2013-10-10 14:57:01 ----A---- C:\Windows\system32\wpccpl.dll
2013-10-10 14:57:01 ----A---- C:\Windows\system32\scecli.dll
2013-10-10 14:57:01 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-10-10 14:57:01 ----A---- C:\Windows\system32\hgcpl.dll
2013-10-10 14:57:01 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-10-10 14:57:01 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-10-10 14:57:01 ----A---- C:\Windows\system32\dnscmmc.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\wlanui.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\wkssvc.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\VAN.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\usercpl.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\tapisrv.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\mscories.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\mscms.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\mprddm.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\localsec.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\KMSVC.DLL
2013-10-10 14:57:00 ----A---- C:\Windows\system32\iasacct.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\fontext.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\bcdsrv.dll
2013-10-10 14:57:00 ----A---- C:\Windows\system32\batmeter.dll
2013-10-10 14:56:59 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-10-10 14:56:59 ----A---- C:\Windows\system32\w32tm.exe
2013-10-10 14:56:59 ----A---- C:\Windows\system32\spwizeng.dll
2013-10-10 14:56:59 ----A---- C:\Windows\system32\SndVol.exe
2013-10-10 14:56:59 ----A---- C:\Windows\system32\prntvpt.dll
2013-10-10 14:56:59 ----A---- C:\Windows\system32\netcenter.dll
2013-10-10 14:56:59 ----A---- C:\Windows\system32\mblctr.exe
2013-10-10 14:56:59 ----A---- C:\Windows\system32\azroleui.dll
2013-10-10 14:56:59 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-10-10 14:56:58 ----A---- C:\Windows\system32\zipfldr.dll
2013-10-10 14:56:58 ----A---- C:\Windows\system32\networkmap.dll
2013-10-10 14:56:58 ----A---- C:\Windows\system32\netjoin.dll
2013-10-10 14:56:58 ----A---- C:\Windows\system32\mspbda.dll
2013-10-10 14:56:58 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-10-10 14:56:58 ----A---- C:\Windows\system32\fdeploy.dll
2013-10-10 14:56:58 ----A---- C:\Windows\system32\Faultrep.dll
2013-10-10 14:56:58 ----A---- C:\Windows\system32\drivers\ks.sys
2013-10-10 14:56:58 ----A---- C:\Windows\system32\cryptui.dll
2013-10-10 14:56:58 ----A---- C:\Windows\system32\adsldp.dll
2013-10-10 14:56:57 ----A---- C:\Windows\system32\wusa.exe
2013-10-10 14:56:57 ----A---- C:\Windows\system32\sud.dll
2013-10-10 14:56:57 ----A---- C:\Windows\system32\prnfldr.dll
2013-10-10 14:56:57 ----A---- C:\Windows\system32\photowiz.dll
2013-10-10 14:56:57 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-10-10 14:56:57 ----A---- C:\Windows\system32\msieftp.dll
2013-10-10 14:56:57 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-10-10 14:56:57 ----A---- C:\Windows\system32\ActionCenter.dll
2013-10-10 14:56:56 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-10-10 14:56:56 ----A---- C:\Windows\system32\slui.exe
2013-10-10 14:56:56 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-10-10 14:56:56 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-10-10 14:56:56 ----A---- C:\Windows\system32\iasrad.dll
2013-10-10 14:56:56 ----A---- C:\Windows\system32\halacpi.dll
2013-10-10 14:56:56 ----A---- C:\Windows\system32\ftp.exe
2013-10-10 14:56:56 ----A---- C:\Windows\system32\dot3cfg.dll
2013-10-10 14:56:56 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-10-10 14:56:56 ----A---- C:\Windows\system32\credssp.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\wpd_ci.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\syncui.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\sisbkup.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\shwebsvc.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\sdcpl.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\recovery.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\ifsutil.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\efscore.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\bcdedit.exe
2013-10-10 14:56:55 ----A---- C:\Windows\system32\autoplay.dll
2013-10-10 14:56:55 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\wmpmde.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\vdsutil.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\systemcpl.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\sppnp.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\rtutils.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\recdisc.exe
2013-10-10 14:56:54 ----A---- C:\Windows\system32\OobeFldr.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\ntprint.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\ntlanman.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\nshwfp.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\dskquoui.dll
2013-10-10 14:56:54 ----A---- C:\Windows\system32\bcdboot.exe
2013-10-10 14:56:53 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\sethc.exe
2013-10-10 14:56:53 ----A---- C:\Windows\system32\riched20.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\netplwiz.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-10-10 14:56:53 ----A---- C:\Windows\system32\migisol.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\httpapi.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\fms.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-10-10 14:56:53 ----A---- C:\Windows\system32\dpx.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\blackbox.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\AxInstSv.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-10-10 14:56:53 ----A---- C:\Windows\system32\activeds.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\wsqmcons.exe
2013-10-10 14:56:52 ----A---- C:\Windows\system32\wlanmsm.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\wavemsp.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\ReAgent.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\provsvc.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\nshipsec.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\msftedit.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\isoburn.exe
2013-10-10 14:56:52 ----A---- C:\Windows\system32\dot3ui.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\dot3svc.dll
2013-10-10 14:56:52 ----A---- C:\Windows\system32\dfrgui.exe
2013-10-10 14:56:52 ----A---- C:\Windows\system32\asycfilt.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\wvc.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\wtsapi32.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\wimgapi.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\tzutil.exe
2013-10-10 14:56:51 ----A---- C:\Windows\system32\twext.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\sysclass.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\PkgMgr.exe
2013-10-10 14:56:51 ----A---- C:\Windows\system32\ocsetup.exe
2013-10-10 14:56:51 ----A---- C:\Windows\system32\mstask.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\dsuiext.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-10-10 14:56:51 ----A---- C:\Windows\system32\certprop.dll
2013-10-10 14:56:51 ----A---- C:\Windows\system32\AdmTmpl.dll
2013-10-10 14:56:50 ----A---- C:\Windows\twain_32.dll
2013-10-10 14:56:50 ----A---- C:\Windows\system32\uxlib.dll
2013-10-10 14:56:50 ----A---- C:\Windows\system32\ssText3d.scr
2013-10-10 14:56:50 ----A---- C:\Windows\system32\srrstr.dll
2013-10-10 14:56:50 ----A---- C:\Windows\system32\SmiEngine.dll
2013-10-10 14:56:50 ----A---- C:\Windows\system32\slwga.dll
2013-10-10 14:56:50 ----A---- C:\Windows\system32\setupugc.exe
2013-10-10 14:56:50 ----A---- C:\Windows\system32\qcap.dll
2013-10-10 14:56:50 ----A---- C:\Windows\system32\qasf.dll
2013-10-10 14:56:50 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-10-10 14:56:50 ----A---- C:\Windows\system32\imm32.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\wwanconn.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\wimserv.exe
2013-10-10 14:56:49 ----A---- C:\Windows\system32\nslookup.exe
2013-10-10 14:56:49 ----A---- C:\Windows\system32\msvfw32.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\msscp.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\mciavi32.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\diskraid.exe
2013-10-10 14:56:49 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\clusapi.dll
2013-10-10 14:56:49 ----A---- C:\Windows\system32\audiodev.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\wmpdxm.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-10-10 14:56:48 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\TSpkg.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\sdrsvc.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\remotepg.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\rdpencom.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\raschap.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\QUTIL.DLL
2013-10-10 14:56:48 ----A---- C:\Windows\system32\perfmon.exe
2013-10-10 14:56:48 ----A---- C:\Windows\system32\olepro32.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\ocsetapi.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\networkexplorer.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-10-10 14:56:48 ----A---- C:\Windows\system32\input.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-10-10 14:56:48 ----A---- C:\Windows\system32\acppage.dll
2013-10-10 14:56:47 ----A---- C:\Windows\system32\wpdwcn.dll
2013-10-10 14:56:47 ----A---- C:\Windows\system32\vdsbas.dll
2013-10-10 14:56:47 ----A---- C:\Windows\system32\runonce.exe
2013-10-10 14:56:47 ----A---- C:\Windows\system32\onexui.dll
2013-10-10 14:56:47 ----A---- C:\Windows\system32\nltest.exe
2013-10-10 14:56:47 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-10-10 14:56:47 ----A---- C:\Windows\system32\logagent.exe
2013-10-10 14:56:47 ----A---- C:\Windows\system32\iTVData.dll
2013-10-10 14:56:47 ----A---- C:\Windows\system32\dxdiagn.dll
2013-10-10 14:56:47 ----A---- C:\Windows\system32\drivers\sdbus.sys
2013-10-10 14:56:47 ----A---- C:\Windows\bfsvc.exe
2013-10-10 14:56:46 ----A---- C:\Windows\system32\wmpshell.dll
2013-10-10 14:56:46 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-10-10 14:56:46 ----A---- C:\Windows\system32\unimdmat.dll
2013-10-10 14:56:46 ----A---- C:\Windows\system32\shacct.dll
2013-10-10 14:56:46 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-10-10 14:56:46 ----A---- C:\Windows\system32\msvidc32.dll
2013-10-10 14:56:46 ----A---- C:\Windows\system32\msiexec.exe
2013-10-10 14:56:46 ----A---- C:\Windows\system32\MFPlay.dll
2013-10-10 14:56:46 ----A---- C:\Windows\system32\lsmproxy.dll
2013-10-10 14:56:46 ----A---- C:\Windows\system32\eapp3hst.dll
2013-10-10 14:56:46 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-10-10 14:56:46 ----A---- C:\Windows\system32\bitsadmin.exe
2013-10-10 14:56:45 ----A---- C:\Windows\system32\WPDSp.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\tabcal.exe
2013-10-10 14:56:45 ----A---- C:\Windows\system32\srvcli.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\sqlcese30.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\rdpd3d.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\pdh.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\OpcServices.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\olethk32.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\ncryptui.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\mprapi.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\MdSched.exe
2013-10-10 14:56:45 ----A---- C:\Windows\system32\logman.exe
2013-10-10 14:56:45 ----A---- C:\Windows\system32\iscsium.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\djoin.exe
2013-10-10 14:56:45 ----A---- C:\Windows\system32\cscapi.dll
2013-10-10 14:56:45 ----A---- C:\Windows\system32\Bubbles.scr

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#2 Příspěvek od zbynadovirycz »

2013-10-10 14:56:44 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-10-10 14:56:44 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-10-10 14:56:44 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2013-10-10 14:56:44 ----A---- C:\Windows\system32\wiavideo.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\utildll.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\takeown.exe
2013-10-10 14:56:44 ----A---- C:\Windows\system32\Ribbons.scr
2013-10-10 14:56:44 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-10-10 14:56:44 ----A---- C:\Windows\system32\Mystify.scr
2013-10-10 14:56:44 ----A---- C:\Windows\system32\mapistub.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\mapi32.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\lpremove.exe
2013-10-10 14:56:44 ----A---- C:\Windows\system32\iyuv_32.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\fphc.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\dot3msm.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\CscMig.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\avifil32.dll
2013-10-10 14:56:44 ----A---- C:\Windows\system32\ActionQueue.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\unattend.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\sppinst.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\RelPost.exe
2013-10-10 14:56:43 ----A---- C:\Windows\system32\qprocess.exe
2013-10-10 14:56:43 ----A---- C:\Windows\system32\qdv.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-10-10 14:56:43 ----A---- C:\Windows\system32\msyuv.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\msrle32.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\msnetobj.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-10-10 14:56:43 ----A---- C:\Windows\system32\cmstp.exe
2013-10-10 14:56:43 ----A---- C:\Windows\system32\cca.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\wsnmp32.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-10-10 14:56:42 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\umb.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\tsbyuv.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\setupcln.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\relog.exe
2013-10-10 14:56:42 ----A---- C:\Windows\system32\qwinsta.exe
2013-10-10 14:56:42 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\pdhui.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\MuiUnattend.exe
2013-10-10 14:56:42 ----A---- C:\Windows\system32\msorcl32.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\msg.exe
2013-10-10 14:56:42 ----A---- C:\Windows\system32\iasrecst.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\chglogon.exe
2013-10-10 14:56:42 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-10-10 14:56:42 ----A---- C:\Windows\system32\basesrv.dll
2013-10-10 14:56:42 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\wmpps.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\wkscli.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\WavDest.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\syssetup.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\sppuinotify.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\spbcd.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\resutils.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\rastapi.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\quser.exe
2013-10-10 14:56:41 ----A---- C:\Windows\system32\qappsrv.exe
2013-10-10 14:56:41 ----A---- C:\Windows\system32\nrpsrv.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\netiougc.exe
2013-10-10 14:56:41 ----A---- C:\Windows\system32\netbtugc.exe
2013-10-10 14:56:41 ----A---- C:\Windows\system32\mydocs.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-10-10 14:56:41 ----A---- C:\Windows\system32\itircl.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\iscsicli.exe
2013-10-10 14:56:41 ----A---- C:\Windows\system32\chgport.exe
2013-10-10 14:56:41 ----A---- C:\Windows\system32\diskpart.exe
2013-10-10 14:56:41 ----A---- C:\Windows\system32\CertPolEng.dll
2013-10-10 14:56:41 ----A---- C:\Windows\system32\amstream.dll
2013-10-10 14:56:40 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\tskill.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\tsdiscon.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\tscon.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\tlscsp.dll
2013-10-10 14:56:40 ----A---- C:\Windows\system32\rwinsta.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\ReAgentc.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\PrintBrmUi.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\netutils.dll
2013-10-10 14:56:40 ----A---- C:\Windows\system32\logoff.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\chgusr.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-10-10 14:56:40 ----A---- C:\Windows\system32\findstr.exe
2013-10-10 14:56:40 ----A---- C:\Windows\system32\eappgnui.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\wiarpc.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\sppc.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\spopk.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\shimgvw.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\shadow.exe
2013-10-10 14:56:39 ----A---- C:\Windows\system32\repair-bde.exe
2013-10-10 14:56:39 ----A---- C:\Windows\system32\muifontsetup.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\mobsync.exe
2013-10-10 14:56:39 ----A---- C:\Windows\system32\mciqtz32.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\luainstall.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\iccvid.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-10-10 14:56:39 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-10-10 14:56:39 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-10-10 14:56:39 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-10-10 14:56:39 ----A---- C:\Windows\system32\dosx.exe
2013-10-10 14:56:39 ----A---- C:\Windows\system32\cabinet.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\vmstorfltres.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\vmicres.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\vmbusres.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\unlodctr.exe
2013-10-10 14:56:38 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\reset.exe
2013-10-10 14:56:38 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\query.exe
2013-10-10 14:56:38 ----A---- C:\Windows\system32\odbcconf.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\netcfg.exe
2013-10-10 14:56:38 ----A---- C:\Windows\system32\msdmo.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\manage-bde.exe
2013-10-10 14:56:38 ----A---- C:\Windows\system32\inetmib1.dll
2013-10-10 14:56:38 ----A---- C:\Windows\system32\change.exe
2013-10-10 14:56:38 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-10-10 14:56:37 ----A---- C:\Windows\system32\TRAPI.dll
2013-10-10 14:56:37 ----A---- C:\Windows\system32\perfts.dll
2013-10-10 14:56:37 ----A---- C:\Windows\system32\icaapi.dll
2013-10-10 14:56:37 ----A---- C:\Windows\system32\FXSMON.dll
2013-10-10 14:56:37 ----A---- C:\Windows\system32\elsTrans.dll
2013-10-10 14:56:37 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-10-10 14:56:37 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-10-10 14:56:36 ----A---- C:\Windows\system32\wshbth.dll
2013-10-10 14:56:36 ----A---- C:\Windows\system32\sscore.dll
2013-10-10 14:56:36 ----A---- C:\Windows\system32\schedcli.dll
2013-10-10 14:56:36 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-10-10 14:56:36 ----A---- C:\Windows\system32\napdsnap.dll
2013-10-10 14:56:36 ----A---- C:\Windows\system32\LogonUI.exe
2013-10-10 14:56:36 ----A---- C:\Windows\system32\dsauth.dll
2013-10-10 14:56:36 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-10-10 14:56:36 ----A---- C:\Windows\system32\cscdll.dll
2013-10-10 14:56:36 ----A---- C:\Windows\system32\bitsperf.dll
2013-10-10 14:56:35 ----A---- C:\Windows\system32\wsdchngr.dll
2013-10-10 14:56:35 ----A---- C:\Windows\system32\shgina.dll
2013-10-10 14:56:35 ----A---- C:\Windows\system32\riched32.dll
2013-10-10 14:56:35 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-10-10 14:56:35 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2013-10-10 14:56:35 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-10-10 14:56:35 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-10-10 14:56:34 ----A---- C:\Windows\system32\wshirda.dll
2013-10-10 14:56:34 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-10-10 14:56:34 ----A---- C:\Windows\system32\drivers\appid.sys
2013-10-10 14:56:33 ----A---- C:\Windows\system32\vmictimeprovider.dll
2013-10-10 14:56:33 ----A---- C:\Windows\system32\VmdCoinstall.dll
2013-10-10 14:56:33 ----A---- C:\Windows\system32\vmbuspipe.dll
2013-10-10 14:56:33 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2013-10-10 14:56:33 ----A---- C:\Windows\system32\spwmp.dll
2013-10-10 14:56:33 ----A---- C:\Windows\system32\IcCoinstall.dll
2013-10-10 14:56:33 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-10-10 14:56:33 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2013-10-10 14:56:33 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-10-10 14:56:33 ----A---- C:\Windows\system32\browseui.dll
2013-10-10 14:56:32 ----A---- C:\Windows\system32\shunimpl.dll
2013-10-10 14:56:32 ----A---- C:\Windows\system32\RDPREFDD.dll
2013-10-10 14:56:32 ----A---- C:\Windows\system32\dxmasf.dll
2013-10-10 14:56:32 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-10-10 14:56:32 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-10-10 14:56:32 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-10-10 14:56:32 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-10-10 14:56:32 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2013-10-10 14:56:32 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-10-10 14:56:32 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-10-10 14:56:32 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\wmploc.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDUS.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDMON.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-10-10 14:56:31 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\spwizres.dll
2013-10-10 14:56:30 ----A---- C:\Windows\system32\pifmgr.dll
2013-10-10 14:56:30 ----A---- C:\Windows\system32\nlsbres.dll
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDSG.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDSF.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDPO.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-10-10 14:56:30 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2013-10-10 14:56:30 ----A---- C:\Windows\system32\BlbEvents.dll
2013-10-10 14:56:24 ----A---- C:\Windows\system32\wdscore.dll
2013-10-10 14:56:10 ----A---- C:\Windows\system32\wbemcomn.dll
2013-10-10 14:55:58 ----A---- C:\Windows\system32\sqmapi.dll
2013-10-10 14:21:33 ----D---- C:\ProgramData\BrowserProtect
2013-10-10 14:21:33 ----D---- C:\ProgramData\Browser Manager
2013-10-10 14:21:33 ----D---- C:\ProgramData\BitGuard
2013-10-10 14:14:45 ----D---- C:\Program Files\Microsoft Synchronization Services
2013-10-10 14:14:43 ----D---- C:\Program Files\Common Files\DESIGNER
2013-10-10 14:14:17 ----D---- C:\Windows\PCHEALTH
2013-10-10 14:14:17 ----D---- C:\Program Files\Microsoft Sync Framework
2013-10-10 14:14:17 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2013-10-10 14:12:15 ----D---- C:\Program Files\Microsoft Visual Studio 8
2013-10-10 14:11:27 ----D---- C:\Program Files\Microsoft Analysis Services
2013-10-10 14:11:07 ----D---- C:\Program Files\Microsoft Office
2013-10-10 14:11:06 ----D---- C:\ProgramData\Microsoft Help
2013-10-10 14:10:43 ----RHD---- C:\MSOCache
2013-10-10 13:51:23 ----D---- C:\Program Files\Minibar
2013-10-10 13:51:15 ----D---- C:\Program Files\DiVapton
2013-10-10 13:50:54 ----D---- C:\ProgramData\Wincert
2013-10-10 13:50:20 ----D---- C:\Program Files\Movies Toolbar
2013-10-10 13:50:13 ----D---- C:\ProgramData\SafetyNut
2013-10-10 13:40:29 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-10-10 13:40:26 ----D---- C:\Windows\system32\Macromed
2013-10-10 13:18:29 ----HD---- C:\Windows\system32\WLANProfiles
2013-10-10 13:16:11 ----D---- C:\Program Files\Common Files\Intel
2013-10-10 13:15:54 ----D---- C:\ProgramData\Intel.sav
2013-10-10 13:02:34 ----D---- C:\Windows\Dell
2013-10-10 13:02:11 ----D---- C:\Program Files\DellTPad
2013-10-10 12:59:30 ----D---- C:\Program Files\Microsoft.NET
2013-10-10 12:55:14 ----D---- C:\Dell
2013-10-10 12:49:33 ----D---- C:\Program Files\WIDCOMM
2013-10-10 12:46:10 ----D---- C:\Users\Admin\AppData\Roaming\Intel
2013-10-10 12:46:02 ----D---- C:\ProgramData\Roaming
2013-10-10 12:44:10 ----D---- C:\ProgramData\Intel
2013-10-10 12:44:10 ----D---- C:\Program Files\Cisco
2013-10-10 12:43:09 ----D---- C:\ProgramData\Dell
2013-10-10 12:37:48 ----D---- C:\Users\Admin\AppData\Roaming\GHISLER
2013-10-10 12:37:48 ----D---- C:\totalcmd
2013-10-10 12:35:32 ----D---- C:\Users\Admin\AppData\Roaming\Macromedia
2013-10-10 12:35:32 ----D---- C:\Users\Admin\AppData\Roaming\Adobe
2013-10-10 12:24:48 ----SHD---- C:\Windows\Installer
2013-10-10 12:24:48 ----D---- C:\Program Files\Microsoft Security Client
2013-10-10 12:23:38 ----D---- C:\e6ba97d4c17c1439a7e5d283cf6107
2013-10-10 11:34:59 ----A---- C:\Windows\system32\esent.dll
2013-10-10 11:34:59 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-10-10 11:34:59 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-10-10 11:34:58 ----A---- C:\Windows\system32\fsutil.exe
2013-10-10 11:34:58 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-10-10 11:34:58 ----A---- C:\Windows\system32\drivers\storport.sys
2013-10-10 11:34:58 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-10-10 11:34:58 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-10-10 11:34:56 ----A---- C:\Windows\system32\drivers\bthport.sys
2013-10-10 11:34:55 ----A---- C:\Windows\system32\fsquirt.exe
2013-10-10 11:34:55 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2013-10-09 15:04:21 ----N---- C:\Windows\system32\MpSigStub.exe
2013-10-09 14:57:57 ----D---- C:\Program Files\Intel
2013-10-09 14:57:57 ----D---- C:\Intel
2013-10-09 14:57:10 ----A---- C:\Windows\system32\Wdfres.dll
2013-10-09 14:57:10 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-10-09 14:56:37 ----A---- C:\Windows\system32\WUDFx.dll
2013-10-09 14:56:37 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-10-09 14:56:37 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-10-09 14:56:37 ----A---- C:\Windows\system32\WUDFHost.exe
2013-10-09 14:56:37 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-10-09 14:56:37 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-10-09 14:56:37 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-10-09 14:55:48 ----A---- C:\Windows\system32\wmi.dll
2013-10-09 14:55:48 ----A---- C:\Windows\system32\imagehlp.dll
2013-10-09 14:55:48 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-10-09 14:55:06 ----A---- C:\Windows\system32\browserchoice.exe
2013-10-09 14:50:46 ----D---- C:\Windows\system32\MRT
2013-10-09 14:50:42 ----A---- C:\Windows\system32\MRT.exe
2013-10-09 14:49:31 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-10-09 14:48:55 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-10-09 14:48:48 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-10-09 14:48:48 ----A---- C:\Windows\system32\drivers\srv.sys
2013-10-09 14:48:47 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-10-09 14:48:37 ----A---- C:\Windows\system32\spoolsv.exe
2013-10-09 14:48:22 ----A---- C:\Windows\system32\usp10.dll
2013-10-09 14:48:21 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-10-09 14:48:19 ----A---- C:\Windows\system32\dpnet.dll
2013-10-09 14:48:19 ----A---- C:\Windows\system32\dpnaddr.dll
2013-10-09 14:48:15 ----A---- C:\Windows\system32\prevhost.exe
2013-10-09 14:48:14 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-10-09 14:48:14 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-10-09 14:48:14 ----A---- C:\Windows\system32\dnsapi.dll
2013-10-09 14:48:07 ----A---- C:\Windows\system32\webio.dll
2013-10-09 14:47:59 ----A---- C:\Windows\explorer.exe
2013-10-09 14:47:55 ----A---- C:\Windows\system32\Wpc.dll
2013-10-09 14:47:55 ----A---- C:\Windows\system32\gameux.dll
2013-10-09 14:47:49 ----A---- C:\Windows\system32\cdosys.dll
2013-10-09 14:47:43 ----A---- C:\Windows\system32\smss.exe
2013-10-09 14:47:43 ----A---- C:\Windows\system32\csrsrv.dll
2013-10-09 14:47:41 ----A---- C:\Windows\system32\sspisrv.dll
2013-10-09 14:47:41 ----A---- C:\Windows\system32\sspicli.dll
2013-10-09 14:47:41 ----A---- C:\Windows\system32\secur32.dll
2013-10-09 14:47:41 ----A---- C:\Windows\system32\lsass.exe
2013-10-09 14:47:41 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-10-09 14:47:37 ----A---- C:\Windows\system32\profsvc.dll
2013-10-09 14:47:37 ----A---- C:\Windows\system32\profprov.dll
2013-10-09 14:47:35 ----A---- C:\Windows\system32\rdpcore.dll
2013-10-09 14:47:35 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-10-09 14:47:35 ----A---- C:\Windows\system32\drivers\tdpipe.sys
2013-10-09 14:47:33 ----A---- C:\Windows\system32\ntshrui.dll
2013-10-09 14:47:32 ----A---- C:\Windows\system32\drivers\netio.sys
2013-10-09 14:47:32 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-10-09 14:47:31 ----A---- C:\Windows\system32\quartz.dll
2013-10-09 14:47:28 ----A---- C:\Windows\system32\sbe.dll
2013-10-09 14:47:28 ----A---- C:\Windows\system32\CPFilters.dll
2013-10-09 14:47:26 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-10-09 14:47:26 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-10-09 14:47:26 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-10-09 14:47:25 ----A---- C:\Windows\system32\kerberos.dll
2013-10-09 14:47:25 ----A---- C:\Windows\system32\EncDec.dll
2013-10-09 14:47:21 ----A---- C:\Windows\system32\odbctrac.dll
2013-10-09 14:47:21 ----A---- C:\Windows\system32\odbcjt32.dll
2013-10-09 14:47:21 ----A---- C:\Windows\system32\odbccu32.dll
2013-10-09 14:47:21 ----A---- C:\Windows\system32\odbccr32.dll
2013-10-09 14:47:21 ----A---- C:\Windows\system32\odbccp32.dll
2013-10-09 14:47:18 ----A---- C:\Windows\system32\msxml3.dll
2013-10-09 14:47:17 ----A---- C:\Windows\system32\msxml3r.dll
2013-10-09 14:47:14 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-10-09 14:47:12 ----A---- C:\Windows\system32\packager.dll
2013-10-09 14:47:10 ----A---- C:\Windows\system32\msvcrt.dll
2013-10-09 14:47:09 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-10-09 14:47:09 ----A---- C:\Windows\system32\rdpwsx.dll
2013-10-09 14:47:09 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-10-09 14:47:05 ----A---- C:\Windows\system32\psisdecd.dll
2013-10-09 14:47:04 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-10-09 14:47:04 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-10-09 14:47:03 ----A---- C:\Windows\system32\msxml6.dll
2013-10-09 14:47:01 ----A---- C:\Windows\system32\synceng.dll
2013-10-09 14:47:00 ----A---- C:\Windows\system32\msi.dll
2013-10-09 14:46:56 ----A---- C:\Windows\system32\oleaut32.dll
2013-10-09 14:46:56 ----A---- C:\Windows\system32\oleacc.dll
2013-10-09 14:46:55 ----A---- C:\Windows\system32\xmllite.dll
2013-10-09 14:46:55 ----A---- C:\Windows\system32\inetcomm.dll
2013-10-09 14:46:54 ----A---- C:\Windows\system32\ncrypt.dll
2013-10-09 14:46:52 ----A---- C:\Windows\system32\netapi32.dll
2013-10-09 14:46:52 ----A---- C:\Windows\system32\browser.dll
2013-10-09 14:46:52 ----A---- C:\Windows\system32\browcli.dll
2013-10-09 14:46:51 ----A---- C:\Windows\system32\localspl.dll
2013-10-09 14:46:50 ----A---- C:\Windows\system32\srcore.dll
2013-10-09 14:46:49 ----A---- C:\Windows\system32\rstrui.exe
2013-10-09 14:46:46 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-10-09 14:46:44 ----A---- C:\Windows\system32\WFS.exe
2013-10-09 14:46:44 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-10-09 14:46:38 ----A---- C:\Windows\system32\tquery.dll
2013-10-09 14:46:38 ----A---- C:\Windows\system32\mssrch.dll
2013-10-09 14:46:37 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-10-09 14:46:37 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-10-09 14:46:37 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-10-09 14:46:37 ----A---- C:\Windows\system32\mssvp.dll
2013-10-09 14:46:37 ----A---- C:\Windows\system32\mssphtb.dll
2013-10-09 14:46:37 ----A---- C:\Windows\system32\mssph.dll
2013-10-09 14:46:37 ----A---- C:\Windows\system32\msscntrs.dll
2013-10-09 14:41:27 ----A---- C:\Windows\system32\poqexec.exe
2013-10-09 14:40:30 ----A---- C:\Windows\system32\mfc42u.dll
2013-10-09 14:40:30 ----A---- C:\Windows\system32\mfc42.dll
2013-10-09 14:38:01 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-10-09 14:34:28 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-10-09 14:34:13 ----A---- C:\Windows\system32\cdd.dll
2013-10-09 00:01:14 ----D---- C:\Windows\Panther
2013-10-09 00:00:49 ----RA---- C:\Windows\csup.txt
2013-10-09 00:00:49 ----D---- C:\Windows\system32\oem
2013-10-09 00:00:24 ----A---- C:\Windows\system32\perfi005.dat
2013-10-09 00:00:24 ----A---- C:\Windows\system32\perfh005.dat
2013-10-09 00:00:24 ----A---- C:\Windows\system32\perfd005.dat
2013-10-09 00:00:24 ----A---- C:\Windows\system32\perfc005.dat
2013-10-09 00:00:05 ----D---- C:\Windows\cs-CZ
2013-10-09 00:00:04 ----D---- C:\Windows\system32\cs
2013-10-09 00:00:03 ----D---- C:\Windows\system32\XPSViewer
2013-10-09 00:00:03 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-10-08 14:27:04 ----A---- C:\Windows\system32\wups2.dll
2013-10-08 14:27:04 ----A---- C:\Windows\system32\wucltux.dll
2013-10-08 14:27:04 ----A---- C:\Windows\system32\wuaueng.dll
2013-10-08 14:27:04 ----A---- C:\Windows\system32\wuauclt.exe
2013-10-08 14:26:54 ----A---- C:\Windows\system32\wups.dll
2013-10-08 14:26:54 ----A---- C:\Windows\system32\wudriver.dll
2013-10-08 14:26:54 ----A---- C:\Windows\system32\wuapi.dll
2013-10-08 14:26:47 ----A---- C:\Windows\system32\wuwebv.dll
2013-10-08 14:26:47 ----A---- C:\Windows\system32\wuapp.exe
2013-10-08 14:10:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-10-08 14:09:53 ----D---- C:\Users\Admin\AppData\Roaming\Identities
2013-10-08 14:09:30 ----SD---- C:\Users\Admin\AppData\Roaming\Microsoft
2013-10-08 14:09:30 ----D---- C:\Users\Admin\AppData\Roaming\Media Center Programs
2013-10-08 14:09:23 ----SHD---- C:\Recovery
2013-10-08 14:09:23 ----SHD---- C:\ProgramData\Šablony
2013-10-08 14:09:23 ----SHD---- C:\ProgramData\Plocha
2013-10-08 14:09:23 ----SHD---- C:\ProgramData\Oblíbené položky
2013-10-08 14:09:23 ----SHD---- C:\ProgramData\Nabídka Start
2013-10-08 14:09:23 ----SHD---- C:\ProgramData\Dokumenty
2013-10-08 14:09:23 ----SHD---- C:\ProgramData\Data aplikací
2013-10-08 14:04:42 ----D---- C:\Windows\SoftwareDistribution
2013-10-08 14:02:15 ----D---- C:\Windows\Prefetch
2013-10-08 14:01:51 ----SHD---- C:\System Volume Information
2013-10-08 14:01:51 ----ASH---- C:\pagefile.sys
2013-10-08 14:01:51 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2013-10-14 15:11:18 ----RD---- C:\Program Files
2013-10-14 15:09:55 ----D---- C:\Windows\Temp
2013-10-14 15:07:57 ----D---- C:\Windows\System32
2013-10-14 15:07:57 ----D---- C:\Windows\inf
2013-10-14 15:03:58 ----D---- C:\Windows\system32\config
2013-10-14 13:49:44 ----D---- C:\Windows\system32\drivers
2013-10-14 13:49:42 ----D---- C:\Windows
2013-10-12 12:48:33 ----D---- C:\Windows\rescache
2013-10-11 16:09:31 ----D---- C:\Windows\winsxs
2013-10-11 15:59:32 ----D---- C:\Windows\system32\catroot2
2013-10-11 15:51:14 ----D---- C:\Windows\system32\catroot
2013-10-11 15:47:00 ----HD---- C:\ProgramData
2013-10-11 15:42:53 ----D---- C:\Program Files\Common Files
2013-10-11 15:42:23 ----D---- C:\Windows\system32\DriverStore
2013-10-11 14:58:35 ----D---- C:\Windows\Microsoft.NET
2013-10-11 14:58:33 ----RSD---- C:\Windows\assembly
2013-10-10 23:10:37 ----D---- C:\Windows\system32\wfp
2013-10-10 23:10:37 ----D---- C:\Windows\system32\CodeIntegrity
2013-10-10 23:10:37 ----D---- C:\Windows\security
2013-10-10 23:10:24 ----D---- C:\Windows\registration
2013-10-10 21:24:38 ----D---- C:\Windows\system32\wbem
2013-10-10 21:24:38 ----D---- C:\Windows\system32\en-US
2013-10-10 21:24:38 ----D---- C:\Windows\system32\drivers\en-US
2013-10-10 21:24:38 ----D---- C:\Windows\system32\cs-CZ
2013-10-10 21:24:38 ----D---- C:\Windows\PolicyDefinitions
2013-10-10 21:24:36 ----D---- C:\Windows\system32\migration
2013-10-10 21:24:36 ----D---- C:\Windows\AppPatch
2013-10-10 21:24:35 ----D---- C:\Program Files\Windows Journal
2013-10-10 21:24:33 ----D---- C:\Program Files\Windows Defender
2013-10-10 21:24:32 ----D---- C:\Program Files\Internet Explorer
2013-10-10 21:24:30 ----D---- C:\Windows\system32\zh-HK
2013-10-10 21:24:30 ----D---- C:\Windows\system32\tr-TR
2013-10-10 21:24:30 ----D---- C:\Windows\system32\pt-PT
2013-10-10 21:24:30 ----D---- C:\Windows\system32\pt-BR
2013-10-10 21:24:30 ----D---- C:\Windows\system32\pl-PL
2013-10-10 21:24:30 ----D---- C:\Windows\system32\nl-NL
2013-10-10 21:24:30 ----D---- C:\Windows\system32\ko-KR
2013-10-10 21:24:30 ----D---- C:\Windows\system32\it-IT
2013-10-10 21:24:30 ----D---- C:\Windows\system32\hu-HU
2013-10-10 21:24:30 ----D---- C:\Windows\system32\fr-FR
2013-10-10 21:24:30 ----D---- C:\Windows\system32\fi-FI
2013-10-10 21:24:30 ----D---- C:\Windows\system32\el-GR
2013-10-10 21:24:29 ----D---- C:\Windows\system32\zh-TW
2013-10-10 21:24:29 ----D---- C:\Windows\system32\zh-CN
2013-10-10 21:24:29 ----D---- C:\Windows\system32\sv-SE
2013-10-10 21:24:29 ----D---- C:\Windows\system32\ru-RU
2013-10-10 21:24:29 ----D---- C:\Windows\system32\nb-NO
2013-10-10 21:24:29 ----D---- C:\Windows\system32\ja-JP
2013-10-10 21:24:29 ----D---- C:\Windows\system32\es-ES
2013-10-10 21:24:29 ----D---- C:\Windows\system32\de-DE
2013-10-10 21:24:29 ----D---- C:\Windows\system32\da-DK
2013-10-10 20:09:18 ----D---- C:\Windows\Logs
2013-10-10 19:35:45 ----RSD---- C:\Windows\Fonts
2013-10-10 19:31:22 ----D---- C:\Windows\system32\Tasks
2013-10-10 19:22:07 ----D---- C:\Windows\system32\LogFiles
2013-10-10 19:05:26 ----D---- C:\Program Files\Common Files\System
2013-10-10 19:05:26 ----A---- C:\Windows\win.ini
2013-10-10 18:36:27 ----D---- C:\Windows\Tasks
2013-10-10 18:07:02 ----HD---- C:\Windows\system32\GroupPolicy
2013-10-10 18:06:16 ----A---- C:\Windows\system32\bioapi100.dll
2013-10-10 18:06:16 ----A---- C:\Windows\system32\bioapi_mds300.dll
2013-10-10 17:42:33 ----D---- C:\Program Files\Common Files\microsoft shared
2013-10-10 16:50:40 ----SD---- C:\ProgramData\Microsoft
2013-10-10 15:37:31 ----D---- C:\Program Files\Windows Sidebar
2013-10-10 15:37:31 ----D---- C:\Program Files\Windows Portable Devices
2013-10-10 15:37:31 ----D---- C:\Program Files\Windows Photo Viewer
2013-10-10 15:37:31 ----D---- C:\Program Files\Windows Media Player
2013-10-10 15:37:31 ----D---- C:\Program Files\Windows Mail
2013-10-10 15:37:31 ----D---- C:\Program Files\DVD Maker
2013-10-10 15:37:29 ----D---- C:\Windows\servicing
2013-10-10 15:37:29 ----D---- C:\Windows\ehome
2013-10-10 15:37:27 ----D---- C:\Windows\system32\sysprep
2013-10-10 15:37:27 ----D---- C:\Windows\system32\oobe
2013-10-10 15:37:26 ----D---- C:\Windows\system32\Setup
2013-10-10 15:37:26 ----D---- C:\Windows\system32\AdvancedInstallers
2013-10-10 15:37:25 ----D---- C:\Windows\system32\sppui
2013-10-10 15:37:25 ----D---- C:\Windows\system32\manifeststore
2013-10-10 15:37:22 ----D---- C:\Windows\system32\migwiz
2013-10-10 15:37:22 ----D---- C:\Windows\system32\Dism
2013-10-10 15:36:55 ----D---- C:\Windows\system32\Boot
2013-10-10 15:35:00 ----D---- C:\Windows\system32\wdi
2013-10-10 15:30:51 ----A---- C:\Windows\system32\msclmd.dll
2013-10-10 14:15:29 ----D---- C:\Windows\ShellNew
2013-10-10 14:15:15 ----D---- C:\Program Files\MSBuild
2013-10-10 13:40:36 ----D---- C:\Windows\Downloaded Program Files
2013-10-10 12:19:41 ----D---- C:\Windows\system32\drivers\UMDF
2013-10-09 16:07:50 ----D---- C:\Windows\en-US
2013-10-09 16:07:49 ----D---- C:\Windows\system32\winrm
2013-10-09 16:07:49 ----D---- C:\Windows\system32\slmgr
2013-10-09 16:07:49 ----D---- C:\Windows\system32\en
2013-10-09 16:07:37 ----D---- C:\Windows\system32\WCN
2013-10-09 16:07:35 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2013-10-09 16:07:34 ----D---- C:\Windows\Speech
2013-10-09 14:50:46 ----D---- C:\Windows\debug
2013-10-09 00:00:49 ----D---- C:\Windows\Setup
2013-10-09 00:00:05 ----D---- C:\Windows\IME
2013-10-09 00:00:03 ----D---- C:\Windows\system32\MUI
2013-10-09 00:00:03 ----D---- C:\Windows\system32\com
2013-10-08 14:26:35 ----D---- C:\Windows\system32\restore
2013-10-08 14:09:49 ----SHD---- C:\$Recycle.Bin
2013-10-08 14:09:30 ----RD---- C:\Users
2013-10-08 14:09:23 ----D---- C:\Program Files\Windows NT
2013-10-08 14:02:34 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-06-18 211560]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2013-10-10 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 MpKsl979763a9;MpKsl979763a9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{84AED93D-6ED8-4E29-9B43-8E5BD988DC9C}\MpKsl979763a9.sys [2013-10-14 40392]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-06-18 107392]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2013-02-21 408368]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver; C:\Windows\system32\DRIVERS\CtClsFlt.sys [2009-06-15 143968]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2009-09-17 41088]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2011-01-12 9035776]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 132480]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-08-31 269824]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2009-06-17 35472]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2009-06-17 37392]
R3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2009-06-17 28560]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\Netwsn00.sys [2012-09-30 10383360]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;@%SystemRoot%\system32\stlang.dll,-10322; C:\Windows\system32\DRIVERS\stwrt.sys [2010-07-22 431616]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
S2 risdpcie;risdpcie; C:\Windows\system32\DRIVERS\risdpe86.sys [2009-06-30 49152]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 CtAudDrv;Provides advanced audio effects for audio devices.; \??\C:\Windows\system32\Drivers\CtAudDrv.sys [2009-05-28 134144]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\aestsrv.exe [2009-03-03 81920]
R2 ATService;AuthenTec Fingerprint Service; C:\Program Files\Fingerprint Sensor\AtService.exe [2012-02-02 1787720]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DFEPService;Dell Feature Enhancement Pack Service; C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe [2013-01-22 1569784]
R2 EmbassyService;EmbassyService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe [2012-01-17 179592]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2012-08-23 500528]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-07-09 325656]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-08-12 22208]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2012-08-23 108336]
R2 SafetyNutManager;SafetyNut Manager; C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe [2013-09-25 3419144]
R2 STacSV;@%SystemRoot%\system32\stlang.dll,-10122; C:\Program Files\IDT\WDM\STacSV.exe [2010-07-22 245842]
R2 TdmService;TdmService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe [2011-12-08 2864496]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-07-09 2533400]
R2 Wave Authentication Manager Service;Wave Authentication Manager Service; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe [2012-01-05 1189376]
R2 ZeroConfigService;Intel(R) PROSet/Wireless Zero Configuration Service; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2012-08-23 2778416]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-08-12 295376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-10-10 116648]
S2 tcsd_win32.exe;NTRU TSS v1.2.1.37 TCS; C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe [2011-10-08 1637888]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-10 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-10-10 116648]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-10-10 194032]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-03-09 30798512]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2012-08-23 242480]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SecureStorageService;SecureStorageService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Secure Storage Manager\SecureStorageService.exe [2011-11-11 1517448]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-10-10 1343400]
S3 WvPCR;WvPCR; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Common\WvPCR.exe [2012-01-16 145408]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kotrolu logu - DiVapton a další

#3 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) http://forum.viry.cz/viewtopic.php?f=29&t=115222
  • Provedte aktualizaci
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#4 Příspěvek od zbynadovirycz »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.4 (10.06.2013:1)
OS: Windows 7 Professional x86
Ran by Admin on po 14.10.2013 at 15:49:21,73
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\sdp
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{3444c3c5-6c56-4a16-a453-832b05bf6ea4}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\apn dtx
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bi
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\somoto
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\filesfrog update checker
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA74D58F-ACD0-450D-A85E-6C04B171C044}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\wincert"
Successfully deleted: [Folder] "C:\Users\Admin\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\Admin\appdata\local\filesfrog update checker"
Successfully deleted: [Folder] "C:\Users\Admin\appdata\local\minibar"
Successfully deleted: [Folder] "C:\Users\Admin\appdata\locallow\datamngr"
Successfully deleted: [Folder] "C:\Users\Admin\appdata\locallow\minibar"
Successfully deleted: [Folder] "C:\Users\Admin\appdata\locallow\searchresultstb"
Successfully deleted: [Folder] "C:\Program Files\minibar"
Failed to delete: [Folder] "C:\Program Files\movies toolbar"
Successfully deleted: [Folder] "C:\Users\Admin\AppData\Roaming\microsoft\windows\start menu\programs\filesfrog update checker"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 14.10.2013 at 15:51:22,52
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~





# AdwCleaner v3.007 - Report created 14/10/2013 at 16:00:53
# Updated 09/10/2013 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : Admin - DELL_E5410
# Running from : C:\Users\Admin\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

[#] Folder Deleted : C:\ProgramData\BitGuard
[#] Folder Deleted : C:\ProgramData\Browser Manager
[#] Folder Deleted : C:\ProgramData\BrowserProtect
[!] Folder Deleted : C:\Program Files\Movies Toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [AppsHat]
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{539F76FD-084E-4858-86D5-62F02F54AE86}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{60EACC1A-33FA-443D-9846-17B28E2C9BDB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06E50566-0AB7-431C-841D-62794727DAF9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F13D3582-1359-4F8F-9A48-EF3AE9F5701C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{539F76FD-084E-4858-86D5-62F02F54AE86}]
Key Deleted : HKCU\Software\Webplayer
Key Deleted : HKLM\Software\Minibar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16720


-\\ Google Chrome v30.0.1599.69

[ File : C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [3311 octets] - [14/10/2013 15:57:04]
AdwCleaner[S0].txt - [3140 octets] - [14/10/2013 16:00:53]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3200 octets] ##########



Malwarebytes Anti-Malware 1.75.0.1300
http://www.malwarebytes.org

Verze: v2013.10.14.05

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16721
Admin :: DELL_E5410 [administrátor]

14.10.2013 16:17:44
MBAM-log-2013-10-14 (17-16-44).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 354188
Uplynulý čas: 58 minut, 11 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 10
HKCR\CLSID\{3444c3c5-6c56-4a16-a453-832b05bf6ea4} (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3444C3C5-6C56-4A16-A453-832B05BF6EA4} (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{3444C3C5-6C56-4A16-A453-832B05BF6EA4} (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3444C3C5-6C56-4A16-A453-832B05BF6EA4} (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3444C3C5-6C56-4A16-A453-832B05BF6EA4} (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
HKCU\Software\somotomoviestoolbar1 (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard.1 (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\SAFETYNUT (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 1
HKLM\SOFTWARE\SafetyNut|browser (PUP.Optional.SafetyNut.A) -> Data: ie ff cr -> Nebyla provedena žádná instrukce.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 1
C:\ProgramData\SafetyNut (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.

Nalezené soubory: 18
C:\Users\Admin\AppData\Local\Application Data\Bundled software uninstaller\biclient (1).exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Application Data\Bundled software uninstaller\biclient.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\AppsHat Mobile Apps\Uninstall.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9100T11\minibar-core[1].exe (PUP.Optional.MiniBar.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\P7M8IIX0\VideoConverterSetup[1].exe (PUP.Optional.Somoto) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\P4WX1YJ3\VideoConverterSetup[1].exe (PUP.Optional.Somoto) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\appshat-distribution.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\MoviesToolbarSetup_Somoto29_9_13.exe (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\BabylonTB.exe (PUP.Optional.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\BI_RunOnce.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\VideoConverterSetup.exe (PUP.Optional.Somoto) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\UpdateCheckerSetup.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\8A1FFA3B-BAB0-7891-A856-DCB9D162AE20\Latest\BabMaint.exe (PUP.Optional.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\8A1FFA3B-BAB0-7891-A856-DCB9D162AE20\Latest\BExternal.dll (PUP.Optional.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\Users\Admin\AppData\Local\Temp\8A1FFA3B-BAB0-7891-A856-DCB9D162AE20\Latest\Setup.exe (PUP.Optional.Babylon.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SafetyNut\coordinator.cfg (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SafetyNut\general.cfg (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SafetyNut\S-1-5-21-2797010545-2807629137-2903096607-1000.cfg (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kotrolu logu - DiVapton a další

#5 Příspěvek od vyosek »

Nalezy MBAMu smazte, obejvi se log, ted rad uvidim
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#6 Příspěvek od zbynadovirycz »

Povedeno:


Malwarebytes Anti-Malware 1.75.0.1300
http://www.malwarebytes.org

Verze: v2013.10.14.05

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16721
Admin :: DELL_E5410 [administrátor]

14.10.2013 16:17:44
mbam-log-2013-10-14 (16-17-44).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 354188
Uplynulý čas: 58 minut, 11 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 10
HKCR\CLSID\{3444c3c5-6c56-4a16-a453-832b05bf6ea4} (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3444C3C5-6C56-4A16-A453-832B05BF6EA4} (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{3444C3C5-6C56-4A16-A453-832B05BF6EA4} (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3444C3C5-6C56-4A16-A453-832B05BF6EA4} (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3444C3C5-6C56-4A16-A453-832B05BF6EA4} (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps (PUP.Optional.Somoto.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\Software\somotomoviestoolbar1 (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard.1 (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\SAFETYNUT (PUP.Optional.SafetyNut.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 1
HKLM\SOFTWARE\SafetyNut|browser (PUP.Optional.SafetyNut.A) -> Data: ie ff cr -> Přesun do karantény a smazání se zdařilo.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 1
C:\ProgramData\SafetyNut (PUP.Optional.SafetyNut.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené soubory: 18
C:\Users\Admin\AppData\Local\Application Data\Bundled software uninstaller\biclient (1).exe (PUP.Optional.Somoto.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Application Data\Bundled software uninstaller\biclient.exe (PUP.Optional.Somoto.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\AppsHat Mobile Apps\Uninstall.exe (PUP.Optional.Somoto.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9100T11\minibar-core[1].exe (PUP.Optional.MiniBar.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\P7M8IIX0\VideoConverterSetup[1].exe (PUP.Optional.Somoto) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\P4WX1YJ3\VideoConverterSetup[1].exe (PUP.Optional.Somoto) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\appshat-distribution.exe (PUP.Optional.Somoto.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\MoviesToolbarSetup_Somoto29_9_13.exe (PUP.Optional.MoviesToolBar.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\BabylonTB.exe (PUP.Optional.Babylon.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\BI_RunOnce.exe (PUP.Optional.Somoto.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\VideoConverterSetup.exe (PUP.Optional.Somoto) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\UpdateCheckerSetup.exe (PUP.Optional.Somoto.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\8A1FFA3B-BAB0-7891-A856-DCB9D162AE20\Latest\BabMaint.exe (PUP.Optional.Babylon.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\8A1FFA3B-BAB0-7891-A856-DCB9D162AE20\Latest\BExternal.dll (PUP.Optional.Babylon.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Admin\AppData\Local\Temp\8A1FFA3B-BAB0-7891-A856-DCB9D162AE20\Latest\Setup.exe (PUP.Optional.Babylon.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\SafetyNut\coordinator.cfg (PUP.Optional.SafetyNut.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\SafetyNut\general.cfg (PUP.Optional.SafetyNut.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\SafetyNut\S-1-5-21-2797010545-2807629137-2903096607-1000.cfg (PUP.Optional.SafetyNut.A) -> Přesun do karantény a smazání se zdařilo.

(konec)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kotrolu logu - DiVapton a další

#7 Příspěvek od vyosek »

:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    atapi.sys
    autochk.exe
    cdrom.sys
    explorer.exe
    hal.dll
    scecli.dll
    services.exe
    svchost.exe
    tcpip.sys
    userinit.exe
    winlogon.exe
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    
    %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
    %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
    %PROGRAMFILES%\Opera\opera.exe /md5
    %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5
    
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
  • Pokud budou logy dlouhe (forum bude kricet o prekroceni maximalniho poctu znaku), tak je rozdelte do vice prispevku
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#8 Příspěvek od zbynadovirycz »

OTL logfile created on: 14.10.2013 17:46:20 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Admin\Desktop
Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16721)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,43 Gb Total Physical Memory | 1,80 Gb Available Physical Memory | 52,46% Memory free
6,85 Gb Paging File | 5,11 Gb Available in Paging File | 74,49% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 213,26 Gb Total Space | 176,02 Gb Free Space | 82,54% Space Free | Partition Type: NTFS
Drive D: | 19,53 Gb Total Space | 18,38 Gb Free Space | 94,11% Space Free | Partition Type: NTFS

Computer Name: DELL_E5410 | User Name: Admin | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2013.10.14 17:41:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Admin\Desktop\OTL.exe
PRC - [2013.10.10 20:06:00 | 000,745,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
PRC - [2013.10.10 20:05:24 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2013.10.10 19:03:57 | 000,264,816 | ---- | M] (Dell) -- C:\Users\Admin\AppData\Local\Apps\2.0\NGH5NATK.WT9\G3HE08OW.HJ3\dell..tion_0f612f649c4a10af_0005.0003_d2152cbf7ce307ec\DellSystemDetect.exe
PRC - [2013.10.10 13:40:28 | 000,829,832 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_11_9_900_117_ActiveX.exe
PRC - [2013.09.05 16:04:00 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013.08.12 10:12:38 | 000,295,376 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\NisSrv.exe
PRC - [2013.08.12 10:12:38 | 000,022,208 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2013.08.12 10:11:20 | 000,995,176 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2013.08.02 02:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2013.06.06 15:38:12 | 001,125,376 | ---- | M] (Xmarks.com) -- C:\Program Files\Xmarks\IE Extension\xmarkssync.exe
PRC - [2013.04.04 14:50:32 | 000,887,432 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
PRC - [2013.02.21 11:52:48 | 000,555,352 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe
PRC - [2013.02.12 20:17:54 | 000,058,160 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe
PRC - [2013.01.22 13:52:10 | 001,569,784 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe
PRC - [2013.01.22 13:51:52 | 006,307,320 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe
PRC - [2013.01.22 13:49:10 | 000,507,896 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe
PRC - [2012.08.23 16:01:32 | 002,778,416 | ---- | M] (Intel® Corporation) -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
PRC - [2012.08.23 16:00:38 | 000,500,528 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe
PRC - [2012.08.23 15:59:58 | 000,108,336 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
PRC - [2012.08.23 15:59:42 | 003,457,840 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
PRC - [2012.02.02 11:58:30 | 001,787,720 | ---- | M] (AuthenTec, Inc.) -- C:\Program Files\Fingerprint Sensor\AtService.exe
PRC - [2012.01.17 10:37:08 | 000,179,592 | ---- | M] () -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe
PRC - [2012.01.05 14:17:42 | 001,189,376 | ---- | M] (Wave Systems Corp.) -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe
PRC - [2011.12.08 10:37:58 | 000,323,952 | ---- | M] (Wave Systems Corp.) -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe
PRC - [2011.12.08 10:37:36 | 002,864,496 | ---- | M] (Wave Systems Corp.) -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe
PRC - [2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010.09.15 11:14:36 | 000,057,168 | ---- | M] (UPEK Inc.) -- C:\Program Files\Common Files\SPBA\upeksvr.exe
PRC - [2010.07.22 02:19:24 | 000,495,708 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe
PRC - [2010.07.22 02:19:24 | 000,245,842 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\stacsv.exe
PRC - [2010.07.09 16:08:18 | 002,533,400 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010.07.09 16:08:18 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010.07.07 13:59:22 | 000,054,744 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe
PRC - [2010.05.31 05:17:06 | 000,054,640 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe
PRC - [2009.07.20 12:30:50 | 000,813,584 | ---- | M] (Logitech, Inc.) -- C:\Program Files\SetPoint\SetPoint.exe
PRC - [2009.07.10 12:42:32 | 000,055,824 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
PRC - [2009.06.24 16:21:38 | 000,409,744 | ---- | M] (Creative Technology Ltd) -- C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
PRC - [2009.03.03 02:43:08 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) -- C:\Program Files\IDT\WDM\AEstSrv.exe


========== Modules (No Company Name) ==========

MOD - [2013.10.11 14:57:17 | 001,218,560 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\6c422db78c17838c3eb9f9fcc01ca63f\System.Management.ni.dll
MOD - [2013.10.11 14:55:49 | 000,762,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\8927b576eb15c4a8f4bb04f05e7cc51e\System.Runtime.Remoting.ni.dll
MOD - [2013.10.11 14:55:39 | 001,801,728 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\4d277a8481c203a35c58bd277a2e71df\System.Xaml.ni.dll
MOD - [2013.10.11 14:55:23 | 001,837,568 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\ce9a2e0e508484f2ccc43194945cfae4\Microsoft.VisualBasic.ni.dll
MOD - [2013.10.10 21:31:40 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ef0a534be135cd8f0d99d938d8b1814a\System.Windows.Forms.ni.dll
MOD - [2013.10.10 21:31:33 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5aa44bce7933e4de09d935848f868a4b\System.Drawing.ni.dll
MOD - [2013.10.10 21:31:32 | 001,806,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\0a7b20934d7587787e7dae923d1614f4\System.Deployment.ni.dll
MOD - [2013.10.10 21:31:14 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\09db78d6068543df01862a023aca785a\System.Xml.ni.dll
MOD - [2013.10.10 21:31:10 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\29f3ae8d313e62b4daed1107ccd29f9f\System.Configuration.ni.dll
MOD - [2013.10.10 21:31:09 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5d22a30e587e2cac106b81fb351e7c08\System.ni.dll
MOD - [2013.10.10 21:31:01 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll
MOD - [2013.10.10 21:16:59 | 018,003,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\464a76a3fdc9ee7456cb4baaea3e503a\PresentationFramework.ni.dll
MOD - [2013.10.10 21:16:45 | 011,451,904 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\b5b66869081b909d238fdea083cf3179\PresentationCore.ni.dll
MOD - [2013.10.10 21:16:44 | 013,199,360 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\e40d894a772b2cff5ffd5a84ef20d2d4\System.Windows.Forms.ni.dll
MOD - [2013.10.10 21:16:39 | 001,616,896 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.CSharp\fa0072823d9517fa1aca78405b49d3ae\Microsoft.CSharp.ni.dll
MOD - [2013.10.10 21:16:37 | 000,377,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Dynamic\38c8d5cc87e3b08170189613a6efea8b\System.Dynamic.ni.dll
MOD - [2013.10.10 21:16:36 | 007,070,720 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\dac1208781fdd0b960afc12efff42944\System.Core.ni.dll
MOD - [2013.10.10 21:16:33 | 005,628,928 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\884bcbd22130ebeb1211bc7bcc3910c9\System.Xml.ni.dll
MOD - [2013.10.10 21:16:32 | 001,667,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\3a3fc0216674bdea0be809b305517c98\System.Drawing.ni.dll
MOD - [2013.10.10 21:16:31 | 003,858,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\0b37b2bafc33ef52282b9d7b217cabaf\WindowsBase.ni.dll
MOD - [2013.10.10 21:16:27 | 001,014,272 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\71d887ce964fb69b7f03c4fe7a3f28ff\System.Configuration.ni.dll
MOD - [2013.10.10 21:16:27 | 000,595,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\228b114c79c5d9024bdb4cc580e32c09\PresentationFramework.Aero.ni.dll
MOD - [2013.10.10 21:16:26 | 009,099,776 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\de853615c8224ba5d9aa9b76276c6d98\System.ni.dll
MOD - [2013.10.10 21:16:20 | 014,416,896 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\cf58670896c5313b9b52f026f4455a5d\mscorlib.ni.dll
MOD - [2013.04.04 01:09:40 | 004,300,456 | ---- | M] () -- C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2009.07.20 12:27:14 | 000,017,936 | ---- | M] () -- C:\Program Files\SetPoint\khalwrapper.dll


========== Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe -- (SafetyNutManager)
SRV - [2013.10.10 16:49:28 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2013.10.10 13:40:30 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.09.05 16:04:00 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013.08.12 10:12:38 | 000,295,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2013.08.12 10:12:38 | 000,022,208 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2013.05.27 06:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2013.03.09 00:10:32 | 030,798,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2013.01.22 13:52:10 | 001,569,784 | ---- | M] (Dell Inc.) [Auto | Running] -- C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe -- (DFEPService)
SRV - [2012.08.23 16:01:32 | 002,778,416 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe -- (ZeroConfigService)
SRV - [2012.08.23 16:00:58 | 000,242,480 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
SRV - [2012.08.23 16:00:38 | 000,500,528 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV - [2012.08.23 15:59:58 | 000,108,336 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV - [2012.02.02 11:58:30 | 001,787,720 | ---- | M] (AuthenTec, Inc.) [Auto | Running] -- C:\Program Files\Fingerprint Sensor\AtService.exe -- (ATService)
SRV - [2012.01.17 10:37:08 | 000,179,592 | ---- | M] () [Auto | Running] -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe -- (EmbassyService)
SRV - [2012.01.16 15:26:46 | 000,145,408 | ---- | M] (Wave Systems Corp.) [On_Demand | Stopped] -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Common\WvPCR.exe -- (WvPCR)
SRV - [2012.01.05 14:17:42 | 001,189,376 | ---- | M] (Wave Systems Corp.) [Auto | Running] -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe -- (Wave Authentication Manager Service)
SRV - [2011.12.08 10:37:36 | 002,864,496 | ---- | M] (Wave Systems Corp.) [Auto | Running] -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe -- (TdmService)
SRV - [2011.11.11 14:51:42 | 001,517,448 | ---- | M] (Wave Systems Corp.) [On_Demand | Stopped] -- C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Secure Storage Manager\SecureStorageService.exe -- (SecureStorageService)
SRV - [2011.10.08 22:48:08 | 001,637,888 | ---- | M] () [Auto | Stopped] -- C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe -- (tcsd_win32.exe)
SRV - [2010.07.22 02:19:24 | 000,245,842 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv.exe -- (STacSV)
SRV - [2010.07.09 16:08:18 | 002,533,400 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010.07.09 16:08:18 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2009.07.14 03:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)
SRV - [2009.07.14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009.07.14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009.03.03 02:43:08 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AEstSrv.exe -- (AESTFilters)


========== Driver Services (SafeList) ==========

DRV - [2013.10.14 17:36:13 | 000,054,016 | ---- | M] () [Kernel | Boot | Unknown] -- C:\Windows\System32\drivers\ffta.sys -- (wachhfaf)
DRV - [2013.10.14 16:14:43 | 000,040,776 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2013.10.14 16:03:29 | 000,040,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{84AED93D-6ED8-4E29-9B43-8E5BD988DC9C}\MpKsl10e5c1b4.sys -- (MpKsl10e5c1b4)
DRV - [2013.10.10 18:06:17 | 000,026,608 | ---- | M] (Dell Inc) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\PBADRV.sys -- (PBADRV)
DRV - [2013.06.18 21:50:08 | 000,107,392 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2013.02.21 14:06:14 | 000,408,368 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2012.09.30 11:21:02 | 010,383,360 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Netwsn00.sys -- (NETwNs32)
DRV - [2012.08.23 16:44:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2012.08.23 16:40:25 | 000,049,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010.11.20 14:30:15 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2010.11.20 14:30:15 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010.11.20 14:30:15 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2010.11.20 11:14:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010.11.20 11:14:41 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010.08.31 13:05:18 | 000,269,824 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\IntcDAud.sys -- (IntcDAud)
DRV - [2010.07.22 02:19:24 | 000,431,616 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\stwrt.sys -- (STHDA)
DRV - [2010.02.26 23:31:24 | 000,132,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Impcd.sys -- (Impcd)
DRV - [2009.09.17 19:54:14 | 000,041,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HECI.sys -- (HECI)
DRV - [2009.07.14 01:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009.07.14 01:45:33 | 000,083,456 | ---- | M] (Brother Industries Ltd.) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\serial.sys -- (Serial)
DRV - [2009.06.30 19:28:28 | 000,049,152 | ---- | M] (REDC) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\risdpe86.sys -- (risdpcie)
DRV - [2009.06.17 18:56:32 | 000,028,560 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV - [2009.06.17 18:56:16 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2009.06.17 18:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2009.06.15 13:05:16 | 000,143,968 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CtClsFlt.sys -- (CtClsFlt)
DRV - [2009.05.28 10:48:20 | 000,134,144 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CtAudDrv.sys -- (CtAudDrv)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
IE - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\..\SearchScopes,DefaultScope = {FA964D1E-4D24-4941-96B1-CD505B7730EA}
IE - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
IE - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\..\SearchScopes\{FA964D1E-4D24-4941-96B1-CD505B7730EA}: "URL" = http://www.google.com/search?q={searchT ... utEncoding?}
IE - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)



========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage: http://www.google.com/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\30.0.1599.69\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\30.0.1599.69\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: YouTube = C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Chrome In-App Payments service = C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0\
CHR - Extension: Gmail = C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\

O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Dell Webcam Central] C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [DFEPApplication] C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe (Dell Inc.)
O4 - HKLM..\Run: [IntelPROSet] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O4 - HKLM..\Run: [TdmNotify] C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe (Wave Systems Corp.)
O4 - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000..\Run: [DellSystemDetect] C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms ()
O4 - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000..\Run: [Xmarks] C:\Program Files\Xmarks\IE Extension\xmarkssync.exe (Xmarks.com)
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKU\.DEFAULT..\RunOnce: [SPReview] C:\Windows\System32\SPReview\SPReview.exe (Microsoft Corporation)
O4 - HKU\S-1-5-18..\RunOnce: [SPReview] C:\Windows\System32\SPReview\SPReview.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Smart Settings.lnk = C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe (Dell Inc.)
O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Smart Settings.lnk = C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe (Dell Inc.)
O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Smart Settings.lnk = C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe (Dell Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Od&eslat do aplikace OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\..Trusted Domains: dell.com ([]* in Důvěryhodné weby)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.65.193.157 212.65.242.210
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6EF7DB23-66EE-463E-8D4B-28B26977C507}: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{79D2EA4A-ED18-4654-BADF-E45622E6A4D5}: DhcpNameServer = 212.65.193.157 212.65.242.210
O20 - AppInit_DLLs: (c:\progra~1\movies~1\safety~1\safety~2.dll) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - Winlogon\Notify\spba: DllName - (C:\Program Files\Common Files\SPBA\homefus2.dll) - C:\Program Files\Common Files\SPBA\homefus2.dll (UPEK Inc.)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O27 - HKLM IFEO\bitguard.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\bprotect.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browsemngr.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browserdefender.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browsermngr.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\browserprotect.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\bundlesweetimsetup.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\cltmngsvc.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\delta babylon.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\delta tb.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\delta2.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\deltainstaller.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\deltasetup.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\deltatb.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\deltatb_2501-c733154b.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\iminentsetup.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\rjatydimofu.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\sweetimsetup.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O27 - HKLM IFEO\tbdelta.exetoolbar783881609.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O30 - LSA: Authentication Packages - (wvauth) - C:\Windows\System32\wvauth.dll (Wave Systems Corp.)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{66c37e7a-3011-11e3-9672-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{66c37e7a-3011-11e3-9672-806e6f6e6963}\Shell\AutoRun\command - "" = F:\setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O36 - AppCertDlls: x64 - (c:\program files\movies toolbar\safetynut\x64\safetycrt.dll) - File not found
O36 - AppCertDlls: x86 - (c:\program files\movies toolbar\safetynut\safetycrt.dll) - File not found
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2013.10.14 17:41:33 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Admin\Desktop\OTL.exe
[2013.10.14 16:14:23 | 000,040,776 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2013.10.14 16:14:23 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Malwarebytes
[2013.10.14 16:13:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2013.10.14 16:13:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2013.10.14 16:13:32 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2013.10.14 16:13:32 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2013.10.14 16:12:33 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Programs
[2013.10.14 16:11:34 | 010,285,040 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Admin\Desktop\mbam-setup-1.75.0.1300.exe
[2013.10.14 15:56:57 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013.10.14 15:49:19 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2013.10.14 15:45:08 | 001,032,220 | ---- | C] (Thisisu) -- C:\Users\Admin\Desktop\JRT.exe
[2013.10.14 15:11:18 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2013.10.14 15:11:17 | 000,000,000 | ---D | C] -- C:\rsit
[2013.10.14 14:18:35 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xmarks
[2013.10.14 14:18:35 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Xmarks
[2013.10.14 14:18:35 | 000,000,000 | ---D | C] -- C:\Program Files\Xmarks
[2013.10.14 14:14:01 | 000,000,000 | ---D | C] -- C:\Users\Admin\instal
[2013.10.14 14:08:00 | 000,000,000 | ---D | C] -- C:\Users\Admin\Documents\www_tmp
[2013.10.11 15:47:00 | 000,000,000 | ---D | C] -- C:\Users\Admin\Documents\Dell WebCam Central
[2013.10.11 15:47:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Creative
[2013.10.11 15:46:59 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Creative
[2013.10.11 15:43:00 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Reallusion
[2013.10.11 15:42:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Reallusion
[2013.10.11 15:42:37 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\InstallShield
[2013.10.11 15:42:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Webcam
[2013.10.11 15:42:15 | 000,000,000 | ---D | C] -- C:\Program Files\Creative
[2013.10.11 15:41:19 | 000,000,000 | ---D | C] -- C:\Program Files\Dell Webcam
[2013.10.11 15:41:17 | 000,143,968 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\drivers\CtClsFlt.sys
[2013.10.11 15:41:17 | 000,134,144 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\drivers\CtAudDrv.sys
[2013.10.11 15:41:13 | 000,000,000 | ---D | C] -- C:\Program Files\Creative Live! Cam
[2013.10.11 15:05:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2013.10.10 21:11:02 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\rdpvideominiport.sys
[2013.10.10 21:11:02 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe
[2013.10.10 21:11:01 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll
[2013.10.10 21:11:01 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RdpGroupPolicyExtension.dll
[2013.10.10 21:11:00 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\TsUsbFlt.sys
[2013.10.10 21:10:57 | 000,317,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wksprt.exe
[2013.10.10 21:10:57 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll
[2013.10.10 21:10:57 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpudd.dll
[2013.10.10 21:10:57 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpendp_winip.dll
[2013.10.10 21:10:57 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TSWbPrxy.exe
[2013.10.10 21:10:57 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsRdpWebAccess.dll
[2013.10.10 21:10:57 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll
[2013.10.10 21:10:57 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbGDCoInstaller.dll
[2013.10.10 21:10:57 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wksprtPS.dll
[2013.10.10 21:10:56 | 002,739,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorets.dll
[2013.10.10 20:16:01 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2013.10.10 20:06:00 | 000,745,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2013.10.10 20:06:00 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\elshyph.dll
[2013.10.10 20:05:59 | 002,706,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2013.10.10 20:05:59 | 000,493,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2013.10.10 20:05:59 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2013.10.10 20:05:59 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll
[2013.10.10 20:05:59 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe
[2013.10.10 20:05:59 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe
[2013.10.10 20:05:59 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2013.10.10 20:05:59 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll
[2013.10.10 20:05:59 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
[2013.10.10 20:05:59 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll
[2013.10.10 20:05:59 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2013.10.10 20:05:58 | 002,876,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2013.10.10 20:05:58 | 001,400,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2013.10.10 20:05:58 | 000,629,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2013.10.10 20:05:58 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2013.10.10 20:05:58 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2013.10.10 20:05:58 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2013.10.10 20:05:58 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2013.10.10 20:05:58 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2013.10.10 20:05:58 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IEAdvpack.dll
[2013.10.10 20:05:58 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2013.10.10 20:05:58 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe
[2013.10.10 20:05:58 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll
[2013.10.10 20:05:58 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2013.10.10 20:05:58 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2013.10.10 20:05:58 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll
[2013.10.10 20:05:58 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2013.10.10 20:05:58 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2013.10.10 20:05:57 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2013.10.10 20:05:57 | 000,719,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2013.10.10 20:05:57 | 000,242,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2013.10.10 20:05:57 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2013.10.10 20:05:57 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2013.10.10 20:05:57 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2013.10.10 20:05:24 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
[2013.10.10 20:04:55 | 003,419,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2013.10.10 20:04:55 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msmpeg2vdec.dll
[2013.10.10 20:04:55 | 001,988,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2013.10.10 20:04:55 | 001,247,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2013.10.10 20:04:55 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2013.10.10 20:04:55 | 001,080,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2013.10.10 20:04:55 | 000,604,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2013.10.10 20:04:55 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll
[2013.10.10 20:04:55 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2013.10.10 20:04:55 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2013.10.10 20:04:55 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2013.10.10 20:04:55 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll
[2013.10.10 20:04:55 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2013.10.10 20:04:55 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013.10.10 20:04:55 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013.10.10 20:04:55 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013.10.10 20:04:55 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013.10.10 20:04:55 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
[2013.10.10 20:04:55 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013.10.10 20:04:55 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
[2013.10.10 20:04:55 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013.10.10 20:04:55 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013.10.10 20:04:54 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2013.10.10 20:04:54 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll
[2013.10.10 20:03:24 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll
[2013.10.10 20:00:44 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certutil.exe
[2013.10.10 20:00:44 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certenc.dll
[2013.10.10 20:00:38 | 003,969,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2013.10.10 20:00:37 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2013.10.10 20:00:36 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tdh.dll
[2013.10.10 19:59:37 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVDECOD.DLL
[2013.10.10 19:59:35 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncsi.dll
[2013.10.10 19:59:34 | 000,175,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netcorehc.dll
[2013.10.10 19:59:33 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll
[2013.10.10 19:59:30 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2013.10.10 19:59:30 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2013.10.10 19:59:30 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll
[2013.10.10 19:59:29 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2013.10.10 19:59:08 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cryptdlg.dll
[2013.10.10 19:59:05 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qedit.dll
[2013.10.10 19:59:04 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OxpsConverter.exe
[2013.10.10 19:59:01 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scavengeui.dll
[2013.10.10 19:58:52 | 002,348,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2013.10.10 19:58:49 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qdvd.dll
[2013.10.10 19:58:39 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
[2013.10.10 19:58:37 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\RNDISMP.sys
[2013.10.10 19:58:36 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\hidclass.sys
[2013.10.10 19:58:36 | 000,025,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\hidparse.sys
[2013.10.10 19:58:33 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usbport.sys
[2013.10.10 19:58:33 | 000,006,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usbd.sys
[2013.10.10 19:58:32 | 000,218,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\dxgmms1.sys
[2013.10.10 19:58:30 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wwanprotdim.dll
[2013.10.10 19:58:02 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
[2013.10.10 19:58:02 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll
[2013.10.10 19:58:02 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
[2013.10.10 19:58:02 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
[2013.10.10 19:58:02 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
[2013.10.10 19:58:02 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
[2013.10.10 19:58:02 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
[2013.10.10 19:58:02 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
[2013.10.10 19:58:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
[2013.10.10 19:58:01 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
[2013.10.10 19:58:01 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
[2013.10.10 19:58:01 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
[2013.10.10 19:58:01 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
[2013.10.10 19:58:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
[2013.10.10 19:58:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
[2013.10.10 19:58:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
[2013.10.10 19:58:01 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
[2013.10.10 19:57:49 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dhcpcore6.dll
[2013.10.10 19:57:49 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dhcpcsvc6.dll
[2013.10.10 19:57:47 | 000,133,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ataport.sys
[2013.10.10 19:57:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2013.10.10 19:47:34 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\authui.dll
[2013.10.10 19:47:34 | 000,101,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\consent.exe
[2013.10.10 19:31:21 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Dell
[2013.10.10 19:31:03 | 000,000,000 | ---D | C] -- C:\ProgramData\PCDr
[2013.10.10 19:31:03 | 000,000,000 | ---D | C] -- C:\ProgramData\PC-Doctor for Windows
[2013.10.10 19:31:02 | 000,000,000 | ---D | C] -- C:\Program Files\Dell Support Center
[2013.10.10 19:30:36 | 000,000,000 | ---D | C] -- C:\Program Files\My Dell
[2013.10.10 19:28:10 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\PCDr
[2013.10.10 19:28:02 | 000,000,000 | ---D | C] -- C:\temp
[2013.10.10 19:04:00 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell
[2013.10.10 19:03:43 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Deployment
[2013.10.10 19:03:43 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Apps
[2013.10.10 18:37:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2013.10.10 18:36:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2013.10.10 18:36:22 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Google
[2013.10.10 18:36:11 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2013.10.10 18:35:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2013.10.10 18:35:37 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2013.10.10 18:35:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2013.10.10 18:31:34 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Adobe
[2013.10.10 18:09:30 | 000,000,000 | ---D | C] -- C:\apps
[2013.10.10 18:09:25 | 000,000,000 | ---D | C] -- C:\ProgramData\NTRU Cryptosystems
[2013.10.10 18:09:25 | 000,000,000 | ---D | C] -- C:\Program Files\NTRU Cryptosystems
[2013.10.10 18:08:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SPBA
[2013.10.10 18:07:56 | 000,026,608 | ---- | C] (Dell Inc) -- C:\Windows\System32\drivers\PBADRV.sys
[2013.10.10 18:07:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2013.10.10 18:07:31 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2013.10.10 18:07:26 | 000,000,000 | ---D | C] -- C:\Program Files\Fingerprint Sensor
[2013.10.10 18:07:14 | 000,000,000 | ---D | C] -- C:\Program Files\Gemalto
[2013.10.10 18:06:55 | 000,000,000 | ---D | C] -- C:\Program Files\O2Micro OZ776 SCR Driver
[2013.10.10 18:06:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\BioAPIFFDB
[2013.10.10 18:06:23 | 000,000,000 | ---D | C] -- C:\Windows\Downloaded Installations
[2013.10.10 18:06:22 | 000,040,960 | ---- | C] (O2Micro) -- C:\Windows\System32\ct32O2.dll
[2013.10.10 18:06:15 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Wave Systems Corp
[2013.10.10 18:06:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Wave Systems Corp
[2013.10.10 18:04:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
[2013.10.10 18:03:59 | 000,000,000 | ---D | C] -- C:\Windows\{26CBB88B-A63B-4EE2-92DA-062CFEB69EB8}
[2013.10.10 18:01:01 | 000,000,000 | ---D | C] -- C:\Program Files\Dell
[2013.10.10 17:57:12 | 000,380,928 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\aestecap.dll
[2013.10.10 17:57:12 | 000,140,288 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\aestacap.dll
[2013.10.10 17:57:12 | 000,061,440 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\aestaren.dll
[2013.10.10 17:57:11 | 011,870,298 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\idtsg.cpl
[2013.10.10 17:57:11 | 001,953,792 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stlang.dll
[2013.10.10 17:57:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\SRSLabs
[2013.10.10 17:56:24 | 000,431,616 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\drivers\stwrt.sys
[2013.10.10 17:56:23 | 000,942,080 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stapo.dll
[2013.10.10 17:56:23 | 000,528,384 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stapi32.dll
[2013.10.10 17:56:23 | 000,405,504 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stcplx.dll
[2013.10.10 17:56:22 | 000,175,616 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\st326292.dll
[2013.10.10 17:56:19 | 000,000,000 | ---D | C] -- C:\Program Files\IDT

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#9 Příspěvek od zbynadovirycz »

[2013.10.10 17:49:34 | 008,198,680 | ---- | C] (Intel(R) Corporation) -- C:\Windows\System32\TVWSetup.exe
[2013.10.10 17:49:33 | 003,157,528 | ---- | C] (Intel Corporation) -- C:\Windows\System32\GfxUI.exe
[2013.10.10 17:49:31 | 000,269,824 | ---- | C] (Intel(R) Corporation) -- C:\Windows\System32\drivers\IntcDAud.sys
[2013.10.10 17:49:31 | 000,261,632 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxTMM.dll
[2013.10.10 17:49:31 | 000,208,896 | ---- | C] (Intel Corporation) -- C:\Windows\System32\iglhsip32.dll
[2013.10.10 17:49:31 | 000,147,456 | ---- | C] (Intel Corporation) -- C:\Windows\System32\iglhcp32.dll
[2013.10.10 17:49:31 | 000,132,480 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\Impcd.sys
[2013.10.10 17:49:31 | 000,081,920 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxCoIn_v2281.dll
[2013.10.10 17:49:31 | 000,012,288 | ---- | C] (Intel(R) Corporation) -- C:\Windows\System32\IntcDAuC.dll
[2013.10.10 17:49:30 | 000,195,584 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxpph.dll
[2013.10.10 17:49:30 | 000,086,528 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrfra.lrc
[2013.10.10 17:49:30 | 000,086,528 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxresn.lrc
[2013.10.10 17:49:30 | 000,086,016 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrita.lrc
[2013.10.10 17:49:30 | 000,086,016 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrdeu.lrc
[2013.10.10 17:49:30 | 000,085,504 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrptb.lrc
[2013.10.10 17:49:30 | 000,085,504 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrenu.lrc
[2013.10.10 17:49:30 | 000,082,944 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrkor.lrc
[2013.10.10 17:49:30 | 000,082,944 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrjpn.lrc
[2013.10.10 17:49:30 | 000,081,920 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrcht.lrc
[2013.10.10 17:49:30 | 000,081,920 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxrchs.lrc
[2013.10.10 17:49:30 | 000,023,552 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxexps.dll
[2013.10.10 17:49:29 | 004,967,424 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igdumd32.dll
[2013.10.10 17:49:29 | 000,571,904 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igdumdx32.dll
[2013.10.10 17:49:29 | 000,130,048 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxdo.dll
[2013.10.10 17:49:29 | 000,115,200 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igfxcpl.cpl
[2013.10.10 17:49:27 | 011,039,232 | ---- | C] (Intel Corporation) -- C:\Windows\System32\ig4icd32.dll
[2013.10.10 17:49:27 | 000,120,320 | ---- | C] (Intel Corporation) -- C:\Windows\System32\gfxSrvc.dll
[2013.10.10 17:46:31 | 000,408,368 | ---- | C] (Alps Electric Co., Ltd.) -- C:\Windows\System32\drivers\Apfiltr.sys
[2013.10.10 17:46:31 | 000,122,344 | ---- | C] (Alps Electric Co., Ltd.) -- C:\Windows\System32\Vxdif.dll
[2013.10.10 17:43:15 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Logitech
[2013.10.10 17:41:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SetPoint
[2013.10.10 17:41:33 | 000,170,512 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\kemutb.dll
[2013.10.10 17:41:33 | 000,084,496 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\KemXML.dll
[2013.10.10 17:41:32 | 000,145,936 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\KemUtil.dll
[2013.10.10 17:41:32 | 000,117,264 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\KemWnd.dll
[2013.10.10 17:41:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Logitech
[2013.10.10 17:41:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logishrd
[2013.10.10 17:41:09 | 000,000,000 | ---D | C] -- C:\Program Files\SetPoint
[2013.10.10 17:39:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\postureAgent
[2013.10.10 17:37:18 | 000,196,608 | ---- | C] (RICOH) -- C:\Windows\System32\RiSDIcon.dll
[2013.10.10 17:37:18 | 000,188,416 | ---- | C] (RICOH) -- C:\Windows\System32\RiMMCIcon.dll
[2013.10.10 17:37:18 | 000,049,152 | ---- | C] (REDC) -- C:\Windows\System32\drivers\risdpe86.sys
[2013.10.10 17:37:17 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2013.10.10 17:33:05 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\System32\CSVer.dll
[2013.10.10 17:21:57 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
[2013.10.10 16:50:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2013.10.10 16:50:16 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2013.10.10 16:49:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\Wat
[2013.10.10 15:17:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\SPReview
[2013.10.10 15:16:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders
[2013.10.10 14:57:49 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40.dll
[2013.10.10 14:57:49 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40u.dll
[2013.10.10 14:57:47 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2013.10.10 14:57:46 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2013.10.10 14:57:46 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2013.10.10 14:57:45 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2013.10.10 14:57:44 | 000,253,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwizui.dll
[2013.10.10 14:57:43 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mf.dll
[2013.10.10 14:57:42 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll
[2013.10.10 14:57:42 | 000,520,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mcupdate_GenuineIntel.dll
[2013.10.10 14:57:41 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHost.exe
[2013.10.10 14:57:41 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHostProxy.dll
[2013.10.10 14:57:39 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuthFWSnapin.dll
[2013.10.10 14:57:39 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RacEngn.dll
[2013.10.10 14:57:37 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ExplorerFrame.dll
[2013.10.10 14:57:36 | 001,828,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d9.dll
[2013.10.10 14:57:35 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskschd.dll
[2013.10.10 14:57:34 | 000,456,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spinstall.exe
[2013.10.10 14:57:34 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wer.dll
[2013.10.10 14:57:34 | 000,280,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spreview.exe
[2013.10.10 14:57:34 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PushPrinterConnections.exe
[2013.10.10 14:57:32 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dwmcore.dll
[2013.10.10 14:57:32 | 000,863,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\diagperf.dll
[2013.10.10 14:57:31 | 003,367,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinSAT.exe
[2013.10.10 14:57:31 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TSWorkspace.dll
[2013.10.10 14:57:31 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsmf.dll
[2013.10.10 14:57:30 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dbgeng.dll
[2013.10.10 14:57:28 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpprefcl.dll
[2013.10.10 14:57:28 | 000,252,928 | ---- | C] (Microsoft) -- C:\Windows\System32\DShowRdpFilter.dll
[2013.10.10 14:57:27 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mmcndmgr.dll
[2013.10.10 14:57:27 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imapi2fs.dll
[2013.10.10 14:57:27 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdrm.dll
[2013.10.10 14:57:27 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netfxperf.dll
[2013.10.10 14:57:26 | 000,974,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sppobjs.dll
[2013.10.10 14:57:26 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceApi.dll
[2013.10.10 14:57:26 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mcbuilder.exe
[2013.10.10 14:57:25 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xpsservices.dll
[2013.10.10 14:57:25 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certmgr.dll
[2013.10.10 14:57:25 | 000,508,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2013.10.10 14:57:25 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sppwinob.dll
[2013.10.10 14:57:25 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drvstore.dll
[2013.10.10 14:57:24 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cmd.exe
[2013.10.10 14:57:24 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfds.dll
[2013.10.10 14:57:24 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\framedynos.dll
[2013.10.10 14:57:23 | 000,442,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2013.10.10 14:57:23 | 000,351,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmicmiplugin.dll
[2013.10.10 14:57:23 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpendp.dll
[2013.10.10 14:57:22 | 001,063,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\werconcpl.dll
[2013.10.10 14:57:22 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\azroles.dll
[2013.10.10 14:57:22 | 000,339,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\appmgr.dll
[2013.10.10 14:57:22 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpclip.exe
[2013.10.10 14:57:21 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NaturalLanguage6.dll
[2013.10.10 14:57:21 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfreadwrite.dll
[2013.10.10 14:57:21 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\basecsp.dll
[2013.10.10 14:57:20 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\calc.exe
[2013.10.10 14:57:20 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\evr.dll
[2013.10.10 14:57:20 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinSATAPI.dll
[2013.10.10 14:57:20 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskcomp.dll
[2013.10.10 14:57:19 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbon.dll
[2013.10.10 14:57:19 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sqlsrv32.dll
[2013.10.10 14:57:19 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lpksetup.exe
[2013.10.10 14:57:19 | 000,271,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fveapi.dll
[2013.10.10 14:57:19 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vpnike.dll
[2013.10.10 14:57:18 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\hgprint.dll
[2013.10.10 14:57:17 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\prncache.dll
[2013.10.10 14:57:16 | 000,690,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ci.dll
[2013.10.10 14:57:16 | 000,458,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSDApi.dll
[2013.10.10 14:57:16 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpeffects.dll
[2013.10.10 14:57:16 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aepdu.dll
[2013.10.10 14:57:16 | 000,175,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\vmbus.sys
[2013.10.10 14:57:16 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\net1.exe
[2013.10.10 14:57:16 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rpchttp.dll
[2013.10.10 14:57:16 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aitagent.exe
[2013.10.10 14:57:15 | 002,504,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVCORE.DLL
[2013.10.10 14:57:15 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlangpui.dll
[2013.10.10 14:57:15 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scansetting.dll
[2013.10.10 14:57:15 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MMDevAPI.dll
[2013.10.10 14:57:14 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pnidui.dll
[2013.10.10 14:57:14 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\webservices.dll
[2013.10.10 14:57:14 | 000,464,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scrptadm.dll
[2013.10.10 14:57:14 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\QSHVHOST.DLL
[2013.10.10 14:57:14 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tscfgwmi.dll
[2013.10.10 14:57:14 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fde.dll
[2013.10.10 14:57:14 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2013.10.10 14:57:13 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SyncCenter.dll
[2013.10.10 14:57:13 | 000,907,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sdengin2.dll
[2013.10.10 14:57:13 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netdiagfx.dll
[2013.10.10 14:57:13 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vmicsvc.exe
[2013.10.10 14:57:13 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wscapi.dll
[2013.10.10 14:57:12 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSMPEG2ENC.DLL
[2013.10.10 14:57:12 | 000,727,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mcmde.dll
[2013.10.10 14:57:12 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cscobj.dll
[2013.10.10 14:57:11 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DXPTaskRingtone.dll
[2013.10.10 14:57:11 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imapi2.dll
[2013.10.10 14:57:11 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aeinv.dll
[2013.10.10 14:57:11 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\setupcl.exe
[2013.10.10 14:57:10 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPEncEn.dll
[2013.10.10 14:57:10 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\autofmt.exe
[2013.10.10 14:57:10 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vaultsvc.dll
[2013.10.10 14:57:10 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dwmredir.dll
[2013.10.10 14:57:10 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\hbaapi.dll
[2013.10.10 14:57:09 | 002,217,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bootres.dll
[2013.10.10 14:57:09 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Narrator.exe
[2013.10.10 14:57:09 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AudioSes.dll
[2013.10.10 14:57:09 | 000,194,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\halmacpi.dll
[2013.10.10 14:57:09 | 000,194,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\hal.dll
[2013.10.10 14:57:09 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netiohlp.dll
[2013.10.10 14:57:09 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\audiodg.exe
[2013.10.10 14:57:09 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\proquota.exe
[2013.10.10 14:57:08 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\autoconv.exe
[2013.10.10 14:57:08 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\powercpl.dll
[2013.10.10 14:57:08 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ipsmsnap.dll
[2013.10.10 14:57:08 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msihnd.dll
[2013.10.10 14:57:08 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msinfo32.exe
[2013.10.10 14:57:08 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srchadmin.dll
[2013.10.10 14:57:08 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eapphost.dll
[2013.10.10 14:57:08 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\framedyn.dll
[2013.10.10 14:57:08 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tcpipcfg.dll
[2013.10.10 14:57:08 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\schtasks.exe
[2013.10.10 14:57:08 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mimefilt.dll
[2013.10.10 14:57:07 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuxiliaryDisplayCpl.dll
[2013.10.10 14:57:07 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DXP.dll
[2013.10.10 14:57:07 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\QAGENT.DLL
[2013.10.10 14:57:07 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscorier.dll
[2013.10.10 14:57:07 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netid.dll
[2013.10.10 14:57:06 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wdc.dll
[2013.10.10 14:57:06 | 001,131,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sdclt.exe
[2013.10.10 14:57:06 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Vault.dll
[2013.10.10 14:57:06 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\untfs.dll
[2013.10.10 14:57:06 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nci.dll
[2013.10.10 14:57:05 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanpref.dll
[2013.10.10 14:57:05 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMNetMgr.dll
[2013.10.10 14:57:05 | 000,098,816 | ---- | C] (Microsoft) -- C:\Windows\System32\Robocopy.exe
[2013.10.10 14:57:04 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DxpTaskSync.dll
[2013.10.10 14:57:04 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Display.dll
[2013.10.10 14:57:04 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdri.dll
[2013.10.10 14:57:04 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\termmgr.dll
[2013.10.10 14:57:04 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\puiobj.dll
[2013.10.10 14:57:04 | 000,316,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sharemediacpl.dll
[2013.10.10 14:57:04 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsRasterService.dll
[2013.10.10 14:57:04 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\userinit.exe
[2013.10.10 14:57:03 | 001,188,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DiagCpl.dll
[2013.10.10 14:57:03 | 001,066,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdtctm.dll
[2013.10.10 14:57:03 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eudcedit.exe
[2013.10.10 14:57:03 | 000,140,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\scsiport.sys
[2013.10.10 14:57:03 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\logoncli.dll
[2013.10.10 14:57:03 | 000,043,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\winhv.sys
[2013.10.10 14:57:03 | 000,040,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\vmstorfl.sys
[2013.10.10 14:57:02 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SensorsCpl.dll
[2013.10.10 14:57:02 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\themecpl.dll
[2013.10.10 14:57:02 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FirewallControlPanel.dll
[2013.10.10 14:57:02 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\biocpl.dll
[2013.10.10 14:57:02 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wiadefui.dll
[2013.10.10 14:57:02 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msconfig.exe
[2013.10.10 14:57:02 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sppcomapi.dll
[2013.10.10 14:57:02 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shsetup.dll
[2013.10.10 14:57:02 | 000,028,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\storvsc.sys
[2013.10.10 14:57:01 | 000,766,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpccpl.dll
[2013.10.10 14:57:01 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PhotoScreensaver.scr
[2013.10.10 14:57:01 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\hgcpl.dll
[2013.10.10 14:57:01 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FWPUCLNT.DLL
[2013.10.10 14:57:01 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dnscmmc.dll
[2013.10.10 14:57:00 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VAN.dll
[2013.10.10 14:57:00 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PerfCenterCPL.dll
[2013.10.10 14:57:00 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\usercpl.dll
[2013.10.10 14:57:00 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscms.dll
[2013.10.10 14:57:00 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\localsec.dll
[2013.10.10 14:57:00 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanui.dll
[2013.10.10 14:57:00 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mprddm.dll
[2013.10.10 14:57:00 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SndVolSSO.dll
[2013.10.10 14:57:00 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bcdsrv.dll
[2013.10.10 14:57:00 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscories.dll
[2013.10.10 14:57:00 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasacct.dll
[2013.10.10 14:56:59 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\accessibilitycpl.dll
[2013.10.10 14:56:59 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netcenter.dll
[2013.10.10 14:56:59 | 000,941,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mblctr.exe
[2013.10.10 14:56:59 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwizeng.dll
[2013.10.10 14:56:59 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SndVol.exe
[2013.10.10 14:56:59 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\azroleui.dll
[2013.10.10 14:56:59 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\prntvpt.dll
[2013.10.10 14:56:59 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\w32tm.exe
[2013.10.10 14:56:58 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\networkmap.dll
[2013.10.10 14:56:58 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\main.cpl
[2013.10.10 14:56:58 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mspbda.dll
[2013.10.10 14:56:58 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Faultrep.dll
[2013.10.10 14:56:58 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSAC3ENC.DLL
[2013.10.10 14:56:58 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ks.sys
[2013.10.10 14:56:58 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\adsldp.dll
[2013.10.10 14:56:58 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netjoin.dll
[2013.10.10 14:56:58 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdeploy.dll
[2013.10.10 14:56:57 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sud.dll
[2013.10.10 14:56:57 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ActionCenter.dll
[2013.10.10 14:56:57 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\prnfldr.dll
[2013.10.10 14:56:57 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wusa.exe
[2013.10.10 14:56:57 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MCEWMDRMNDBootstrap.dll
[2013.10.10 14:56:57 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OnLineIDCpl.dll
[2013.10.10 14:56:56 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bthprops.cpl
[2013.10.10 14:56:56 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sysmon.ocx
[2013.10.10 14:56:56 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\slui.exe
[2013.10.10 14:56:56 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iprtrmgr.dll
[2013.10.10 14:56:56 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MediaMetadataHandler.dll
[2013.10.10 14:56:56 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskbarcpl.dll
[2013.10.10 14:56:56 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\defaultlocationcpl.dll
[2013.10.10 14:56:56 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasrad.dll
[2013.10.10 14:56:56 | 000,137,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\halacpi.dll
[2013.10.10 14:56:56 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dot3cfg.dll
[2013.10.10 14:56:56 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ftp.exe
[2013.10.10 14:56:55 | 000,750,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sdcpl.dll
[2013.10.10 14:56:55 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TabletPC.cpl
[2013.10.10 14:56:55 | 000,577,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpd_ci.dll
[2013.10.10 14:56:55 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ActionCenterCPL.dll
[2013.10.10 14:56:55 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DeviceCenter.dll
[2013.10.10 14:56:55 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shwebsvc.dll
[2013.10.10 14:56:55 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\intl.cpl
[2013.10.10 14:56:55 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bcdedit.exe
[2013.10.10 14:56:55 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\efscore.dll
[2013.10.10 14:56:55 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ifsutil.dll
[2013.10.10 14:56:55 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\autoplay.dll
[2013.10.10 14:56:55 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\recovery.dll
[2013.10.10 14:56:55 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sisbkup.dll
[2013.10.10 14:56:54 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OobeFldr.dll
[2013.10.10 14:56:54 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpmde.dll
[2013.10.10 14:56:54 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshwfp.dll
[2013.10.10 14:56:54 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\systemcpl.dll
[2013.10.10 14:56:54 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntprint.dll
[2013.10.10 14:56:54 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\recdisc.exe
[2013.10.10 14:56:54 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SmartcardCredentialProvider.dll
[2013.10.10 14:56:54 | 000,151,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vdsutil.dll
[2013.10.10 14:56:54 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bcdboot.exe
[2013.10.10 14:56:54 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sppnp.dll
[2013.10.10 14:56:54 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSTPager.ax
[2013.10.10 14:56:53 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\blackbox.dll
[2013.10.10 14:56:53 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sethc.exe
[2013.10.10 14:56:53 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpx.dll
[2013.10.10 14:56:53 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ksproxy.ax
[2013.10.10 14:56:53 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpsrcwp.dll
[2013.10.10 14:56:53 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuxiliaryDisplayServices.dll
[2013.10.10 14:56:53 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NAPHLPR.DLL
[2013.10.10 14:56:53 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\migisol.dll
[2013.10.10 14:56:53 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\fms.dll
[2013.10.10 14:56:52 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msftedit.dll
[2013.10.10 14:56:52 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dfrgui.exe
[2013.10.10 14:56:52 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanmsm.dll
[2013.10.10 14:56:52 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshipsec.dll
[2013.10.10 14:56:52 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dot3ui.dll
[2013.10.10 14:56:52 | 000,254,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wsqmcons.exe
[2013.10.10 14:56:52 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ReAgent.dll
[2013.10.10 14:56:52 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wavemsp.dll
[2013.10.10 14:56:52 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\isoburn.exe
[2013.10.10 14:56:52 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\asycfilt.dll
[2013.10.10 14:56:51 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wvc.dll
[2013.10.10 14:56:51 | 000,438,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AdmTmpl.dll
[2013.10.10 14:56:51 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wimgapi.dll
[2013.10.10 14:56:51 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PkgMgr.exe
[2013.10.10 14:56:51 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sysclass.dll
[2013.10.10 14:56:51 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ocsetup.exe
[2013.10.10 14:56:51 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzutil.exe
[2013.10.10 14:56:50 | 000,697,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SmiEngine.dll
[2013.10.10 14:56:50 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ssText3d.scr
[2013.10.10 14:56:50 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srrstr.dll
[2013.10.10 14:56:50 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qasf.dll
[2013.10.10 14:56:50 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qcap.dll
[2013.10.10 14:56:50 | 000,170,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationSettings.exe
[2013.10.10 14:56:50 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\uxlib.dll
[2013.10.10 14:56:50 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\setupugc.exe
[2013.10.10 14:56:50 | 000,051,200 | ---- | C] (Twain Working Group) -- C:\Windows\twain_32.dll
[2013.10.10 14:56:50 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\slwga.dll
[2013.10.10 14:56:49 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmdrmsdk.dll
[2013.10.10 14:56:49 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscp.dll
[2013.10.10 14:56:49 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wimserv.exe
[2013.10.10 14:56:49 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\diskraid.exe
[2013.10.10 14:56:49 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DevicePairingFolder.dll
[2013.10.10 14:56:49 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wwanconn.dll
[2013.10.10 14:56:49 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nslookup.exe
[2013.10.10 14:56:49 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2013.10.10 14:56:48 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drmmgrtn.dll
[2013.10.10 14:56:48 | 000,292,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsAnytimeUpgradeResults.exe
[2013.10.10 14:56:48 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\input.dll
[2013.10.10 14:56:48 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpencom.dll
[2013.10.10 14:56:48 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ocsetapi.dll
[2013.10.10 14:56:48 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\perfmon.exe
[2013.10.10 14:56:48 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UserAccountControlSettings.dll
[2013.10.10 14:56:48 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NAPCRYPT.DLL
[2013.10.10 14:56:48 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\acppage.dll
[2013.10.10 14:56:48 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vpnikeapi.dll
[2013.10.10 14:56:47 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\onexui.dll
[2013.10.10 14:56:47 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nltest.exe
[2013.10.10 14:56:47 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iTVData.dll
[2013.10.10 14:56:47 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiagn.dll
[2013.10.10 14:56:47 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpdwcn.dll
[2013.10.10 14:56:47 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vdsbas.dll
[2013.10.10 14:56:47 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\logagent.exe
[2013.10.10 14:56:47 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\bfsvc.exe
[2013.10.10 14:56:47 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\runonce.exe
[2013.10.10 14:56:46 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmdrmdev.dll
[2013.10.10 14:56:46 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eapp3hst.dll
[2013.10.10 14:56:46 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bitsadmin.exe
[2013.10.10 14:56:46 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MFPlay.dll
[2013.10.10 14:56:46 | 000,117,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\rmcast.sys
[2013.10.10 14:56:46 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shacct.dll
[2013.10.10 14:56:46 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PnPUnattend.exe
[2013.10.10 14:56:46 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\unimdmat.dll
[2013.10.10 14:56:46 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsmproxy.dll
[2013.10.10 14:56:45 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OpcServices.dll
[2013.10.10 14:56:45 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Bubbles.scr
[2013.10.10 14:56:45 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceStatus.dll
[2013.10.10 14:56:45 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDSp.dll
[2013.10.10 14:56:45 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sqlcese30.dll
[2013.10.10 14:56:45 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceSyncProvider.dll
[2013.10.10 14:56:45 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MdSched.exe
[2013.10.10 14:56:45 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\kstvtune.ax
[2013.10.10 14:56:45 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\logman.exe
[2013.10.10 14:56:45 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\olethk32.dll
[2013.10.10 14:56:45 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tabcal.exe
[2013.10.10 14:56:45 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncryptui.dll
[2013.10.10 14:56:45 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\djoin.exe
[2013.10.10 14:56:45 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpd3d.dll
[2013.10.10 14:56:45 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iscsium.dll
[2013.10.10 14:56:44 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMADMOD.DLL
[2013.10.10 14:56:44 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVSDECD.DLL
[2013.10.10 14:56:44 | 000,257,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsAnytimeUpgrade.exe
[2013.10.10 14:56:44 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Mystify.scr
[2013.10.10 14:56:44 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Ribbons.scr
[2013.10.10 14:56:44 | 000,179,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ActionQueue.dll
[2013.10.10 14:56:44 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VBICodec.ax
[2013.10.10 14:56:44 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\powercfg.cpl
[2013.10.10 14:56:44 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dot3msm.dll
[2013.10.10 14:56:44 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wiavideo.dll
[2013.10.10 14:56:44 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CscMig.dll
[2013.10.10 14:56:44 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Kswdmcap.ax
[2013.10.10 14:56:44 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\QSVRMGMT.DLL
[2013.10.10 14:56:44 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fphc.dll
[2013.10.10 14:56:44 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mapistub.dll
[2013.10.10 14:56:44 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mapi32.dll
[2013.10.10 14:56:44 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lpremove.exe
[2013.10.10 14:56:44 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\takeown.exe
[2013.10.10 14:56:44 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\utildll.dll
[2013.10.10 14:56:43 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmdrmnet.dll
[2013.10.10 14:56:43 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qdv.dll
[2013.10.10 14:56:43 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msnetobj.dll
[2013.10.10 14:56:43 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\unattend.dll
[2013.10.10 14:56:43 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RelPost.exe
[2013.10.10 14:56:43 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EhStorAPI.dll
[2013.10.10 14:56:43 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sppinst.dll
[2013.10.10 14:56:43 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cmstp.exe
[2013.10.10 14:56:43 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\QCLIPROV.DLL
[2013.10.10 14:56:43 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cca.dll
[2013.10.10 14:56:43 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qprocess.exe
[2013.10.10 14:56:42 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL
[2013.10.10 14:56:42 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msorcl32.dll
[2013.10.10 14:56:42 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\desk.cpl
[2013.10.10 14:56:42 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasrecst.dll
[2013.10.10 14:56:42 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\setupcln.dll
[2013.10.10 14:56:42 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MuiUnattend.exe
[2013.10.10 14:56:42 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vfwwdm32.dll
[2013.10.10 14:56:42 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wsnmp32.dll
[2013.10.10 14:56:42 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\umb.dll
[2013.10.10 14:56:42 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pdhui.dll
[2013.10.10 14:56:42 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\basesrv.dll
[2013.10.10 14:56:42 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\relog.exe
[2013.10.10 14:56:42 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PrintIsolationProxy.dll
[2013.10.10 14:56:42 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AzSqlExt.dll
[2013.10.10 14:56:42 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qwinsta.exe
[2013.10.10 14:56:42 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msg.exe
[2013.10.10 14:56:42 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chglogon.exe
[2013.10.10 14:56:41 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IMJP10.IME
[2013.10.10 14:56:41 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\itircl.dll
[2013.10.10 14:56:41 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iscsicli.exe
[2013.10.10 14:56:41 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpps.dll
[2013.10.10 14:56:41 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\diskpart.exe
[2013.10.10 14:56:41 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2013.10.10 14:56:41 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2013.10.10 14:56:41 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\amstream.dll
[2013.10.10 14:56:41 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertPolEng.dll
[2013.10.10 14:56:41 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spbcd.dll
[2013.10.10 14:56:41 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MultiDigiMon.exe
[2013.10.10 14:56:41 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\setbcdlocale.dll
[2013.10.10 14:56:41 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ksxbar.ax
[2013.10.10 14:56:41 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wkscli.dll
[2013.10.10 14:56:41 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WavDest.dll
[2013.10.10 14:56:41 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netiougc.exe
[2013.10.10 14:56:41 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netbtugc.exe
[2013.10.10 14:56:41 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quser.exe
[2013.10.10 14:56:41 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chgport.exe
[2013.10.10 14:56:41 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qappsrv.exe
[2013.10.10 14:56:41 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\syssetup.dll
[2013.10.10 14:56:41 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nrpsrv.dll
[2013.10.10 14:56:40 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FXSTIFF.dll
[2013.10.10 14:56:40 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2013.10.10 14:56:40 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2013.10.10 14:56:40 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eappgnui.dll
[2013.10.10 14:56:40 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tlscsp.dll
[2013.10.10 14:56:40 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\findstr.exe
[2013.10.10 14:56:40 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WerFaultSecure.exe
[2013.10.10 14:56:40 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tskill.exe
[2013.10.10 14:56:40 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsdiscon.exe
[2013.10.10 14:56:40 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ReAgentc.exe
[2013.10.10 14:56:40 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tscon.exe
[2013.10.10 14:56:40 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\logoff.exe
[2013.10.10 14:56:40 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rwinsta.exe
[2013.10.10 14:56:40 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chgusr.exe
[2013.10.10 14:56:39 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sppc.dll
[2013.10.10 14:56:39 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\Windows\System32\iccvid.dll
[2013.10.10 14:56:39 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\repair-bde.exe
[2013.10.10 14:56:39 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\luainstall.dll
[2013.10.10 14:56:39 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciqtz32.dll
[2013.10.10 14:56:39 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wiarpc.dll
[2013.10.10 14:56:39 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wdiasqmmodule.dll
[2013.10.10 14:56:39 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usbrpm.sys
[2013.10.10 14:56:39 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\HotStartUserAgent.dll
[2013.10.10 14:56:39 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\tdi.sys
[2013.10.10 14:56:39 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shadow.exe
[2013.10.10 14:56:39 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spopk.dll
[2013.10.10 14:56:39 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\muifontsetup.dll
[2013.10.10 14:56:38 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbonRes.dll
[2013.10.10 14:56:38 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\manage-bde.exe
[2013.10.10 14:56:38 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vmicres.dll
[2013.10.10 14:56:38 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetmib1.dll
[2013.10.10 14:56:38 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\g711codc.ax
[2013.10.10 14:56:38 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vmbusres.dll
[2013.10.10 14:56:38 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbcconf.dll
[2013.10.10 14:56:38 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vmstorfltres.dll
[2013.10.10 14:56:38 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\unlodctr.exe
[2013.10.10 14:56:38 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbisurf.ax
[2013.10.10 14:56:38 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdmo.dll
[2013.10.10 14:56:38 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netcfg.exe
[2013.10.10 14:56:38 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdprefdrvapi.dll
[2013.10.10 14:56:38 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\reset.exe
[2013.10.10 14:56:38 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\change.exe
[2013.10.10 14:56:38 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\query.exe
[2013.10.10 14:56:37 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FXSMON.dll
[2013.10.10 14:56:37 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\elsTrans.dll
[2013.10.10 14:56:37 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TRAPI.dll
[2013.10.10 14:56:37 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\perfts.dll
[2013.10.10 14:56:36 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RDPENCDD.dll
[2013.10.10 14:56:36 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\napdsnap.dll
[2013.10.10 14:56:36 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dsauth.dll
[2013.10.10 14:56:36 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bitsperf.dll
[2013.10.10 14:56:36 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\schedcli.dll
[2013.10.10 14:56:36 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sscore.dll
[2013.10.10 14:56:35 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imkr80.ime
[2013.10.10 14:56:35 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wsdchngr.dll
[2013.10.10 14:56:35 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\VMBusHID.sys
[2013.10.10 14:56:35 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\riched32.dll
[2013.10.10 14:56:35 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcfgex.dll
[2013.10.10 14:56:34 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wshirda.dll
[2013.10.10 14:56:33 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VmbusCoinstaller.dll
[2013.10.10 14:56:33 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VmdCoinstall.dll
[2013.10.10 14:56:33 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IcCoinstall.dll
[2013.10.10 14:56:33 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vmictimeprovider.dll
[2013.10.10 14:56:33 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\USBCAMD2.sys
[2013.10.10 14:56:33 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\USBCAMD.sys
[2013.10.10 14:56:33 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vmbuspipe.dll
[2013.10.10 14:56:33 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2013.10.10 14:56:32 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RDPREFDD.dll
[2013.10.10 14:56:32 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\C_ISCII.DLL
[2013.10.10 14:56:32 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shunimpl.dll
[2013.10.10 14:56:32 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2013.10.10 14:56:32 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxmasf.dll
[2013.10.10 14:56:31 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDUS.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDUGHR1.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDTURME.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDTAJIK.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDMON.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDMAORI.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDLT1.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDINTEL.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDINORI.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDINKAN.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDBULG.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDBLR.DLL
[2013.10.10 14:56:31 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDBASH.DLL
[2013.10.10 14:56:31 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDGEO.DLL
[2013.10.10 14:56:30 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nlsbres.dll
[2013.10.10 14:56:30 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\BlbEvents.dll
[2013.10.10 14:56:30 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pifmgr.dll
[2013.10.10 14:56:30 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwizres.dll
[2013.10.10 14:56:30 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDSG.DLL
[2013.10.10 14:56:30 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\kbdlk41a.dll
[2013.10.10 14:56:30 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDCZ1.DLL
[2013.10.10 14:56:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDTUQ.DLL
[2013.10.10 14:56:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDTUF.DLL
[2013.10.10 14:56:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDSF.DLL
[2013.10.10 14:56:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDPO.DLL
[2013.10.10 14:56:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDNEPR.DLL
[2013.10.10 14:56:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDINBEN.DLL
[2013.10.10 14:56:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDGR1.DLL
[2013.10.10 14:56:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDGKL.DLL
[2013.10.10 14:56:30 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDINTAM.DLL
[2013.10.10 14:56:30 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDINMAR.DLL
[2013.10.10 14:56:30 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KBDINHIN.DLL
[2013.10.10 14:56:30 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\vms3cap.sys
[2013.10.10 14:56:28 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\tsusbflt.sys.mui
[2013.10.10 14:56:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\rdpwd.sys.mui
[2013.10.10 14:56:25 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\kbdclass.sys.mui
[2013.10.10 14:56:25 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\GAGP30KX.SYS.mui
[2013.10.10 14:56:24 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wdscore.dll
[2013.10.10 14:56:10 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wbemcomn.dll
[2013.10.10 14:55:58 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sqmapi.dll

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#10 Příspěvek od zbynadovirycz »

[2013.10.10 14:15:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
[2013.10.10 14:15:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2013.10.10 14:14:45 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2013.10.10 14:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2013.10.10 14:14:17 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2013.10.10 14:14:17 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Sync Framework
[2013.10.10 14:14:17 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2013.10.10 14:12:15 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 8
[2013.10.10 14:11:27 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Analysis Services
[2013.10.10 14:11:11 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Microsoft Help
[2013.10.10 14:11:07 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2013.10.10 14:11:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2013.10.10 14:10:43 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2013.10.10 13:51:29 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Application Data
[2013.10.10 13:51:26 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\AppsHat Mobile Apps
[2013.10.10 13:51:26 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
[2013.10.10 13:51:25 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\WebPlayer
[2013.10.10 13:51:15 | 000,000,000 | ---D | C] -- C:\Program Files\DiVapton
[2013.10.10 13:40:29 | 000,692,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2013.10.10 13:40:29 | 000,071,048 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2013.10.10 13:40:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2013.10.10 13:18:29 | 000,000,000 | -H-D | C] -- C:\Windows\System32\WLANProfiles
[2013.10.10 13:16:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel
[2013.10.10 13:15:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel.sav
[2013.10.10 13:02:34 | 000,000,000 | ---D | C] -- C:\Windows\Dell
[2013.10.10 13:02:11 | 000,000,000 | ---D | C] -- C:\Program Files\DellTPad
[2013.10.10 12:59:30 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2013.10.10 12:55:14 | 000,000,000 | ---D | C] -- C:\Dell
[2013.10.10 12:55:11 | 000,000,000 | ---D | C] -- C:\Users\Admin\Documents\Složka Bluetooth Exchange
[2013.10.10 12:55:11 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Broadcom
[2013.10.10 12:49:33 | 000,000,000 | ---D | C] -- C:\Program Files\WIDCOMM
[2013.10.10 12:46:52 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Dell
[2013.10.10 12:46:10 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Intel
[2013.10.10 12:46:02 | 000,000,000 | ---D | C] -- C:\Users\Admin\Roaming
[2013.10.10 12:46:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Roaming
[2013.10.10 12:44:29 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
[2013.10.10 12:44:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
[2013.10.10 12:44:10 | 000,000,000 | ---D | C] -- C:\Program Files\Cisco
[2013.10.10 12:43:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Dell
[2013.10.10 12:38:43 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\GHISLER
[2013.10.10 12:37:48 | 000,000,000 | ---D | C] -- C:\totalcmd
[2013.10.10 12:37:48 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\GHISLER
[2013.10.10 12:35:32 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Macromedia
[2013.10.10 12:35:32 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Adobe
[2013.10.10 12:24:48 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2013.10.10 12:24:48 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2013.10.10 12:23:38 | 000,000,000 | ---D | C] -- C:\e6ba97d4c17c1439a7e5d283cf6107
[2013.10.10 11:34:58 | 000,148,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\storport.sys
[2013.10.10 11:34:58 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fsutil.exe
[2013.10.10 11:34:55 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fsquirt.exe
[2013.10.09 15:04:21 | 000,238,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2013.10.09 14:57:57 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2013.10.09 14:57:57 | 000,000,000 | ---D | C] -- C:\Intel
[2013.10.09 14:57:10 | 000,047,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\WdfLdr.sys
[2013.10.09 14:57:10 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Wdfres.dll
[2013.10.09 14:57:10 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\wdf01000.sys.mui
[2013.10.09 14:56:37 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFx.dll
[2013.10.09 14:56:37 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFPlatform.dll
[2013.10.09 14:56:37 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFCoinstaller.dll
[2013.10.09 14:55:06 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2013.10.09 14:50:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\MRT
[2013.10.09 14:49:31 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usb8023.sys
[2013.10.09 14:48:19 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpnet.dll
[2013.10.09 14:48:19 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpnaddr.dll
[2013.10.09 14:48:15 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\prevhost.exe
[2013.10.09 14:48:14 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dnscacheugc.exe
[2013.10.09 14:48:07 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\webio.dll
[2013.10.09 14:47:59 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2013.10.09 14:47:55 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gameux.dll
[2013.10.09 14:47:55 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Wpc.dll
[2013.10.09 14:47:55 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\System32\fpb.rs
[2013.10.09 14:47:55 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\System32\oflc-nz.rs
[2013.10.09 14:47:55 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\System32\pegibbfc.rs
[2013.10.09 14:47:55 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\System32\csrr.rs
[2013.10.09 14:47:55 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\System32\cob-au.rs
[2013.10.09 14:47:55 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\System32\usk.rs
[2013.10.09 14:47:55 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\System32\grb.rs
[2013.10.09 14:47:55 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi-pt.rs
[2013.10.09 14:47:55 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi.rs
[2013.10.09 14:47:55 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\System32\djctq.rs
[2013.10.09 14:47:54 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\System32\cero.rs
[2013.10.09 14:47:54 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\System32\esrb.rs
[2013.10.09 14:47:54 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\System32\oflc.rs
[2013.10.09 14:47:54 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi-fi.rs
[2013.10.09 14:47:49 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdosys.dll
[2013.10.09 14:47:43 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll
[2013.10.09 14:47:41 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sspisrv.dll
[2013.10.09 14:47:37 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\profprov.dll
[2013.10.09 14:47:35 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcore.dll
[2013.10.09 14:47:32 | 000,240,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys
[2013.10.09 14:47:32 | 000,187,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\FWPKCLNT.SYS
[2013.10.09 14:47:31 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2013.10.09 14:47:28 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sbe.dll
[2013.10.09 14:47:28 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2013.10.09 14:47:28 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
[2013.10.09 14:47:25 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll
[2013.10.09 14:47:21 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbcjt32.dll
[2013.10.09 14:47:21 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbctrac.dll
[2013.10.09 14:47:21 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccp32.dll
[2013.10.09 14:47:21 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccu32.dll
[2013.10.09 14:47:21 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccr32.dll
[2013.10.09 14:47:17 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml3r.dll
[2013.10.09 14:47:12 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\packager.dll
[2013.10.09 14:47:09 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorekmts.dll
[2013.10.09 14:47:09 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpwsx.dll
[2013.10.09 14:47:09 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdrmemptylst.exe
[2013.10.09 14:47:05 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2013.10.09 14:47:05 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2013.10.09 14:47:05 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisrndr.ax
[2013.10.09 14:47:05 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Mpeg2Data.ax
[2013.10.09 14:47:05 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSDvbNP.ax
[2013.10.09 14:47:01 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\synceng.dll
[2013.10.09 14:46:57 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\timedate.cpl
[2013.10.09 14:46:54 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll
[2013.10.09 14:46:52 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browcli.dll
[2013.10.09 14:46:50 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srcore.dll
[2013.10.09 14:46:49 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rstrui.exe
[2013.10.09 14:46:44 | 000,802,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WFS.exe
[2013.10.09 14:46:44 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FXSCOVER.exe
[2013.10.09 14:46:38 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tquery.dll
[2013.10.09 14:46:38 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssrch.dll
[2013.10.09 14:46:37 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssvp.dll
[2013.10.09 14:46:37 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssph.dll
[2013.10.09 14:46:37 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssphtb.dll
[2013.10.09 14:46:37 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscntrs.dll
[2013.10.09 14:41:27 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\poqexec.exe
[2013.10.09 14:40:30 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42u.dll
[2013.10.09 14:40:30 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42.dll
[2013.10.09 14:34:28 | 000,027,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\Diskdump.sys
[2013.10.09 14:34:13 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdd.dll
[2013.10.09 00:01:14 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2013.10.09 00:00:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\oem
[2013.10.09 00:00:05 | 000,000,000 | ---D | C] -- C:\Windows\cs-CZ
[2013.10.09 00:00:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\cs
[2013.10.09 00:00:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\XPSViewer
[2013.10.09 00:00:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\cs-CZ
[2013.10.08 23:58:21 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\usbport.sys.mui
[2013.10.08 23:58:21 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\volsnap.sys.mui
[2013.10.08 23:58:21 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\usbhub.sys.mui
[2013.10.08 23:58:21 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\vhdmp.sys.mui
[2013.10.08 23:58:21 | 000,003,584 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\cs-CZ\pscr.sys.mui
[2013.10.08 23:58:21 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\tpm.sys.mui
[2013.10.08 23:58:21 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\portcls.sys.mui
[2013.10.08 23:58:21 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\umbus.sys.mui
[2013.10.08 23:58:21 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\serscan.sys.mui
[2013.10.08 23:58:21 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\wd.sys.mui
[2013.10.08 23:58:20 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\mpio.sys.mui
[2013.10.08 23:58:20 | 000,033,792 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\cs-CZ\yk62x86.sys.mui
[2013.10.08 23:58:20 | 000,020,992 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\cs-CZ\e1y6032.sys.mui
[2013.10.08 23:58:20 | 000,020,992 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\cs-CZ\e1e6032.sys.mui
[2013.10.08 23:58:20 | 000,017,920 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\cs-CZ\E1G60I32.sys.mui
[2013.10.08 23:58:20 | 000,012,800 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\cs-CZ\k57nd60x.sys.mui
[2013.10.08 23:58:20 | 000,012,800 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\cs-CZ\b57nd60x.sys.mui
[2013.10.08 23:58:20 | 000,011,264 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\cs-CZ\e1q6032.sys.mui
[2013.10.08 23:58:20 | 000,010,752 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\cs-CZ\e1k6032.sys.mui
[2013.10.08 23:58:20 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\serial.sys.mui
[2013.10.08 23:58:20 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\i8042prt.sys.mui
[2013.10.08 23:58:20 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\msdsm.sys.mui
[2013.10.08 23:58:20 | 000,005,632 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\cs-CZ\bcm4sbxp.sys.mui
[2013.10.08 23:58:20 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\sermouse.sys.mui
[2013.10.08 23:58:20 | 000,005,120 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\cs-CZ\e100b325.sys.mui
[2013.10.08 23:58:20 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\pcmcia.sys.mui
[2013.10.08 23:58:20 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\mouclass.sys.mui
[2013.10.08 23:58:20 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\parport.sys.mui
[2013.10.08 23:58:20 | 000,003,072 | ---- | C] (VIA Technologies, Inc. ) -- C:\Windows\System32\drivers\cs-CZ\getn62.sys.mui
[2013.10.08 23:58:20 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\rndismpx.sys.mui
[2013.10.08 23:58:20 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\rndismp6.sys.mui
[2013.10.08 23:58:20 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\ataport.sys.mui
[2013.10.08 23:58:20 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\vwifibus.sys.mui
[2013.10.08 23:58:20 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\parvdm.sys.mui
[2013.10.08 23:58:20 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\MTConfig.sys.mui
[2013.10.08 23:58:20 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\mouhid.sys.mui
[2013.10.08 23:58:20 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\amdide.sys.mui
[2013.10.08 23:58:19 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\bfe.dll.mui
[2013.10.08 23:58:19 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\afd.sys.mui
[2013.10.08 23:58:19 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\ws2ifsl.sys.mui
[2013.10.08 23:58:18 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\tcpip.sys.mui
[2013.10.08 23:58:18 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\tunnel.sys.mui
[2013.10.08 23:58:18 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\modem.sys.mui
[2013.10.08 23:58:18 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\usbrpm.sys.mui
[2013.10.08 23:58:17 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\fvevol.sys.mui
[2013.10.08 23:58:17 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\scfilter.sys.mui
[2013.10.08 23:58:16 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\pacer.sys.mui
[2013.10.08 23:58:16 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\rdbss.sys.mui
[2013.10.08 23:58:16 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\qwavedrv.sys.mui
[2013.10.08 23:58:15 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\partmgr.sys.mui
[2013.10.08 23:58:14 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\ntfs.sys.mui
[2013.10.08 23:58:14 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\ndis.sys.mui
[2013.10.08 23:58:14 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\nwifi.sys.mui
[2013.10.08 23:58:14 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\ndisuio.sys.mui
[2013.10.08 23:58:13 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\ndiscap.sys.mui
[2013.10.08 23:58:12 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\luafv.sys.mui
[2013.10.08 23:58:12 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\mountmgr.sys.mui
[2013.10.08 23:58:11 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\http.sys.mui
[2013.10.08 23:58:07 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\fltmgr.sys.mui
[2013.10.08 23:58:06 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\volmgrx.sys.mui
[2013.10.08 23:58:05 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\viac7.sys.mui
[2013.10.08 23:58:05 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\processr.sys.mui
[2013.10.08 23:58:05 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\intelppm.sys.mui
[2013.10.08 23:58:05 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\amdppm.sys.mui
[2013.10.08 23:58:05 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\amdk8.sys.mui
[2013.10.08 23:58:05 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\ohci1394.sys.mui
[2013.10.08 23:58:05 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\1394ohci.sys.mui
[2013.10.08 23:58:05 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\battc.sys.mui
[2013.10.08 23:58:05 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\acpi.sys.mui
[2013.10.08 23:58:05 | 000,009,728 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\cs-CZ\BrSerId.sys.mui
[2013.10.08 23:58:05 | 000,009,728 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\cs-CZ\BrSerIb.sys.mui
[2013.10.08 23:58:05 | 000,009,728 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\cs-CZ\ltmdmnt.sys.mui
[2013.10.08 23:58:05 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\pci.sys.mui
[2013.10.08 23:58:05 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\bthport.sys.mui
[2013.10.08 23:58:05 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\IPMIDrv.sys.mui
[2013.10.08 23:58:05 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\bthpan.sys.mui
[2013.10.08 23:58:05 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\wacompen.sys.mui
[2013.10.08 23:58:05 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\vdrvroot.sys.mui
[2013.10.08 23:58:05 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\hdaudbus.sys.mui
[2013.10.08 23:58:05 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\isapnp.sys.mui
[2013.10.08 23:58:05 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\HdAudio.sys.mui
[2013.10.08 23:58:05 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\mssmbios.sys.mui
[2013.10.08 23:58:05 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\hidbth.sys.mui
[2013.10.08 23:58:05 | 000,003,072 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\cs-CZ\atikmdag.sys.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\VIAAGP.SYS.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\ULIAGPKX.SYS.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\UAGP35.SYS.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\SISAGP.SYS.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\pnpmem.sys.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\NV_AGP.SYS.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\kbdhid.sys.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\Dot4usb.sys.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\BTHUSB.SYS.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\AMDAGP.SYS.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\AGP440.sys.mui
[2013.10.08 23:58:05 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\cs-CZ\BrParwdm.sys.mui
[2013.10.08 23:58:05 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\disk.sys.mui
[2013.10.08 23:58:05 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\cdrom.sys.mui
[2013.10.08 23:58:05 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\cs-CZ\bthenum.sys.mui
[2013.10.08 14:31:00 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\WindowsUpdate
[2013.10.08 14:27:04 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2013.10.08 14:27:04 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2013.10.08 14:26:54 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
[2013.10.08 14:26:54 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
[2013.10.08 14:26:54 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
[2013.10.08 14:26:47 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2013.10.08 14:26:47 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[2013.10.08 14:10:06 | 000,000,000 | R--D | C] -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2013.10.08 14:10:06 | 000,000,000 | R--D | C] -- C:\Users\Admin\Searches
[2013.10.08 14:10:06 | 000,000,000 | R--D | C] -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2013.10.08 14:09:53 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Identities
[2013.10.08 14:09:50 | 000,000,000 | R--D | C] -- C:\Users\Admin\Contacts
[2013.10.08 14:09:32 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\VirtualStore
[2013.10.08 14:09:30 | 000,000,000 | --SD | C] -- C:\Users\Admin\AppData\Roaming\Microsoft
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Videos
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Saved Games
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Pictures
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Music
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Links
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Favorites
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Downloads
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Documents
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\Desktop
[2013.10.08 14:09:30 | 000,000,000 | R--D | C] -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\AppData\Local\Temporary Internet Files
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Šablony
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Soubory cookie
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\SendTo
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Poslední
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Okolní tiskárny
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Okolní síť
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Documents\Obrázky
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Nabídka Start
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Local Settings
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Documents\Hudba
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\AppData\Local\History
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Documents\Filmy
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Dokumenty
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\Data aplikací
[2013.10.08 14:09:30 | 000,000,000 | -HSD | C] -- C:\Users\Admin\AppData\Local\Data aplikací
[2013.10.08 14:09:30 | 000,000,000 | -H-D | C] -- C:\Users\Admin\AppData
[2013.10.08 14:09:30 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Temp
[2013.10.08 14:09:30 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Local\Microsoft
[2013.10.08 14:09:30 | 000,000,000 | ---D | C] -- C:\Users\Admin\AppData\Roaming\Media Center Programs
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\ProgramData\Šablony
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\Recovery
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plocha
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Obrázky
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\ProgramData\Oblíbené položky
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\ProgramData\Nabídka Start
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Hudba
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Filmy
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2013.10.08 14:09:23 | 000,000,000 | -HSD | C] -- C:\ProgramData\Data aplikací
[2013.10.08 14:04:42 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2013.10.08 14:02:15 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2013.10.08 14:01:51 | 000,000,000 | -HSD | C] -- C:\System Volume Information

========== Files - Modified Within 7 Days ==========

[2013.10.14 17:49:01 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.10.14 17:46:01 | 000,000,938 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.10.14 17:41:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Admin\Desktop\OTL.exe
[2013.10.14 17:36:13 | 000,054,016 | ---- | M] () -- C:\Windows\System32\drivers\ffta.sys
[2013.10.14 17:33:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.10.14 16:14:43 | 000,040,776 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2013.10.14 16:13:37 | 000,001,071 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013.10.14 16:11:35 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Admin\Desktop\mbam-setup-1.75.0.1300.exe
[2013.10.14 16:10:34 | 000,014,448 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.10.14 16:10:34 | 000,014,448 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.10.14 16:07:26 | 000,631,292 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2013.10.14 16:07:26 | 000,616,008 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2013.10.14 16:07:26 | 000,121,914 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2013.10.14 16:07:26 | 000,106,388 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2013.10.14 16:03:20 | 000,000,934 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.10.14 16:02:58 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.10.14 16:02:53 | 2760,257,536 | -HS- | M] () -- C:\hiberfil.sys
[2013.10.14 15:56:06 | 001,048,960 | ---- | M] () -- C:\Users\Admin\Desktop\adwcleaner.exe
[2013.10.14 15:45:08 | 001,032,220 | ---- | M] (Thisisu) -- C:\Users\Admin\Desktop\JRT.exe
[2013.10.14 15:09:05 | 000,001,192 | ---- | M] () -- C:\Users\Admin\Desktop\Windows Explorer.lnk
[2013.10.14 15:07:37 | 000,001,387 | ---- | M] () -- C:\Users\Admin\Desktop\Internet Explorer.lnk
[2013.10.14 14:09:37 | 000,001,085 | ---- | M] () -- C:\Users\Admin\Desktop\Dokumenty – zástupce.lnk
[2013.10.14 13:49:44 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
[2013.10.14 13:49:44 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
[2013.10.14 13:49:41 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
[2013.10.11 15:43:18 | 000,000,074 | RHS- | M] () -- C:\Windows\CT4CET.bin
[2013.10.11 07:49:34 | 000,000,402 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2013.10.10 21:27:17 | 000,408,520 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2013.10.10 20:08:36 | 000,003,055 | ---- | M] () -- C:\Users\Admin\Desktop\Microsoft Outlook 2010.lnk
[2013.10.10 20:08:18 | 000,003,111 | ---- | M] () -- C:\Users\Admin\Desktop\Microsoft Word 2010.lnk
[2013.10.10 20:07:57 | 000,002,959 | ---- | M] () -- C:\Users\Admin\Desktop\Microsoft Excel 2010.lnk
[2013.10.10 20:06:00 | 000,745,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2013.10.10 20:06:00 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\elshyph.dll
[2013.10.10 20:05:59 | 002,706,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2013.10.10 20:05:59 | 000,493,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2013.10.10 20:05:59 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2013.10.10 20:05:59 | 000,158,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll
[2013.10.10 20:05:59 | 000,150,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe
[2013.10.10 20:05:59 | 000,138,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe
[2013.10.10 20:05:59 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2013.10.10 20:05:59 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll
[2013.10.10 20:05:59 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
[2013.10.10 20:05:59 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll
[2013.10.10 20:05:59 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2013.10.10 20:05:58 | 002,876,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2013.10.10 20:05:58 | 001,400,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2013.10.10 20:05:58 | 000,629,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2013.10.10 20:05:58 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2013.10.10 20:05:58 | 000,361,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2013.10.10 20:05:58 | 000,357,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2013.10.10 20:05:58 | 000,226,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2013.10.10 20:05:58 | 000,117,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2013.10.10 20:05:58 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\IEAdvpack.dll
[2013.10.10 20:05:58 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2013.10.10 20:05:58 | 000,073,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe
[2013.10.10 20:05:58 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2013.10.10 20:05:58 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll
[2013.10.10 20:05:58 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2013.10.10 20:05:58 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2013.10.10 20:05:58 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll
[2013.10.10 20:05:58 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2013.10.10 20:05:58 | 000,025,185 | ---- | M] () -- C:\Windows\System32\ieuinit.inf
[2013.10.10 20:05:58 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2013.10.10 20:05:57 | 001,441,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2013.10.10 20:05:57 | 000,719,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2013.10.10 20:05:57 | 000,242,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2013.10.10 20:05:57 | 000,232,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2013.10.10 20:05:57 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2013.10.10 20:05:24 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
[2013.10.10 20:04:55 | 003,419,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2013.10.10 20:04:55 | 002,284,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msmpeg2vdec.dll
[2013.10.10 20:04:55 | 001,988,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2013.10.10 20:04:55 | 001,247,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2013.10.10 20:04:55 | 001,158,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2013.10.10 20:04:55 | 001,080,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2013.10.10 20:04:55 | 000,604,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2013.10.10 20:04:55 | 000,417,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll
[2013.10.10 20:04:55 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2013.10.10 20:04:55 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2013.10.10 20:04:55 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2013.10.10 20:04:55 | 000,220,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2013.10.10 20:04:55 | 000,207,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll
[2013.10.10 20:04:55 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2013.10.10 20:04:55 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013.10.10 20:04:55 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013.10.10 20:04:55 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013.10.10 20:04:55 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013.10.10 20:04:55 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
[2013.10.10 20:04:55 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013.10.10 20:04:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
[2013.10.10 20:04:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013.10.10 20:04:55 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013.10.10 20:04:54 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll
[2013.10.10 20:03:24 | 001,505,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll
[2013.10.10 20:00:31 | 000,002,129 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013.10.10 18:35:51 | 000,001,989 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2013.10.10 18:07:04 | 000,000,206 | ---- | M] () -- C:\Windows\hbcikrnl.ini
[2013.10.10 18:06:22 | 000,040,960 | ---- | M] (O2Micro) -- C:\Windows\System32\ct32O2.dll
[2013.10.10 18:06:17 | 000,080,368 | ---- | M] () -- C:\Windows\System32\pbadrvdll.dll
[2013.10.10 18:06:17 | 000,026,608 | ---- | M] (Dell Inc) -- C:\Windows\System32\drivers\PBADRV.sys
[2013.10.10 18:06:16 | 000,176,128 | ---- | M] () -- C:\Windows\System32\bioapi_mds300.dll
[2013.10.10 18:06:16 | 000,126,976 | ---- | M] () -- C:\Windows\System32\bioapi100.dll
[2013.10.10 18:04:52 | 000,001,071 | ---- | M] () -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Smart Settings.lnk
[2013.10.10 17:53:38 | 000,015,772 | ---- | M] () -- C:\Windows\System32\results.xml
[2013.10.10 17:41:36 | 000,001,853 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SetPoint.lnk
[2013.10.10 17:21:58 | 000,000,632 | ---- | M] () -- C:\Users\Admin\Desktop\Total Commander.lnk
[2013.10.10 16:49:51 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_Apfiltr_01009.Wdf
[2013.10.10 16:49:07 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
[2013.10.10 15:30:51 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msclmd.dll
[2013.10.10 13:40:29 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2013.10.10 13:40:29 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2013.10.10 13:13:48 | 000,000,000 | -H-- | M] () -- C:\Users\Admin\Documents\Default.rdp
[2013.10.10 12:19:57 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2013.10.09 16:10:57 | 000,001,754 | ---- | M] () -- C:\Users\Public\Desktop\Výběr prohlížeče.lnk
[2013.10.08 23:59:58 | 000,292,004 | ---- | M] () -- C:\Windows\System32\perfi005.dat
[2013.10.08 23:59:58 | 000,036,232 | ---- | M] () -- C:\Windows\System32\perfd005.dat
[2013.10.08 14:05:14 | 000,062,544 | ---- | M] () -- C:\Windows\System32\license.rtf

========== Files Created - No Company Name ==========

[2013.10.14 17:49:01 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.10.14 17:36:13 | 000,054,016 | ---- | C] () -- C:\Windows\System32\drivers\ffta.sys
[2013.10.14 16:13:37 | 000,001,071 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013.10.14 15:56:06 | 001,048,960 | ---- | C] () -- C:\Users\Admin\Desktop\adwcleaner.exe
[2013.10.14 15:08:53 | 000,001,192 | ---- | C] () -- C:\Users\Admin\Desktop\Windows Explorer.lnk
[2013.10.14 14:09:37 | 000,001,085 | ---- | C] () -- C:\Users\Admin\Desktop\Dokumenty – zástupce.lnk
[2013.10.14 13:49:44 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
[2013.10.14 13:49:44 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
[2013.10.14 13:49:41 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
[2013.10.11 15:43:18 | 000,000,074 | RHS- | C] () -- C:\Windows\CT4CET.bin
[2013.10.11 15:42:15 | 000,057,656 | ---- | C] () -- C:\Windows\System32\drivers\FilterPC.bmp
[2013.10.11 15:42:15 | 000,024,995 | ---- | C] () -- C:\Windows\System32\drivers\FilterPC.jpg
[2013.10.10 20:08:36 | 000,003,055 | ---- | C] () -- C:\Users\Admin\Desktop\Microsoft Outlook 2010.lnk
[2013.10.10 20:08:18 | 000,003,111 | ---- | C] () -- C:\Users\Admin\Desktop\Microsoft Word 2010.lnk
[2013.10.10 20:07:57 | 000,002,959 | ---- | C] () -- C:\Users\Admin\Desktop\Microsoft Excel 2010.lnk
[2013.10.10 20:05:58 | 000,025,185 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2013.10.10 18:36:50 | 000,002,129 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013.10.10 18:36:27 | 000,000,938 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.10.10 18:36:26 | 000,000,934 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.10.10 18:35:51 | 000,001,989 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2013.10.10 18:35:50 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2013.10.10 18:07:56 | 000,080,368 | ---- | C] () -- C:\Windows\System32\pbadrvdll.dll
[2013.10.10 18:07:02 | 000,000,402 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013.10.10 18:06:56 | 000,000,206 | ---- | C] () -- C:\Windows\hbcikrnl.ini
[2013.10.10 18:05:20 | 000,001,071 | ---- | C] () -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Smart Settings.lnk
[2013.10.10 17:53:38 | 000,015,772 | ---- | C] () -- C:\Windows\System32\results.xml
[2013.10.10 17:49:31 | 001,921,265 | ---- | C] () -- C:\Windows\System32\iglhxa32.cpa
[2013.10.10 17:49:31 | 000,874,048 | ---- | C] () -- C:\Windows\System32\igkrng575.bin
[2013.10.10 17:49:31 | 000,060,254 | ---- | C] () -- C:\Windows\System32\iglhxg32.vp
[2013.10.10 17:49:31 | 000,060,226 | ---- | C] () -- C:\Windows\System32\iglhxc32.vp
[2013.10.10 17:49:31 | 000,060,015 | ---- | C] () -- C:\Windows\System32\iglhxo32.vp
[2013.10.10 17:49:31 | 000,051,632 | ---- | C] () -- C:\Windows\System32\iglhxs32.vp
[2013.10.10 17:49:31 | 000,001,090 | ---- | C] () -- C:\Windows\System32\iglhxa32.vp
[2013.10.10 17:49:29 | 000,104,796 | ---- | C] () -- C:\Windows\System32\igfcg575m.bin
[2013.10.10 17:49:29 | 000,004,096 | ---- | C] ( ) -- C:\Windows\System32\IGFXDEVLib.dll
[2013.10.10 17:49:28 | 000,127,868 | ---- | C] () -- C:\Windows\System32\igcompkrng575.bin
[2013.10.10 17:49:27 | 000,189,494 | ---- | C] () -- C:\Windows\System32\Gfxres.th-TH.resources
[2013.10.10 17:49:27 | 000,178,349 | ---- | C] () -- C:\Windows\System32\Gfxres.el-GR.resources
[2013.10.10 17:49:27 | 000,165,337 | ---- | C] () -- C:\Windows\System32\Gfxres.ru-RU.resources
[2013.10.10 17:49:27 | 000,139,851 | ---- | C] () -- C:\Windows\System32\Gfxres.ar-SA.resources
[2013.10.10 17:49:27 | 000,136,343 | ---- | C] () -- C:\Windows\System32\Gfxres.ja-JP.resources
[2013.10.10 17:49:27 | 000,133,688 | ---- | C] () -- C:\Windows\System32\Gfxres.he-IL.resources
[2013.10.10 17:49:27 | 000,125,500 | ---- | C] () -- C:\Windows\System32\Gfxres.it-IT.resources
[2013.10.10 17:49:27 | 000,123,172 | ---- | C] () -- C:\Windows\System32\Gfxres.ko-KR.resources
[2013.10.10 17:49:27 | 000,122,869 | ---- | C] () -- C:\Windows\System32\Gfxres.es-ES.resources
[2013.10.10 17:49:27 | 000,122,651 | ---- | C] () -- C:\Windows\System32\Gfxres.de-DE.resources
[2013.10.10 17:49:27 | 000,121,115 | ---- | C] () -- C:\Windows\System32\Gfxres.tr-TR.resources
[2013.10.10 17:49:27 | 000,120,742 | ---- | C] () -- C:\Windows\System32\Gfxres.fr-FR.resources
[2013.10.10 17:49:27 | 000,120,308 | ---- | C] () -- C:\Windows\System32\Gfxres.pt-BR.resources
[2013.10.10 17:49:27 | 000,119,558 | ---- | C] () -- C:\Windows\System32\Gfxres.hu-HU.resources
[2013.10.10 17:49:27 | 000,119,528 | ---- | C] () -- C:\Windows\System32\Gfxres.nl-NL.resources
[2013.10.10 17:49:27 | 000,119,302 | ---- | C] () -- C:\Windows\System32\Gfxres.sv-SE.resources
[2013.10.10 17:49:27 | 000,119,009 | ---- | C] () -- C:\Windows\System32\Gfxres.pt-PT.resources
[2013.10.10 17:49:27 | 000,118,687 | ---- | C] () -- C:\Windows\System32\Gfxres.cs-CZ.resources
[2013.10.10 17:49:27 | 000,118,639 | ---- | C] () -- C:\Windows\System32\Gfxres.fi-FI.resources
[2013.10.10 17:49:27 | 000,118,351 | ---- | C] () -- C:\Windows\System32\Gfxres.pl-PL.resources
[2013.10.10 17:49:27 | 000,118,000 | ---- | C] () -- C:\Windows\System32\Gfxres.sk-SK.resources
[2013.10.10 17:49:27 | 000,114,794 | ---- | C] () -- C:\Windows\System32\Gfxres.nb-NO.resources
[2013.10.10 17:49:27 | 000,114,314 | ---- | C] () -- C:\Windows\System32\Gfxres.sl-SI.resources
[2013.10.10 17:49:27 | 000,114,203 | ---- | C] () -- C:\Windows\System32\Gfxres.da-DK.resources
[2013.10.10 17:49:27 | 000,110,156 | ---- | C] () -- C:\Windows\System32\Gfxres.en-US.resources
[2013.10.10 17:49:27 | 000,103,986 | ---- | C] () -- C:\Windows\System32\Gfxres.zh-TW.resources
[2013.10.10 17:49:27 | 000,102,825 | ---- | C] () -- C:\Windows\System32\Gfxres.zh-CN.resources
[2013.10.10 17:41:36 | 000,001,853 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SetPoint.lnk
[2013.10.10 17:21:58 | 000,000,632 | ---- | C] () -- C:\Users\Admin\Desktop\Total Commander.lnk
[2013.10.10 16:49:51 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_Apfiltr_01009.Wdf
[2013.10.10 14:57:38 | 000,146,852 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2013.10.10 14:56:40 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
[2013.10.10 14:56:37 | 000,010,429 | ---- | C] () -- C:\Windows\System32\ScavengeSpace.xml
[2013.10.10 14:56:30 | 000,105,559 | ---- | C] () -- C:\Windows\System32\RacRules.xml
[2013.10.10 13:40:31 | 000,000,914 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.10.10 13:26:05 | 000,001,912 | ---- | C] () -- C:\Windows\epplauncher.mif
[2013.10.10 13:25:51 | 000,002,117 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2013.10.10 13:13:48 | 000,000,000 | -H-- | C] () -- C:\Users\Admin\Documents\Default.rdp
[2013.10.10 12:22:09 | 000,001,387 | ---- | C] () -- C:\Users\Admin\Desktop\Internet Explorer.lnk
[2013.10.10 12:19:57 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2013.10.09 16:10:57 | 000,001,754 | ---- | C] () -- C:\Users\Public\Desktop\Výběr prohlížeče.lnk
[2013.10.09 14:57:11 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2013.10.09 14:56:37 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2013.10.09 00:00:49 | 000,000,025 | RH-- | C] () -- C:\Windows\DELL_version
[2013.10.09 00:00:24 | 000,631,292 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2013.10.09 00:00:24 | 000,292,004 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2013.10.09 00:00:24 | 000,121,914 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2013.10.09 00:00:24 | 000,036,232 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2013.10.08 14:10:07 | 000,001,397 | ---- | C] () -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2013.10.08 14:05:07 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2013.10.08 14:05:00 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2013.10.08 14:01:51 | 2760,257,536 | -HS- | C] () -- C:\hiberfil.sys
[2012.01.16 15:26:30 | 000,088,064 | ---- | C] () -- C:\Windows\System32\Internationalization_th.dll
[2012.01.16 15:26:30 | 000,074,752 | ---- | C] () -- C:\Windows\System32\Internationalization_zh-HK.dll
[2012.01.16 15:26:28 | 000,090,112 | ---- | C] () -- C:\Windows\System32\Internationalization_sl.dll
[2012.01.16 15:26:28 | 000,090,112 | ---- | C] () -- C:\Windows\System32\Internationalization_sk.dll
[2012.01.16 15:26:26 | 000,091,136 | ---- | C] () -- C:\Windows\System32\Internationalization_hr.dll
[2012.01.16 15:26:26 | 000,089,088 | ---- | C] () -- C:\Windows\System32\Internationalization_tr.dll
[2012.01.16 15:26:24 | 000,092,672 | ---- | C] () -- C:\Windows\System32\Internationalization_ro.dll
[2012.01.16 15:26:24 | 000,092,672 | ---- | C] () -- C:\Windows\System32\Internationalization_pt-BR.dll
[2012.01.16 15:26:22 | 000,092,160 | ---- | C] () -- C:\Windows\System32\Internationalization_hu.dll
[2012.01.16 15:26:22 | 000,090,112 | ---- | C] () -- C:\Windows\System32\Internationalization_fi.dll
[2012.01.16 15:26:22 | 000,084,992 | ---- | C] () -- C:\Windows\System32\Internationalization_he.dll
[2012.01.16 15:26:20 | 000,097,280 | ---- | C] () -- C:\Windows\System32\Internationalization_el.dll
[2012.01.16 15:26:20 | 000,091,136 | ---- | C] () -- C:\Windows\System32\Internationalization_cs.dll
[2012.01.16 15:26:18 | 000,087,040 | ---- | C] () -- C:\Windows\System32\Internationalization_ar.dll
[2012.01.16 15:26:18 | 000,074,752 | ---- | C] () -- C:\Windows\System32\Internationalization_zh-CHT.dll
[2012.01.16 15:26:16 | 000,091,648 | ---- | C] () -- C:\Windows\System32\Internationalization_sv.dll
[2012.01.16 15:26:16 | 000,091,136 | ---- | C] () -- C:\Windows\System32\Internationalization_ru.dll
[2012.01.16 15:26:16 | 000,074,240 | ---- | C] () -- C:\Windows\System32\Internationalization_zh-CHS.dll
[2012.01.16 15:26:14 | 000,094,720 | ---- | C] () -- C:\Windows\System32\Internationalization_pt.dll
[2012.01.16 15:26:14 | 000,093,184 | ---- | C] () -- C:\Windows\System32\Internationalization_pl.dll
[2012.01.16 15:26:12 | 000,097,792 | ---- | C] () -- C:\Windows\System32\Internationalization_nl.dll
[2012.01.16 15:26:12 | 000,089,600 | ---- | C] () -- C:\Windows\System32\Internationalization_no.dll
[2012.01.16 15:26:10 | 000,080,896 | ---- | C] () -- C:\Windows\System32\Internationalization_ja.dll
[2012.01.16 15:26:10 | 000,079,360 | ---- | C] () -- C:\Windows\System32\Internationalization_ko.dll
[2012.01.16 15:26:08 | 000,095,232 | ---- | C] () -- C:\Windows\System32\Internationalization_fr.dll
[2012.01.16 15:26:08 | 000,094,720 | ---- | C] () -- C:\Windows\System32\Internationalization_it.dll
[2012.01.16 15:26:08 | 000,094,720 | ---- | C] () -- C:\Windows\System32\Internationalization_es.dll
[2012.01.16 15:26:06 | 000,095,744 | ---- | C] () -- C:\Windows\System32\Internationalization_de.dll
[2012.01.16 15:26:04 | 000,092,672 | ---- | C] () -- C:\Windows\System32\Internationalization_da.dll
[2012.01.10 21:12:34 | 000,000,151 | ---- | C] () -- C:\Windows\System32\GfxUI.exe.config
[2012.01.10 21:12:12 | 000,094,208 | ---- | C] () -- C:\Windows\System32\IccLibDll.dll
[2011.11.07 06:24:58 | 000,084,992 | ---- | C] () -- C:\Windows\System32\Wavx_ESC_Logging.dll

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#11 Příspěvek od zbynadovirycz »

========== ZeroAccess Check ==========

[2009.07.14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.07.26 03:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009.07.14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2013.10.10 17:21:55 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\GHISLER
[2013.10.10 19:28:13 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\PCDr
[2013.10.10 18:06:15 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Wave Systems Corp

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.07.14 06:53:46 | 000,008,716 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2009.07.14 06:53:47 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2013.10.10 13:40:31 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013.10.10 18:36:26 | 000,000,934 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013.10.10 18:36:27 | 000,000,938 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_a5025d31bee4647c\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_df3f92057fcbe7a7\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_df26d4d57fdef5b0\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_dfc9143c98e9a6c4\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\System32\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 01:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_5f7fb206051affbb\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\drivers\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_x86_neutral_6381e09675524225\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_61b0c5ce02098355\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe
[2009.10.31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_51a66d6ddafc2ed1\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe
[2009.08.03 07:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_526619d4f3f142e6\explorer.exe
[2009.08.03 07:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_51e07e31dad00878\explorer.exe
[2009.10.31 08:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_52283b2af41f3691\explorer.exe

< MD5 for: HAL.DLL >
[2010.11.20 14:29:53 | 000,194,432 | ---- | M] (Microsoft Corporation) MD5=1BF0D4727FDB437D513CFF8A9359C050 -- C:\Windows\System32\hal.dll
[2010.11.20 14:29:53 | 000,194,432 | ---- | M] (Microsoft Corporation) MD5=1BF0D4727FDB437D513CFF8A9359C050 -- C:\Windows\winsxs\x86_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_ad305c8fb7ec5060\hal.dll
[2009.07.14 03:20:28 | 000,194,640 | ---- | M] (Microsoft Corporation) MD5=9A557EAE64ABAB3BA67A9BB035D24CB9 -- C:\Windows\winsxs\x86_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_aaff48c7bafdccc6\hal.dll

< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_37e4387f3a6f0483\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\System32\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_3a154c47375d881d\scecli.dll

< MD5 for: SERVICES.EXE >
[2009.07.14 03:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\System32\services.exe
[2009.07.14 03:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe

< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\System32\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2013.04.04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe

< MD5 for: TCPIP.SYS >
[2011.04.25 06:56:06 | 001,286,016 | ---- | M] (Microsoft Corporation) MD5=0158D5E9982E9D6A90DFC802F618E130 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_b347f075c77b9c9d\tcpip.sys
[2011.04.25 06:31:30 | 001,290,624 | ---- | M] (Microsoft Corporation) MD5=24326784DF8F3D5F5BBB9F878CE33C14 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_b52f4dc5c4a121e0\tcpip.sys
[2009.07.14 03:19:10 | 001,285,712 | ---- | M] (Microsoft Corporation) MD5=2CC3D75488ABD3EC628BBB9A4FC84EFC -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_b2f46875c7b9d667\tcpip.sys
[2013.01.03 07:01:49 | 001,303,912 | ---- | M] (Microsoft Corporation) MD5=34AE5CC0C7417AB701C2AA8A7BC75417 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_b3c99dece09ecc3b\tcpip.sys
[2010.11.20 14:30:12 | 001,290,112 | ---- | M] (Microsoft Corporation) MD5=37E8FA3779668837CA9E2C36D2415949 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_b5257c3dc4a85a01\tcpip.sys
[2013.01.04 06:56:23 | 001,308,504 | ---- | M] (Microsoft Corporation) MD5=4A95845C5F33A4DDEB6AEF6367FB6520 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_b5becc06ddb98192\tcpip.sys
[2013.07.06 07:05:35 | 001,293,760 | ---- | M] (Microsoft Corporation) MD5=4E8B9BE71B807B3BAEDB7F4243F85E3C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18203_none_b52f2f65c4a146e5\tcpip.sys
[2013.07.06 06:57:37 | 001,309,120 | ---- | M] (Microsoft Corporation) MD5=528F7CC60391DD0FAB0344F32F051FDF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22378_none_b5721e2eddf328f9\tcpip.sys
[2010.04.09 09:16:33 | 001,289,096 | ---- | M] (Microsoft Corporation) MD5=5D6A83E928F22AF5AC9868B162FFAD0D -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20687_none_b38009a0e0d5a32d\tcpip.sys
[2010.04.09 09:24:54 | 001,285,000 | ---- | M] (Microsoft Corporation) MD5=63170B9EE1D0EF0032F0408605671D1A -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16569_none_b30e0d41c7a5fe2f\tcpip.sys
[2013.09.07 04:06:48 | 001,309,120 | ---- | M] (Microsoft Corporation) MD5=6C4F3D92764FFA22D28061A4D9235446 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22444_none_b58e8eb0ddde6cf1\tcpip.sys
[2011.04.25 08:31:09 | 001,301,376 | ---- | M] (Microsoft Corporation) MD5=6D4728CFF2724FF3A4654971D61D0F1C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_b5ad1a5addc7c444\tcpip.sys
[2013.01.03 07:05:20 | 001,293,672 | ---- | M] (Microsoft Corporation) MD5=7C0507D2391AF5933600CBCED799F277 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_b502eb9fc4c2a304\tcpip.sys
[2011.04.25 06:44:18 | 001,298,816 | ---- | M] (Microsoft Corporation) MD5=8861B9A06BA99C6E1D62D0C86DFAB86C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_b39a7d5ae0c2aec5\tcpip.sys
[2013.01.04 06:55:21 | 001,287,528 | ---- | M] (Microsoft Corporation) MD5=BBCEAEFF1FD72A026F827CBB2F4AA8AD -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_b34bcf71c7782cb0\tcpip.sys
[2013.09.08 04:07:12 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=CA59F7C570AF70BC174F477CFE2D9EE3 -- C:\Windows\System32\drivers\tcpip.sys
[2013.09.08 04:07:12 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=CA59F7C570AF70BC174F477CFE2D9EE3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18254_none_b4fa2013c4c8ebf1\tcpip.sys
[2012.10.03 18:44:01 | 001,308,040 | ---- | M] (Microsoft Corporation) MD5=D490DD0A91B4EAC3B4EE08D11EE37C31 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_b5a428d6ddce3d9a\tcpip.sys
[2012.10.03 18:58:30 | 001,293,680 | ---- | M] (Microsoft Corporation) MD5=E23A56F843E2AEBBB209D0ACCA73C640 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_b4ef7439c4d0da52\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\System32\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2009.10.28 08:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe
[2009.10.28 07:52:08 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe
[2010.11.20 14:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\System32\winlogon.exe
[2010.11.20 14:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
[2009.07.14 03:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe
[2013.04.04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe

< >

< %systemroot%*.* /U /s >
[5 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\15a8f43051c4ccec2a9fcfb41cf12b5a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\15a8f43051c4ccec2a9fcfb41cf12b5a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\9ccfac1a08c681fade44ed59a9e0fd93\*.tmp files -> C:\Windows\SoftwareDistribution\Download\9ccfac1a08c681fade44ed59a9e0fd93\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\f9d6e9c681f329d7ba3cb87120d919ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f9d6e9c681f329d7ba3cb87120d919ad\*.tmp -> ]
[19 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2013.10.10 18:41:56 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Adobe
[2013.10.11 15:46:59 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Creative
[2013.10.10 19:31:21 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Dell
[2013.10.10 17:21:55 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\GHISLER
[2013.10.08 14:09:53 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Identities
[2013.10.11 15:42:37 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\InstallShield
[2013.10.10 12:46:10 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Intel
[2013.10.10 17:43:15 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Logitech
[2013.10.10 12:35:32 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Macromedia
[2013.10.14 16:14:23 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Malwarebytes
[2009.07.14 09:49:10 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Media Center Programs
[2013.10.14 13:31:52 | 000,000,000 | --SD | M] -- C:\Users\Admin\AppData\Roaming\Microsoft
[2013.10.10 19:28:13 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\PCDr
[2013.10.10 18:06:15 | 000,000,000 | ---D | M] -- C:\Users\Admin\AppData\Roaming\Wave Systems Corp

< %APPDATA%\*.exe /s >
[2013.10.10 18:06:35 | 000,405,504 | R--- | M] (Acresso Software Inc.) -- C:\Users\Admin\AppData\Roaming\Microsoft\Installer\{9DAED4FC-2B0E-4F3F-8141-F2ABF02CCFCB}\ARPPRODUCTICON.exe
[2012.07.05 12:51:46 | 000,016,976 | ---- | M] (PC-Doctor, Inc.) -- C:\Users\Admin\AppData\Roaming\PCDr\Update\Rules\0764ddae-3756-458b-a535-e551233d8e43\appupdaterrules_dell\AddCertificate.exe
[2013.07.24 20:54:48 | 000,016,976 | ---- | M] (PC-Doctor, Inc.) -- C:\Users\Admin\AppData\Roaming\PCDr\Update\Rules\321afcf9-23eb-4236-b636-06074da8c566\PCDoctor_6219.34_windows_appupdaterrules_dell\AddCertificate.exe
[2013.07.24 20:54:48 | 000,016,976 | ---- | M] (PC-Doctor, Inc.) -- C:\Users\Admin\AppData\Roaming\PCDr\Update\Rules\4b26b474-e11a-4e8b-9576-1103cadbd0f7\PCDoctor_6219.34_windows_appupdaterrules_dell\AddCertificate.exe
[2013.07.24 20:54:48 | 000,016,976 | ---- | M] (PC-Doctor, Inc.) -- C:\Users\Admin\AppData\Roaming\PCDr\Update\Rules\55cce1f8-77e2-4cb0-8601-637cb360d3c3\PCDoctor_6219.34_windows_appupdaterrules_dell\AddCertificate.exe
[2013.07.24 20:54:48 | 000,016,976 | ---- | M] (PC-Doctor, Inc.) -- C:\Users\Admin\AppData\Roaming\PCDr\Update\Rules\6d26ee27-545d-4b82-a6b8-60dce8b2100e\PCDoctor_6219.34_windows_appupdaterrules_dell\AddCertificate.exe
[2013.07.24 20:54:48 | 000,016,976 | ---- | M] (PC-Doctor, Inc.) -- C:\Users\Admin\AppData\Roaming\PCDr\Update\Rules\962804df-6ace-4196-b574-a480890eb47b\PCDoctor_6219.34_windows_appupdaterrules_dell\AddCertificate.exe
[2013.07.24 20:54:48 | 000,016,976 | ---- | M] (PC-Doctor, Inc.) -- C:\Users\Admin\AppData\Roaming\PCDr\Update\Rules\b934c108-a8b3-4216-b8c2-37a5c3a8a287\PCDoctor_6219.34_windows_appupdaterrules_dell\AddCertificate.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2013.10.14 17:33:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013.10.14 16:03:20 | 000,000,934 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013.10.14 17:46:01 | 000,000,938 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >
[2013.10.14 17:36:13 | 000,054,016 | ---- | M] () -- C:\Windows\system32\drivers\ffta.sys
[2013.10.14 16:14:43 | 000,040,776 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\system32\drivers\mbamswissarmy.sys

< %systemroot%\system32\*.* /3 >
[2013.10.14 16:10:34 | 000,014,448 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.10.14 16:10:34 | 000,014,448 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.10.14 16:05:30 | 000,000,018 | ---- | M] () -- C:\Windows\system32\log.txt
[2013.10.14 16:07:26 | 000,121,914 | ---- | M] () -- C:\Windows\system32\perfc005.dat
[2013.10.14 16:07:26 | 000,106,388 | ---- | M] () -- C:\Windows\system32\perfc009.dat
[2013.10.14 16:07:26 | 000,631,292 | ---- | M] () -- C:\Windows\system32\perfh005.dat
[2013.10.14 16:07:26 | 000,616,008 | ---- | M] () -- C:\Windows\system32\perfh009.dat
[2013.10.14 16:07:26 | 001,470,062 | ---- | M] () -- C:\Windows\system32\PerfStringBackup.INI

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"DellSystemDetect" = C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms -- [2013.10.10 19:04:00 | 000,000,370 | ---- | M] ()
"Xmarks" = C:\Program Files\Xmarks\IE Extension\xmarkssync.exe -q -- [2013.06.06 15:38:12 | 001,125,376 | ---- | M] (Xmarks.com)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2013.10.10 20:05:59 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=D6B7DDB68436F13C3CAE2B92524F1FEC -- C:\Program Files\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2013.10.03 08:03:07 | 000,844,752 | ---- | M] (Google Inc.) MD5=0D3745CA2F064F2D6B6388C6AA5D3BC7 -- C:\Program Files\Google\Chrome\Application\chrome.exe

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.10.14 17:49:01 | 000,000,512 | ---- | M] () MD5=2CAD55DF488F2799EE0EC2571AD13025 -- C:\PhysicalMBR.bin

< >

< *crack* /s >

< *keygen* /s >

< *loader* /s >
[2009.05.23 02:38:52 | 000,061,952 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VS7Debug\coloader80.dll
[2009.05.22 21:27:34 | 000,004,608 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VS7Debug\coloader80.tlb
[2013.03.09 08:17:04 | 000,268,440 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2013.03.09 08:17:04 | 000,019,080 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2008.12.02 11:02:08 | 000,081,920 | ---- | M] () -- \Program Files\Dell Webcam\Dell Webcam Central\uploader.crl
[2008.12.02 11:10:04 | 000,405,504 | ---- | M] () -- \Program Files\Dell Webcam\Dell Webcam Central\UtubeUploader.dll
[2013.10.10 19:25:08 | 000,003,236 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JUR6FSR8\ajax-loader[1][1].gif
[2013.10.10 18:31:36 | 000,000,723 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9100T11\downloaderror[1].js
[2013.10.10 20:38:55 | 000,000,815 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9100T11\downloader[1].htm
[2013.10.10 18:31:36 | 000,001,174 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9100T11\downloader[1].js
[2013.10.10 18:43:05 | 000,000,723 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LG0QRYTQ\downloaderror[1].js
[2013.10.10 20:38:58 | 000,000,815 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LG0QRYTQ\downloader[1].htm
[2013.10.10 18:43:05 | 000,001,174 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LG0QRYTQ\downloader[1].js
[2013.10.10 17:20:01 | 000,000,414 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6KCKK8K3\facebook_api_loader[1].js
[2013.10.14 14:54:56 | 000,000,723 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\U1AIMKFN\ajax-loader.gif.pagespeed.ce.mq4ORtMkh0[1].gif
[2013.10.14 14:48:20 | 000,002,971 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\U1AIMKFN\loader[1].gif
[2013.10.14 13:42:12 | 000,001,231 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\U1AIMKFN\oneMscomJsCssLoader[1].js
[2013.10.14 14:00:08 | 000,003,061 | ---- | M] () -- \Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\U1AIMKFN\rmsloaderdelayeddiv[1].js
[2013.10.14 17:55:14 | 000,000,097 | ---- | M] () -- \Users\Admin\Favorites\Pocitace\Software\Picture_download\Google Image Downloader.url
[2013.10.14 17:55:18 | 000,000,124 | ---- | M] () -- \Users\Admin\Favorites\TV_video\Archivy\YouTube on-line downloader » Stahujte videa z YouTube stream-download (...).url
[2010.03.24 20:12:34 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109110000000000000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010.03.24 20:12:34 | 000,249,680 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109110000000000000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010.11.20 07:28:20 | 000,002,838 | ---- | M] () -- \Windows\SoftwareDistribution\Download\0dcbdf0cd3181da68ea1a0cad87fcd81\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.17514_fi-fi_178685823786d34d.manifest
[2010.11.20 07:38:52 | 000,002,838 | ---- | M] () -- \Windows\SoftwareDistribution\Download\0dcbdf0cd3181da68ea1a0cad87fcd81\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.17514_zh-cn_d8268e5f2967c990.manifest
[2012.10.04 18:40:37 | 000,003,584 | ---- | M] () -- \Windows\SoftwareDistribution\Download\ad7b8cfdb711865249ce6247b8e8e8d1\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2009.07.14 06:54:01 | 000,003,532 | ---- | M] () -- \Windows\System32\Tasks\Microsoft\Windows\WindowsColorSystem\Calibration Loader
[2013.10.08 23:59:57 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86.manifest
[2013.10.08 23:59:57 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86_winload.exe.mui_3bc5b827
[2013.10.08 23:59:57 | 000,030,272 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86_winresume.exe.mui_ff8b5358
[2013.10.10 15:31:04 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953.manifest
[2013.10.10 15:31:04 | 000,508,904 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953_winload.exe_75835076
[2013.10.10 15:31:05 | 000,442,720 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953_winresume.exe_85cd1215
[2009.07.14 04:17:38 | 000,002,894 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23.manifest
[2009.07.14 04:17:38 | 000,017,472 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23_spldr.sys_98bd87a0
[2009.07.14 04:54:50 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86.manifest
[2009.07.14 03:47:46 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_5afd1055cdfa75b9.manifest
[2009.08.19 09:38:48 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16411_none_5b44c087cdc549ed.manifest
[2009.08.19 09:21:21 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20509_none_5be12f8ee6d3987e.manifest
[2010.11.20 05:02:40 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953.manifest
[2009.07.14 03:52:31 | 000,002,894 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:45:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:56:23 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_0a96fc99dd17f16b\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_0adfad15dce1def6\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:44:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_0b12ca80f6405e48\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:39:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_0b5e7bdaf60797d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 07:53:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_0d3fdb3af3327f5f\api-ms-win-core-libraryloader-l1-1-0.dll

< End of report >









OTL Extras logfile created on: 14.10.2013 17:46:20 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Admin\Desktop
Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16721)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,43 Gb Total Physical Memory | 1,80 Gb Available Physical Memory | 52,46% Memory free
6,85 Gb Paging File | 5,11 Gb Available in Paging File | 74,49% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 213,26 Gb Total Space | 176,02 Gb Free Space | 82,54% Space Free | Partition Type: NTFS
Drive D: | 19,53 Gb Total Space | 18,38 Gb Free Space | 94,11% Space Free | Partition Type: NTFS

Computer Name: DELL_E5410 | User Name: Admin | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_USERS\S-1-5-21-2797010545-2807629137-2903096607-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{070BDF3E-38FE-49F5-B6AD-0190E80F874A}" = rport=445 | protocol=6 | dir=out | app=system |
"{221E4024-FC25-41E3-BA57-D970C9C76F10}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{2BB716B0-816F-465F-BB09-E95028DDF83E}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{43B38B74-11AF-4F3B-9036-1BB433D39067}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4720776A-ED5F-4008-A1ED-766E36D5111B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4C507D96-918D-4807-872A-78211873E2B5}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{5832A9D0-39A4-49FD-B3BE-B25F905F417B}" = lport=445 | protocol=6 | dir=in | app=system |
"{5A56066E-E1B2-46C4-9E6F-867152EB6894}" = lport=2869 | protocol=6 | dir=in | app=system |
"{5DB65C53-E826-491D-BD32-3B333386BF0C}" = lport=137 | protocol=17 | dir=in | app=system |
"{5F899332-9E1A-49DF-9145-155D695944BE}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{63E2C079-7B7F-4636-8C36-83884854AA63}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{6743767A-1FEA-4203-88EB-E011CD48FE19}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{73A0E3DF-C8FC-4AC9-AD9B-55FF7C9AE273}" = lport=138 | protocol=17 | dir=in | app=system |
"{81F4D5C6-826F-499B-ACE7-94946B246E4D}" = rport=137 | protocol=17 | dir=out | app=system |
"{8744FAD5-D5C8-4AB9-B789-93DBFC6547FF}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8AC164E0-3E54-471E-9D6F-9351F5FF449D}" = rport=10243 | protocol=6 | dir=out | app=system |
"{AAB876F0-74A0-45C1-A930-49683C69E5F7}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe |
"{CCAA7AAB-0D2D-489E-BCB3-81B4D74CFAD4}" = lport=139 | protocol=6 | dir=in | app=system |
"{CF058AD0-CA42-467E-8056-9FF4E8C15587}" = rport=139 | protocol=6 | dir=out | app=system |
"{D718872F-B6EF-402D-8DCA-C775B6E738F3}" = rport=138 | protocol=17 | dir=out | app=system |
"{F264AC53-DCA4-4927-A509-45DD00CF494D}" = lport=10243 | protocol=6 | dir=in | app=system |
"{F9CA7715-6FAA-4102-8C6F-9D7385449095}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0785E89E-1002-47B2-BF58-8374FBA61D00}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{07A1A0CC-785D-4F84-AE63-121AAE5ED9CD}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{099CA5A1-6DA5-420F-AE38-B3C6380D2021}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{1B2A59BB-523A-4F72-A5AC-178B3B502F32}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{226C1519-7A0A-4366-97C8-557FE8CA817D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{24215BFB-80A1-4746-9651-FC6E4C29339B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{2C8CBABE-1CA7-43A7-B486-5CC9A96809D7}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{31C49E3D-F152-41C9-B609-343EFE012AF2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{36CB68D0-F99F-40F8-84C2-9447EDE2A31D}" = protocol=6 | dir=out | app=system |
"{473496E7-495E-4F55-B58C-68A52624820D}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{5701114F-D396-4EB4-8CE1-634D8A325089}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{5814DDA6-F177-454E-943B-407159056E5E}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{6C4FA907-CCE0-4C18-B144-BFE0F5403780}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{8AD40C78-6FCE-478A-929D-83C0AE154AB5}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{9CA41E18-E41C-4A3E-A373-5B73DB3DE00C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{A35E757E-66F4-4CF6-BC18-5142AAD4C517}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A830ACB6-9946-4B1F-B2DD-4923F91AE2EC}" = protocol=17 | dir=in | app=c:\program files\movies toolbar\safetynut\srtool~1\ie\dtuser.exe |
"{B596D152-52CB-4DC2-A8F1-05B8967892F8}" = protocol=6 | dir=in | app=c:\program files\movies toolbar\safetynut\srtool~1\ie\dtuser.exe |
"{BA2C2255-329C-4A75-B8A0-B34EBEF70B7F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{BFBF84F2-7B19-43D4-8E04-95784A3EB247}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{C6A3B81C-055C-4DCF-AE93-B0D2FC102E29}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{D5DC09F3-42D6-404F-913F-998E5E2D197A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{FE3DDE61-648B-4E11-896C-622B95D1E641}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01453A19-A4FA-47CF-9F96-E19737F206B9}" = O2Micro OZ776 SCR Driver
"{07D618CD-B016-438A-ADC9-A75BD23F85CE}" = Wave Support Software Installer
"{0B0A2153-58A6-4244-B458-25EDF5FCD809}" = Private Information Manager
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{0CCAF47C-E428-48C2-82B2-5F25CE1D67DA}" = Gemalto
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{2EECD5EF-5095-467C-B80C-4AB3096EFD60}" = SPBA 5.9
"{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper
"{3A6BE9F4-5FC8-44BB-BE7B-32A29607FEF6}" = Preboot Manager
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{4D24F198-A2CB-46B5-BB16-41B69C644B6C}" = Microsoft Security Client
"{4E60E212-3177-4B16-BCB3-616CCC52357D}" = Upek Touchchip Fingerprint Reader
"{560DCF39-61D1-43B0-86DA-5EFF8F7A5144}" = AuthenTec Fingerprint Software
"{5F5CBF39-BD29-43C8-B63A-B9758F0FD090}" = EMBASSY Client Core
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}" = Live! Cam Avatar Creator
"{6AC87FB3-ACFC-4416-890C-8976D5A9B371}" = Trusted Drive Manager
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7206B668-FEE0-455B-BB1F-9B5A2E0EC94A}" = Custom
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2010
"{90140000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2010
"{992D1CE7-A20F-4AB0-9D9D-AFC3418844DA}" = Dell Feature Enhancement Pack
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DAED4FC-2B0E-4F3F-8141-F2ABF02CCFCB}" = BioAPI Framework
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Dell Touchpad
"{ABBA2EA4-740E-4052-902B-9CA70B081E3F}" = Dell Data Protection | Access
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.05) - Czech
"{BD3068DE-D53B-4CE8-B2BC-32E1323441CD}" = PC-CCID
"{CF3EB3B6-B897-44EA-A635-F53B0469CDFC}" = Wave Infrastructure Installer
"{D9933B87-F472-486A-BC56-9D04FD6838EF}" = Xmarks for IE
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E9A97832-83B6-42B6-BAC6-492E344C2561}" = NTRU TCG Software Stack
"{ECE5B218-A086-4E18-A362-D11181681457}" = Software Intel® PROSet/Wireless WiFi
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Graphics Media Accelerator Driver
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = SetPoint
"{F839C6BD-E92E-48FA-9CE6-7BFAF94F7096}" = DellAccess
"9512AA21B791B05A54E27065C45BBC417AB282DF" = Balíček ovladače systému Windows - Dell Inc. PBADRV System (09/11/2009 1.0.1.6)
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Advanced Audio FX Engine" = Advanced Audio FX Engine
"B04E2F50E30B1E11964CD418CDF70A03C76B3051" = Balíček ovladače systému Windows - AuthenTec Inc. (ATSwpWDF) Biometric (12/23/2011 8.4.4.25)
"Dell Webcam Central" = Dell Webcam Central
"Google Chrome" = Google Chrome
"InstallShield_{01453A19-A4FA-47CF-9F96-E19737F206B9}" = O2Micro OZ776 SCR Driver
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft Security Client" = Microsoft Security Essentials
"Office14.PROPLUS" = Microsoft Office Professional Plus 2010
"PC-Doctor for Windows" = My Dell
"ProInst" = Intel PROSet Wireless
"somotomoviestoolbar1FF" = Movies Toolbar for Firefox (Dist. by Somoto Ltd.)
"somotomoviestoolbar1IE" = Movies Toolbar for Internet Explorer (Dist. by Somoto Ltd.)
"Totalcmd" = Total Commander (Remove or Repair)

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-2797010545-2807629137-2903096607-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"9204f5692a8faf3b" = Dell System Detect

========== Last 20 Event Log Errors ==========

[ System Events ]
Error - 14.10.2013 10:03:10 | Computer Name = DELL_E5410 | Source = Service Control Manager | ID = 7001
Description = Služba NTRU TSS v1.2.1.37 TCS závisí na službě Služba TPM Base Services,
která neuspěla při spuštění v důsledku následující chyby: %%0

Error - 14.10.2013 10:03:16 | Computer Name = DELL_E5410 | Source = Service Control Manager | ID = 7000
Description = Služba risdpcie neuspěla při spuštění v důsledku následující chyby:
%%1058

Error - 14.10.2013 10:03:16 | Computer Name = DELL_E5410 | Source = Service Control Manager | ID = 7000
Description = Služba SafetyNut Manager neuspěla při spuštění v důsledku následující
chyby: %%2


< End of report >

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#12 Příspěvek od zbynadovirycz »

Ještě jsem to kontroloval, snad jsem to zkopíroval vše správně

díky

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kotrolu logu - DiVapton a další

#13 Příspěvek od vyosek »

:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    SRV - File not found [Auto | Stopped] -- C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe -- (SafetyNutManager)
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\..\SearchScopes,DefaultScope = {FA964D1E-4D24-4941-96B1-CD505B7730EA}
    IE - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
    IE - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\..\SearchScopes\{FA964D1E-4D24-4941-96B1-CD505B7730EA}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
    O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
    O13 - gopher Prefix: missing
    O15 - HKU\S-1-5-21-2797010545-2807629137-2903096607-1000\..Trusted Domains: dell.com ([]* in Důvěryhodné weby)
    O20 - AppInit_DLLs: (c:\progra~1\movies~1\safety~1\safety~2.dll) - File not found
    O27 - HKLM IFEO\bitguard.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\bprotect.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\browsemngr.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\browserdefender.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\browsermngr.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\browserprotect.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\bundlesweetimsetup.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\cltmngsvc.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\delta babylon.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\delta tb.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\delta2.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\deltainstaller.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\deltasetup.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\deltatb.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\deltatb_2501-c733154b.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\iminentsetup.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\rjatydimofu.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\sweetimsetup.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O27 - HKLM IFEO\tbdelta.exetoolbar783881609.exe: Debugger - C:\Windows\System32\tasklist.exe (Microsoft Corporation)
    O33 - MountPoints2\{66c37e7a-3011-11e3-9672-806e6f6e6963}\Shell - "" = AutoRun
    O36 - AppCertDlls: x64 - (c:\program files\movies toolbar\safetynut\x64\safetycrt.dll) - File not found
    O36 - AppCertDlls: x86 - (c:\program files\movies toolbar\safetynut\safetycrt.dll) - File not found
    [5 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\Download\15a8f43051c4ccec2a9fcfb41cf12b5a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\15a8f43051c4ccec2a9fcfb41cf12b5a\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\Download\9ccfac1a08c681fade44ed59a9e0fd93\*.tmp files -> C:\Windows\SoftwareDistribution\Download\9ccfac1a08c681fade44ed59a9e0fd93\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\Download\f9d6e9c681f329d7ba3cb87120d919ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f9d6e9c681f329d7ba3cb87120d919ad\*.tmp -> ]
    [19 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
    [2013.10.14 17:33:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
    [2013.10.14 16:03:20 | 000,000,934 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    [2013.10.14 17:46:01 | 000,000,938 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "BCSSync"=-
    "Adobe ARM"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "SDP"=-
    "AppsHat"=-
    "DellSystemDetect"=-
    "BrowserChoice"=-
    
    :files
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
    [EMPTYJAVA]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zbynadovirycz
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 80
Registrován: 08 úno 2009 12:46

Re: Prosím o kotrolu logu - DiVapton a další

#14 Příspěvek od zbynadovirycz »

All processes killed
========== OTL ==========
Service SafetyNutManager stopped successfully!
Service SafetyNutManager deleted successfully!
File C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_USERS\S-1-5-21-2797010545-2807629137-2903096607-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-2797010545-2807629137-2903096607-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-2797010545-2807629137-2903096607-1000\Software\Microsoft\Internet Explorer\SearchScopes\{FA964D1E-4D24-4941-96B1-CD505B7730EA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA964D1E-4D24-4941-96B1-CD505B7730EA}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorAdmin deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorUser deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableCAD deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-2797010545-2807629137-2903096607-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\dell.com\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:c:\progra~1\movies~1\safety~1\safety~2.dll deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe\ deleted successfully.
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{66c37e7a-3011-11e3-9672-806e6f6e6963}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66c37e7a-3011-11e3-9672-806e6f6e6963}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls\\x64 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls\\x86 deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1C5.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP311F.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E64.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP61DF.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8545.tmp folder deleted successfully.
C:\Windows\SoftwareDistribution\Download\15a8f43051c4ccec2a9fcfb41cf12b5a\BITF7BF.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\9ccfac1a08c681fade44ed59a9e0fd93\BITF88B.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f9d6e9c681f329d7ba3cb87120d919ad\BITB872.tmp deleted successfully.
C:\Windows\Temp\DMI512B.tmp deleted successfully.
C:\Windows\Temp\DMI514A.tmp deleted successfully.
C:\Windows\Temp\DMIA311.tmp deleted successfully.
C:\Windows\Temp\DMIDE4D.tmp deleted successfully.
C:\Windows\Temp\gui703F.tmp deleted successfully.
C:\Windows\Temp\IE318B.tmp\Windows6.1-KB2533623-x86.cab deleted successfully.
C:\Windows\Temp\IE318B.tmp folder deleted successfully.
C:\Windows\Temp\IE3D5E.tmp\Windows6.1-KB2729094-v2-x86.cab deleted successfully.
C:\Windows\Temp\IE3D5E.tmp folder deleted successfully.
C:\Windows\Temp\TS_13B.tmp deleted successfully.
C:\Windows\Temp\TS_1AB6.tmp deleted successfully.
C:\Windows\Temp\TS_1C7C.tmp deleted successfully.
C:\Windows\Temp\TS_2784.tmp deleted successfully.
C:\Windows\Temp\TS_2AD0.tmp deleted successfully.
C:\Windows\Temp\TS_792.tmp deleted successfully.
C:\Windows\Temp\TS_A095.tmp deleted successfully.
C:\Windows\Temp\TS_A80.tmp deleted successfully.
C:\Windows\Temp\TS_BE8E.tmp deleted successfully.
C:\Windows\Temp\TS_D48D.tmp deleted successfully.
C:\Windows\Temp\TS_F891.tmp deleted successfully.
C:\Windows\Temp\TS_FE2E.tmp deleted successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\BCSSync deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\SDP not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\AppsHat not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DellSystemDetect deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\BrowserChoice not found.
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: Admin
->Temp folder emptied: 46651903 bytes
->Temporary Internet Files folder emptied: 161714803 bytes
->Google Chrome cache emptied: 7706887 bytes
->Flash cache emptied: 1679 bytes

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 484113989 bytes
RecycleBin emptied: 1481870 bytes

Total Files Cleaned = 669,00 mb


[EMPTYFLASH]

User: Admin
->Flash cache emptied: 0 bytes

User: All Users

User: Default

User: Default User

User: Public

Total Flash Files Cleaned = 0,00 mb


[EMPTYJAVA]

User: Admin

User: All Users

User: Default

User: Default User

User: Public

Total Java Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 10142013_193547

Files\Folders moved on Reboot...
File move failed. C:\Windows\System32\tasklist.exe scheduled to be moved on reboot.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\U1AIMKFN\afr[1].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\U1AIMKFN\viewtopic[5].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PKINNT8H\afr[1].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PKINNT8H\viewforum[1].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PKINNT8H\viewtopic[2].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PKINNT8H\zrt_lookup[1].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3ANYQE7\afr[1].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I3ANYQE7\memberlist[4].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\07GJ2JG9\afr[2].htm moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\7A7E08C8-3FF5-45F2-873D-A84D669DC82F.dat moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully.
C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kotrolu logu - DiVapton a další

#15 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno