
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
problém s padáním a zamrzáním notebooku
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
problém s padáním a zamrzáním notebooku
prosím o pomoc - os Windows 7 často padá a zamrzá..nevím jestli je to vir nebo něco jiného, přikládám log
Logfile of random's system information tool 1.09 (written by random/random)
Run by Rostislav at 2013-12-16 13:47:18
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 547 GB (82%) free of 670 GB
Total RAM: 6088 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:47:25, on 16.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker\update_checker.exe
C:\Users\Rostislav\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe
C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\Program Files\trend micro\Rostislav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (file missing)
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (file missing)
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [SDP] C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker\update_checker.exe /auto
O4 - HKCU\..\Run: [FLV Player] C:\Users\Rostislav\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Image Retriever.lnk = C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Session Launcher Service (PelService) - Unknown owner - C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15583 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
atieclxx
taskeng.exe {4C4AC948-287F-4E5A-8D5C-EB3DBCA51C5D}
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
C:\Windows\System32\WerFault.exe -k -q
taskeng.exe {8F58FF82-F892-492F-A4F6-AC6DC9F2A05C}
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.exe" 60
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker\update_checker.exe" /auto
"C:\Users\Rostislav\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe" /x
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
szndesktop.exe default start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\mcafee.com\agent\mcagent.exe" /runkey
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
\??\C:\windows\system32\conhost.exe "-722325935-1347500821834398657287465683-1935044543-1533419085-1247775823-775838007
"C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Lenovo\Lenovo Mouse Suite\FSRremoS.EXE"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\Pelmiced.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelElvDm.exe"
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4864 CREDAT:275457 /prefetch:2
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3292
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\windows\system32\svchost.exe -k SDRSVC
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10004_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10004 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4864 CREDAT:2503899 /prefetch:2
"c:\PROGRA~2\mcafee\SITEAD~1\saui.exe" -Embedding
"C:\windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Rostislav\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GKTLEW2Y\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
"c:\PROGRA~1\mcafee\mpf\mpfalert.exe" -Embedding
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 104448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-16 346168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 89480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-07 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-07 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-07 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-17 2531624]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2011-05-09 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-05-09 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-05-09 5908928]
"Daemon for Mouse Suite"=C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.EXE [2010-07-30 99840]
"Mouse Suite 98 Daemon"=ICO.EXE []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"cz.seznam.software.autoupdate"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"SDP"=C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker\update_checker.exe [2013-01-31 201808]
"FLV Player"=C:\Users\Rostislav\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [2012-10-26 202752]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-12 283160]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-02 336384]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2013-03-13 1532992]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-05-09 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SSBkgdUpdate"=C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [2009-02-19 24576]
"IndexSearch"=C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [2009-02-19 40960]
"PPort11reminder"=C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [2008-11-03 54560]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
Image Retriever.lnk - C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-08 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-16 13:47:18 ----D---- C:\Program Files\trend micro
2013-12-16 13:32:51 ----D---- C:\Program Files (x86)\trend micro
2013-12-16 13:32:50 ----D---- C:\rsit
2013-12-15 15:24:53 ----A---- C:\windows\system32\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-12-15 15:24:51 ----A---- C:\windows\system32\wmp.dll
2013-12-15 15:24:09 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-12-15 15:17:52 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-12-15 15:17:52 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\url.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\occache.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\wininet.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\urlmon.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsproxy.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jscript9diag.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jscript9.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\ieui.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iertutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\elshyph.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\wextract.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\webcheck.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\vbscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\url.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\pngfilt.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\occache.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmled.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\MshtmlDac.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtml.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshta.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\msfeeds.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\licmgr10.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\jscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\inseng.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\imgutil.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iexpress.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieUnatt.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iesetup.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iernonce.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iepeers.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieframe.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieetwproxystub.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieetwcollectorres.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieetwcollector.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iedkcs32.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dat
2013-12-15 15:17:48 ----A---- C:\windows\system32\ie4uinit.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\icardie.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtrans.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtmsft.dll
2013-12-14 10:04:33 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-12-14 10:04:33 ----A---- C:\windows\system32\win32k.sys
2013-12-14 10:04:33 ----A---- C:\windows\system32\msieftp.dll
2013-12-14 10:04:32 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-12-14 10:04:32 ----A---- C:\windows\system32\WMPhoto.dll
2013-12-14 10:04:31 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2013-12-14 10:04:31 ----A---- C:\windows\system32\imagehlp.dll
2013-12-14 10:04:24 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-12-14 10:04:24 ----A---- C:\windows\system32\tzres.dll
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\portcls.sys
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\drmk.sys
2013-12-14 10:03:56 ----A---- C:\windows\system32\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\scrrun.dll
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\scrrun.dll
2013-12-13 19:30:08 ----A---- C:\windows\ntbtlog.txt
2013-12-13 18:22:40 ----D---- C:\windows\pss
2013-12-05 15:51:31 ----D---- C:\MAGIX
2013-12-05 15:51:04 ----A---- C:\windows\SYSWOW64\mgxoschk.dll
2013-12-05 15:51:04 ----A---- C:\windows\mgxoschk.ini
2013-12-05 15:04:33 ----A---- C:\windows\system32\ntoskrnl.exe
2013-12-05 15:04:33 ----A---- C:\windows\system32\advapi32.dll
2013-12-05 15:04:32 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-12-05 15:04:32 ----A---- C:\windows\system32\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-12-05 15:04:31 ----A---- C:\windows\system32\ntdll.dll
2013-12-05 15:04:30 ----A---- C:\windows\system32\wow64.dll
2013-12-05 15:04:28 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\user.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-12-05 15:04:25 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-12-05 15:04:24 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-12-05 15:04:23 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-12-05 15:04:23 ----A---- C:\windows\system32\mswsock.dll
2013-12-05 15:04:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-12-05 15:04:21 ----A---- C:\windows\system32\gdi32.dll
2013-12-05 15:02:24 ----A---- C:\windows\system32\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\lsasrv.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\cng.sys
2013-12-05 15:02:22 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\sspisrv.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\secur32.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\lsass.exe
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\authui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui(5846).dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\authui.dll
2013-12-05 15:01:57 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32(5848).dll
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-12-05 15:01:42 ----A---- C:\windows\system32\drivers\afd.sys
2013-12-05 15:01:22 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32(5832).dll
2013-12-05 15:01:17 ----A---- C:\windows\system32\scavengeui.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-12-05 15:01:13 ----A---- C:\windows\system32\davclnt.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmfd.dll
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\usbscan.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-12-05 15:01:07 ----A---- C:\windows\system32\IKEEXT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\system32\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-12-05 15:00:34 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-12-05 15:00:24 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-05 15:00:24 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2013-12-16 13:47:22 ----D---- C:\windows\Temp
2013-12-16 13:47:18 ----RD---- C:\Program Files
2013-12-16 13:43:36 ----D---- C:\windows\System32
2013-12-16 13:43:36 ----D---- C:\windows\inf
2013-12-16 13:43:36 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-16 13:42:15 ----D---- C:\Users\Rostislav\AppData\Roaming\Seznam.cz
2013-12-16 13:38:55 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-16 13:37:48 ----D---- C:\windows\system32\catroot2
2013-12-16 13:37:22 ----D---- C:\windows\Prefetch
2013-12-16 13:37:21 ----D---- C:\ProgramData\VeriFace
2013-12-16 13:36:54 ----D---- C:\windows\system32\config
2013-12-16 13:36:03 ----D---- C:\windows\Minidump
2013-12-16 13:35:57 ----D---- C:\Windows
2013-12-16 13:32:51 ----RD---- C:\Program Files (x86)
2013-12-15 20:39:44 ----SHD---- C:\System Volume Information
2013-12-15 20:34:36 ----SD---- C:\Users\Rostislav\AppData\Roaming\Microsoft
2013-12-15 20:30:01 ----D---- C:\windows\winsxs
2013-12-15 20:27:03 ----D---- C:\windows\SysWOW64
2013-12-15 20:27:03 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:27:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:27:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-12-15 20:27:01 ----D---- C:\Program Files\Internet Explorer
2013-12-15 20:27:01 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-15 20:27:00 ----D---- C:\windows\system32\cs-CZ
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\migration
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\en-US
2013-12-15 20:26:50 ----D---- C:\windows\PolicyDefinitions
2013-12-15 20:26:49 ----D---- C:\windows\system32\migration
2013-12-15 20:26:48 ----D---- C:\windows\system32\en-US
2013-12-15 20:26:28 ----D---- C:\windows\system32\DriverStore
2013-12-15 20:26:27 ----D---- C:\windows\system32\drivers
2013-12-15 15:25:16 ----D---- C:\windows\system32\catroot
2013-12-15 15:24:09 ----D---- C:\windows\Logs
2013-12-15 15:14:59 ----SHD---- C:\windows\Installer
2013-12-15 15:14:57 ----D---- C:\ProgramData\Microsoft Help
2013-12-15 15:10:01 ----D---- C:\windows\system32\MRT
2013-12-15 15:09:56 ----A---- C:\windows\system32\MRT.exe
2013-12-15 14:54:48 ----D---- C:\windows\system32\LogFiles
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\sppui
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\Setup
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\ras
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\oobe
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\InstallShield
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\icsxml
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\drivers
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\Dism
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\com
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-12-13 22:08:58 ----D---- C:\windows\system32\sysprep
2013-12-13 22:08:58 ----D---- C:\windows\system32\sppui
2013-12-13 22:08:58 ----D---- C:\windows\system32\Setup
2013-12-13 22:08:58 ----D---- C:\windows\system32\ras
2013-12-13 22:08:58 ----D---- C:\windows\system32\oobe
2013-12-13 22:08:58 ----D---- C:\windows\system32\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\system32\icsxml
2013-12-13 22:08:57 ----D---- C:\windows\system32\ias
2013-12-13 22:08:57 ----D---- C:\windows\system32\drivers\UMDF
2013-12-13 22:08:57 ----D---- C:\windows\system32\Dism
2013-12-13 22:08:57 ----D---- C:\windows\system32\com
2013-12-13 22:08:57 ----D---- C:\windows\system32\AdvancedInstallers
2013-12-13 22:08:57 ----D---- C:\windows\rescache
2013-12-13 22:08:57 ----D---- C:\windows\Offline Web Pages
2013-12-13 22:08:57 ----D---- C:\windows\L2Schemas
2013-12-13 22:08:57 ----D---- C:\windows\Downloaded Program Files
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Portable Devices
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Mail
2013-12-13 22:08:57 ----D---- C:\Program Files\Common Files\System
2013-12-13 22:08:56 ----D---- C:\Program Files\Common Files\Services
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Mail
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-TW
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-HK
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-CN
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\uk-UA
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\tr-TR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\th-TH
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sv-SE
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sr-Latn-CS
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sl-SI
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sk-SK
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ru-RU
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ro-RO
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-PT
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-BR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pl-PL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nl-NL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nb-NO
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lv-LV
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lt-LT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ko-KR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ja-JP
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\it-IT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hu-HU
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hr-HR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\he-IL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fr-FR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fi-FI
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\et-EE
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\es-ES
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\el-GR
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\drivers\cs-CZ
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\de-DE
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\da-DK
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\cs
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\bg-BG
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\ar-SA
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-TW
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-HK
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-CN
2013-12-13 22:08:41 ----D---- C:\windows\system32\WinBioPlugIns
2013-12-13 22:08:40 ----D---- C:\windows\system32\uk-UA
2013-12-13 22:08:40 ----D---- C:\windows\system32\tr-TR
2013-12-13 22:08:40 ----D---- C:\windows\system32\th-TH
2013-12-13 22:08:40 ----D---- C:\windows\system32\sv-SE
2013-12-13 22:08:40 ----D---- C:\windows\system32\sr-Latn-CS
2013-12-13 22:08:40 ----D---- C:\windows\system32\sl-SI
2013-12-13 22:08:40 ----D---- C:\windows\system32\sk-SK
2013-12-13 22:08:40 ----D---- C:\windows\system32\ru-RU
2013-12-13 22:08:40 ----D---- C:\windows\system32\ro-RO
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-PT
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-BR
2013-12-13 22:08:39 ----D---- C:\windows\system32\pl-PL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nl-NL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nb-NO
2013-12-13 22:08:39 ----D---- C:\windows\system32\lv-LV
2013-12-13 22:08:39 ----D---- C:\windows\system32\lt-LT
2013-12-13 22:08:39 ----D---- C:\windows\system32\ko-KR
2013-12-13 22:08:39 ----D---- C:\windows\system32\ja-JP
2013-12-13 22:08:39 ----D---- C:\windows\system32\it-IT
2013-12-13 22:08:38 ----D---- C:\windows\system32\hu-HU
2013-12-13 22:08:38 ----D---- C:\windows\system32\hr-HR
2013-12-13 22:08:38 ----D---- C:\windows\system32\he-IL
2013-12-13 22:08:38 ----D---- C:\windows\system32\fr-FR
2013-12-13 22:08:38 ----D---- C:\windows\system32\fi-FI
2013-12-13 22:08:38 ----D---- C:\windows\system32\et-EE
2013-12-13 22:08:38 ----D---- C:\windows\system32\es-ES
2013-12-13 22:08:38 ----D---- C:\windows\system32\el-GR
2013-12-13 22:08:38 ----D---- C:\windows\system32\drivers\en-US
2013-12-13 22:08:37 ----D---- C:\windows\system32\de-DE
2013-12-13 22:08:37 ----D---- C:\windows\system32\da-DK
2013-12-13 22:08:37 ----D---- C:\windows\system32\cs
2013-12-13 22:08:36 ----RSD---- C:\windows\Media
2013-12-13 22:08:36 ----D---- C:\windows\system32\Boot
2013-12-13 22:08:36 ----D---- C:\windows\system32\bg-BG
2013-12-13 22:08:36 ----D---- C:\windows\system32\ar-SA
2013-12-13 22:08:30 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\XPSViewer
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\winrm
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\wdi
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\WCN
2013-12-13 22:06:34 ----D---- C:\windows\SYSWOW64\Wat
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\Speech
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\slmgr
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\MUI
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Msdtc
2013-12-13 22:06:31 ----D---- C:\windows\SYSWOW64\Macromed
2013-12-13 22:06:29 ----D---- C:\windows\SYSWOW64\IME
2013-12-13 22:06:28 ----D---- C:\windows\SYSWOW64\DriverStore
2013-12-13 22:06:26 ----D---- C:\windows\system32\winrm
2013-12-13 22:06:26 ----D---- C:\windows\system32\WCN
2013-12-13 22:06:25 ----D---- C:\windows\system32\Wat
2013-12-13 22:06:23 ----D---- C:\windows\system32\spp
2013-12-13 22:06:23 ----D---- C:\windows\system32\spool
2013-12-13 22:06:23 ----D---- C:\windows\system32\Speech
2013-12-13 22:06:23 ----D---- C:\windows\system32\SMI
2013-12-13 22:06:23 ----D---- C:\windows\system32\slmgr
2013-12-13 22:06:22 ----D---- C:\windows\system32\Printing_Admin_Scripts
2013-12-13 22:06:21 ----D---- C:\windows\system32\NDF
2013-12-13 22:06:21 ----D---- C:\windows\system32\MUI
2013-12-13 22:06:21 ----D---- C:\windows\system32\Msdtc
2013-12-13 22:06:19 ----D---- C:\windows\system32\Macromed
2013-12-13 22:06:18 ----D---- C:\windows\system32\IME
2013-12-13 22:05:59 ----D---- C:\windows\Microsoft.NET
2013-12-13 22:05:47 ----D---- C:\windows\diagnostics
2013-12-13 22:05:14 ----D---- C:\ProgramData\McAfee
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows NT
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows Live
2013-12-13 22:05:13 ----D---- C:\Program Files\TAXEDIT
2013-12-13 22:05:09 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-13 22:05:07 ----D---- C:\Program Files\Microsoft Games
2013-12-13 22:05:05 ----D---- C:\Program Files\DIFX
2013-12-13 22:05:04 ----D---- C:\Program Files\CONEXANT
2013-12-13 22:05:04 ----D---- C:\Program Files\Common Files
2013-12-13 22:05:03 ----D---- C:\Program Files\Common Files\mcafee
2013-12-13 22:05:02 ----D---- C:\Program Files (x86)\WMV.WMA.MP3 Converter
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows NT
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows Live
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-13 22:04:51 ----D---- C:\Program Files (x86)\mcafee.com
2013-12-13 22:04:43 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:04:41 ----D---- C:\Program Files (x86)\BisonCam
2013-12-13 22:04:40 ----D---- C:\Program Files (x86)\Atheros
2013-12-13 22:04:39 ----HD---- C:\GrandeDevice
2013-12-13 22:04:39 ----D---- C:\c4227c293bb5562e6ff7ab3449
2013-12-13 22:04:39 ----D---- C:\b4e0315ff5af3678c17585dec4
2013-12-13 22:04:38 ----SHD---- C:\$Recycle.Bin
2013-12-13 22:04:38 ----D---- C:\a65ad3adc2cdde75e8b976d3027642
2013-12-13 21:48:26 ----RSD---- C:\windows\assembly
2013-12-13 18:35:05 ----D---- C:\windows\system32\wbem
2013-12-13 18:33:46 ----RD---- C:\Users
2013-12-13 18:33:42 ----D---- C:\windows\Tasks
2013-12-13 18:33:42 ----D---- C:\windows\SYSWOW64\wbem
2013-12-13 18:33:42 ----D---- C:\windows\system32\wfp
2013-12-13 18:33:42 ----D---- C:\windows\system32\migwiz
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\etc
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\servicing
2013-12-13 18:33:42 ----D---- C:\windows\IME
2013-12-13 18:33:42 ----D---- C:\windows\ehome
2013-12-13 18:33:42 ----D---- C:\windows\Cursors
2013-12-13 18:33:42 ----D---- C:\windows\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\AppPatch
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Sidebar
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Photo Viewer
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Journal
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Defender
2013-12-13 18:33:42 ----D---- C:\Program Files\DVD Maker
2013-12-13 18:33:21 ----D---- C:\windows\system32\Tasks
2013-12-13 18:33:20 ----D---- C:\windows\system32\restore
2013-12-13 18:33:20 ----D---- C:\windows\system32\CodeIntegrity
2013-12-13 18:33:19 ----RSD---- C:\windows\Fonts
2013-12-13 18:33:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-13 18:33:16 ----D---- C:\Program Files (x86)\WinRAR
2013-12-13 18:33:15 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-13 18:32:46 ----D---- C:\windows\registration
2013-12-12 15:43:24 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-19 03:33:38 ----N---- C:\windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2011-05-09 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2011-05-09 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2013-02-19 771536]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2013-02-19 340216]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2011-05-09 13408]
R1 pelmoubt;Mouse Suite Bluetooth Driver; C:\windows\system32\DRIVERS\pelmoubt.sys [2009-04-23 22016]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2011-05-09 29792]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-02 8284672]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-02 296448]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-12-15 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2013-02-19 70112]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-02-14 1581184]
R3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-10-21 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2013-02-19 179280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2013-02-19 309840]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2013-02-19 515968]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 pelbtm;Bluetooth Mouse Filter Driver; C:\windows\system32\DRIVERS\pelbtm.sys [2007-09-20 16384]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-12-17 1404464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 98816]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-01-08 12262688]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2013-02-19 106552]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\windows\system32\DRIVERS\ss_bus.sys [2009-09-21 127488]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\windows\system32\DRIVERS\ss_mdfl.sys [2009-09-21 18944]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\windows\system32\DRIVERS\ss_mdm.sys [2009-09-21 161280]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-02 203776]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2013-02-19 241456]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2013-02-19 218760]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2013-02-19 182752]
R2 PelService;Session Launcher Service; C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe [2010-04-22 177152]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2013-12-15 111616]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2010-08-09 220528]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2012-11-16 383608]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-07-19 1255736]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Rostislav at 2013-12-16 13:47:18
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 547 GB (82%) free of 670 GB
Total RAM: 6088 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:47:25, on 16.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker\update_checker.exe
C:\Users\Rostislav\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe
C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\Program Files\trend micro\Rostislav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (file missing)
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (file missing)
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [SDP] C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker\update_checker.exe /auto
O4 - HKCU\..\Run: [FLV Player] C:\Users\Rostislav\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Image Retriever.lnk = C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Session Launcher Service (PelService) - Unknown owner - C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15583 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
atieclxx
taskeng.exe {4C4AC948-287F-4E5A-8D5C-EB3DBCA51C5D}
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
C:\Windows\System32\WerFault.exe -k -q
taskeng.exe {8F58FF82-F892-492F-A4F6-AC6DC9F2A05C}
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.exe" 60
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker\update_checker.exe" /auto
"C:\Users\Rostislav\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe" /x
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
szndesktop.exe default start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\mcafee.com\agent\mcagent.exe" /runkey
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
\??\C:\windows\system32\conhost.exe "-722325935-1347500821834398657287465683-1935044543-1533419085-1247775823-775838007
"C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Lenovo\Lenovo Mouse Suite\FSRremoS.EXE"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\Pelmiced.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelElvDm.exe"
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4864 CREDAT:275457 /prefetch:2
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3292
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\windows\system32\svchost.exe -k SDRSVC
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10004_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10004 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4864 CREDAT:2503899 /prefetch:2
"c:\PROGRA~2\mcafee\SITEAD~1\saui.exe" -Embedding
"C:\windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Rostislav\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GKTLEW2Y\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
"c:\PROGRA~1\mcafee\mpf\mpfalert.exe" -Embedding
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 104448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-16 346168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 89480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-07 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-07 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-07 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-17 2531624]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2011-05-09 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-05-09 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-05-09 5908928]
"Daemon for Mouse Suite"=C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.EXE [2010-07-30 99840]
"Mouse Suite 98 Daemon"=ICO.EXE []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"cz.seznam.software.autoupdate"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"SDP"=C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker\update_checker.exe [2013-01-31 201808]
"FLV Player"=C:\Users\Rostislav\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [2012-10-26 202752]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-12 283160]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-02 336384]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2013-03-13 1532992]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-05-09 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SSBkgdUpdate"=C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [2009-02-19 24576]
"IndexSearch"=C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [2009-02-19 40960]
"PPort11reminder"=C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [2008-11-03 54560]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
Image Retriever.lnk - C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-08 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-16 13:47:18 ----D---- C:\Program Files\trend micro
2013-12-16 13:32:51 ----D---- C:\Program Files (x86)\trend micro
2013-12-16 13:32:50 ----D---- C:\rsit
2013-12-15 15:24:53 ----A---- C:\windows\system32\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-12-15 15:24:51 ----A---- C:\windows\system32\wmp.dll
2013-12-15 15:24:09 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-12-15 15:17:52 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-12-15 15:17:52 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\url.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\occache.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\wininet.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\urlmon.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsproxy.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jscript9diag.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jscript9.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\ieui.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iertutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\elshyph.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\wextract.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\webcheck.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\vbscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\url.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\pngfilt.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\occache.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmled.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\MshtmlDac.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtml.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshta.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\msfeeds.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\licmgr10.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\jscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\inseng.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\imgutil.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iexpress.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieUnatt.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iesetup.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iernonce.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iepeers.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieframe.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieetwproxystub.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieetwcollectorres.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieetwcollector.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iedkcs32.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dat
2013-12-15 15:17:48 ----A---- C:\windows\system32\ie4uinit.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\icardie.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtrans.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtmsft.dll
2013-12-14 10:04:33 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-12-14 10:04:33 ----A---- C:\windows\system32\win32k.sys
2013-12-14 10:04:33 ----A---- C:\windows\system32\msieftp.dll
2013-12-14 10:04:32 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-12-14 10:04:32 ----A---- C:\windows\system32\WMPhoto.dll
2013-12-14 10:04:31 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2013-12-14 10:04:31 ----A---- C:\windows\system32\imagehlp.dll
2013-12-14 10:04:24 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-12-14 10:04:24 ----A---- C:\windows\system32\tzres.dll
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\portcls.sys
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\drmk.sys
2013-12-14 10:03:56 ----A---- C:\windows\system32\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\scrrun.dll
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\scrrun.dll
2013-12-13 19:30:08 ----A---- C:\windows\ntbtlog.txt
2013-12-13 18:22:40 ----D---- C:\windows\pss
2013-12-05 15:51:31 ----D---- C:\MAGIX
2013-12-05 15:51:04 ----A---- C:\windows\SYSWOW64\mgxoschk.dll
2013-12-05 15:51:04 ----A---- C:\windows\mgxoschk.ini
2013-12-05 15:04:33 ----A---- C:\windows\system32\ntoskrnl.exe
2013-12-05 15:04:33 ----A---- C:\windows\system32\advapi32.dll
2013-12-05 15:04:32 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-12-05 15:04:32 ----A---- C:\windows\system32\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-12-05 15:04:31 ----A---- C:\windows\system32\ntdll.dll
2013-12-05 15:04:30 ----A---- C:\windows\system32\wow64.dll
2013-12-05 15:04:28 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\user.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-12-05 15:04:25 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-12-05 15:04:24 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-12-05 15:04:23 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-12-05 15:04:23 ----A---- C:\windows\system32\mswsock.dll
2013-12-05 15:04:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-12-05 15:04:21 ----A---- C:\windows\system32\gdi32.dll
2013-12-05 15:02:24 ----A---- C:\windows\system32\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\lsasrv.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\cng.sys
2013-12-05 15:02:22 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\sspisrv.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\secur32.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\lsass.exe
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\authui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui(5846).dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\authui.dll
2013-12-05 15:01:57 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32(5848).dll
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-12-05 15:01:42 ----A---- C:\windows\system32\drivers\afd.sys
2013-12-05 15:01:22 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32(5832).dll
2013-12-05 15:01:17 ----A---- C:\windows\system32\scavengeui.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-12-05 15:01:13 ----A---- C:\windows\system32\davclnt.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmfd.dll
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\usbscan.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-12-05 15:01:07 ----A---- C:\windows\system32\IKEEXT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\system32\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-12-05 15:00:34 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-12-05 15:00:24 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-05 15:00:24 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2013-12-16 13:47:22 ----D---- C:\windows\Temp
2013-12-16 13:47:18 ----RD---- C:\Program Files
2013-12-16 13:43:36 ----D---- C:\windows\System32
2013-12-16 13:43:36 ----D---- C:\windows\inf
2013-12-16 13:43:36 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-16 13:42:15 ----D---- C:\Users\Rostislav\AppData\Roaming\Seznam.cz
2013-12-16 13:38:55 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-16 13:37:48 ----D---- C:\windows\system32\catroot2
2013-12-16 13:37:22 ----D---- C:\windows\Prefetch
2013-12-16 13:37:21 ----D---- C:\ProgramData\VeriFace
2013-12-16 13:36:54 ----D---- C:\windows\system32\config
2013-12-16 13:36:03 ----D---- C:\windows\Minidump
2013-12-16 13:35:57 ----D---- C:\Windows
2013-12-16 13:32:51 ----RD---- C:\Program Files (x86)
2013-12-15 20:39:44 ----SHD---- C:\System Volume Information
2013-12-15 20:34:36 ----SD---- C:\Users\Rostislav\AppData\Roaming\Microsoft
2013-12-15 20:30:01 ----D---- C:\windows\winsxs
2013-12-15 20:27:03 ----D---- C:\windows\SysWOW64
2013-12-15 20:27:03 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:27:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:27:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-12-15 20:27:01 ----D---- C:\Program Files\Internet Explorer
2013-12-15 20:27:01 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-15 20:27:00 ----D---- C:\windows\system32\cs-CZ
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\migration
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\en-US
2013-12-15 20:26:50 ----D---- C:\windows\PolicyDefinitions
2013-12-15 20:26:49 ----D---- C:\windows\system32\migration
2013-12-15 20:26:48 ----D---- C:\windows\system32\en-US
2013-12-15 20:26:28 ----D---- C:\windows\system32\DriverStore
2013-12-15 20:26:27 ----D---- C:\windows\system32\drivers
2013-12-15 15:25:16 ----D---- C:\windows\system32\catroot
2013-12-15 15:24:09 ----D---- C:\windows\Logs
2013-12-15 15:14:59 ----SHD---- C:\windows\Installer
2013-12-15 15:14:57 ----D---- C:\ProgramData\Microsoft Help
2013-12-15 15:10:01 ----D---- C:\windows\system32\MRT
2013-12-15 15:09:56 ----A---- C:\windows\system32\MRT.exe
2013-12-15 14:54:48 ----D---- C:\windows\system32\LogFiles
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\sppui
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\Setup
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\ras
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\oobe
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\InstallShield
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\icsxml
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\drivers
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\Dism
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\com
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-12-13 22:08:58 ----D---- C:\windows\system32\sysprep
2013-12-13 22:08:58 ----D---- C:\windows\system32\sppui
2013-12-13 22:08:58 ----D---- C:\windows\system32\Setup
2013-12-13 22:08:58 ----D---- C:\windows\system32\ras
2013-12-13 22:08:58 ----D---- C:\windows\system32\oobe
2013-12-13 22:08:58 ----D---- C:\windows\system32\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\system32\icsxml
2013-12-13 22:08:57 ----D---- C:\windows\system32\ias
2013-12-13 22:08:57 ----D---- C:\windows\system32\drivers\UMDF
2013-12-13 22:08:57 ----D---- C:\windows\system32\Dism
2013-12-13 22:08:57 ----D---- C:\windows\system32\com
2013-12-13 22:08:57 ----D---- C:\windows\system32\AdvancedInstallers
2013-12-13 22:08:57 ----D---- C:\windows\rescache
2013-12-13 22:08:57 ----D---- C:\windows\Offline Web Pages
2013-12-13 22:08:57 ----D---- C:\windows\L2Schemas
2013-12-13 22:08:57 ----D---- C:\windows\Downloaded Program Files
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Portable Devices
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Mail
2013-12-13 22:08:57 ----D---- C:\Program Files\Common Files\System
2013-12-13 22:08:56 ----D---- C:\Program Files\Common Files\Services
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Mail
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-TW
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-HK
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-CN
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\uk-UA
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\tr-TR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\th-TH
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sv-SE
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sr-Latn-CS
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sl-SI
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sk-SK
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ru-RU
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ro-RO
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-PT
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-BR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pl-PL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nl-NL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nb-NO
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lv-LV
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lt-LT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ko-KR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ja-JP
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\it-IT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hu-HU
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hr-HR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\he-IL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fr-FR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fi-FI
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\et-EE
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\es-ES
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\el-GR
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\drivers\cs-CZ
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\de-DE
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\da-DK
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\cs
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\bg-BG
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\ar-SA
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-TW
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-HK
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-CN
2013-12-13 22:08:41 ----D---- C:\windows\system32\WinBioPlugIns
2013-12-13 22:08:40 ----D---- C:\windows\system32\uk-UA
2013-12-13 22:08:40 ----D---- C:\windows\system32\tr-TR
2013-12-13 22:08:40 ----D---- C:\windows\system32\th-TH
2013-12-13 22:08:40 ----D---- C:\windows\system32\sv-SE
2013-12-13 22:08:40 ----D---- C:\windows\system32\sr-Latn-CS
2013-12-13 22:08:40 ----D---- C:\windows\system32\sl-SI
2013-12-13 22:08:40 ----D---- C:\windows\system32\sk-SK
2013-12-13 22:08:40 ----D---- C:\windows\system32\ru-RU
2013-12-13 22:08:40 ----D---- C:\windows\system32\ro-RO
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-PT
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-BR
2013-12-13 22:08:39 ----D---- C:\windows\system32\pl-PL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nl-NL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nb-NO
2013-12-13 22:08:39 ----D---- C:\windows\system32\lv-LV
2013-12-13 22:08:39 ----D---- C:\windows\system32\lt-LT
2013-12-13 22:08:39 ----D---- C:\windows\system32\ko-KR
2013-12-13 22:08:39 ----D---- C:\windows\system32\ja-JP
2013-12-13 22:08:39 ----D---- C:\windows\system32\it-IT
2013-12-13 22:08:38 ----D---- C:\windows\system32\hu-HU
2013-12-13 22:08:38 ----D---- C:\windows\system32\hr-HR
2013-12-13 22:08:38 ----D---- C:\windows\system32\he-IL
2013-12-13 22:08:38 ----D---- C:\windows\system32\fr-FR
2013-12-13 22:08:38 ----D---- C:\windows\system32\fi-FI
2013-12-13 22:08:38 ----D---- C:\windows\system32\et-EE
2013-12-13 22:08:38 ----D---- C:\windows\system32\es-ES
2013-12-13 22:08:38 ----D---- C:\windows\system32\el-GR
2013-12-13 22:08:38 ----D---- C:\windows\system32\drivers\en-US
2013-12-13 22:08:37 ----D---- C:\windows\system32\de-DE
2013-12-13 22:08:37 ----D---- C:\windows\system32\da-DK
2013-12-13 22:08:37 ----D---- C:\windows\system32\cs
2013-12-13 22:08:36 ----RSD---- C:\windows\Media
2013-12-13 22:08:36 ----D---- C:\windows\system32\Boot
2013-12-13 22:08:36 ----D---- C:\windows\system32\bg-BG
2013-12-13 22:08:36 ----D---- C:\windows\system32\ar-SA
2013-12-13 22:08:30 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\XPSViewer
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\winrm
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\wdi
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\WCN
2013-12-13 22:06:34 ----D---- C:\windows\SYSWOW64\Wat
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\Speech
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\slmgr
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\MUI
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Msdtc
2013-12-13 22:06:31 ----D---- C:\windows\SYSWOW64\Macromed
2013-12-13 22:06:29 ----D---- C:\windows\SYSWOW64\IME
2013-12-13 22:06:28 ----D---- C:\windows\SYSWOW64\DriverStore
2013-12-13 22:06:26 ----D---- C:\windows\system32\winrm
2013-12-13 22:06:26 ----D---- C:\windows\system32\WCN
2013-12-13 22:06:25 ----D---- C:\windows\system32\Wat
2013-12-13 22:06:23 ----D---- C:\windows\system32\spp
2013-12-13 22:06:23 ----D---- C:\windows\system32\spool
2013-12-13 22:06:23 ----D---- C:\windows\system32\Speech
2013-12-13 22:06:23 ----D---- C:\windows\system32\SMI
2013-12-13 22:06:23 ----D---- C:\windows\system32\slmgr
2013-12-13 22:06:22 ----D---- C:\windows\system32\Printing_Admin_Scripts
2013-12-13 22:06:21 ----D---- C:\windows\system32\NDF
2013-12-13 22:06:21 ----D---- C:\windows\system32\MUI
2013-12-13 22:06:21 ----D---- C:\windows\system32\Msdtc
2013-12-13 22:06:19 ----D---- C:\windows\system32\Macromed
2013-12-13 22:06:18 ----D---- C:\windows\system32\IME
2013-12-13 22:05:59 ----D---- C:\windows\Microsoft.NET
2013-12-13 22:05:47 ----D---- C:\windows\diagnostics
2013-12-13 22:05:14 ----D---- C:\ProgramData\McAfee
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows NT
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows Live
2013-12-13 22:05:13 ----D---- C:\Program Files\TAXEDIT
2013-12-13 22:05:09 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-13 22:05:07 ----D---- C:\Program Files\Microsoft Games
2013-12-13 22:05:05 ----D---- C:\Program Files\DIFX
2013-12-13 22:05:04 ----D---- C:\Program Files\CONEXANT
2013-12-13 22:05:04 ----D---- C:\Program Files\Common Files
2013-12-13 22:05:03 ----D---- C:\Program Files\Common Files\mcafee
2013-12-13 22:05:02 ----D---- C:\Program Files (x86)\WMV.WMA.MP3 Converter
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows NT
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows Live
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-13 22:04:51 ----D---- C:\Program Files (x86)\mcafee.com
2013-12-13 22:04:43 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:04:41 ----D---- C:\Program Files (x86)\BisonCam
2013-12-13 22:04:40 ----D---- C:\Program Files (x86)\Atheros
2013-12-13 22:04:39 ----HD---- C:\GrandeDevice
2013-12-13 22:04:39 ----D---- C:\c4227c293bb5562e6ff7ab3449
2013-12-13 22:04:39 ----D---- C:\b4e0315ff5af3678c17585dec4
2013-12-13 22:04:38 ----SHD---- C:\$Recycle.Bin
2013-12-13 22:04:38 ----D---- C:\a65ad3adc2cdde75e8b976d3027642
2013-12-13 21:48:26 ----RSD---- C:\windows\assembly
2013-12-13 18:35:05 ----D---- C:\windows\system32\wbem
2013-12-13 18:33:46 ----RD---- C:\Users
2013-12-13 18:33:42 ----D---- C:\windows\Tasks
2013-12-13 18:33:42 ----D---- C:\windows\SYSWOW64\wbem
2013-12-13 18:33:42 ----D---- C:\windows\system32\wfp
2013-12-13 18:33:42 ----D---- C:\windows\system32\migwiz
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\etc
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\servicing
2013-12-13 18:33:42 ----D---- C:\windows\IME
2013-12-13 18:33:42 ----D---- C:\windows\ehome
2013-12-13 18:33:42 ----D---- C:\windows\Cursors
2013-12-13 18:33:42 ----D---- C:\windows\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\AppPatch
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Sidebar
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Photo Viewer
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Journal
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Defender
2013-12-13 18:33:42 ----D---- C:\Program Files\DVD Maker
2013-12-13 18:33:21 ----D---- C:\windows\system32\Tasks
2013-12-13 18:33:20 ----D---- C:\windows\system32\restore
2013-12-13 18:33:20 ----D---- C:\windows\system32\CodeIntegrity
2013-12-13 18:33:19 ----RSD---- C:\windows\Fonts
2013-12-13 18:33:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-13 18:33:16 ----D---- C:\Program Files (x86)\WinRAR
2013-12-13 18:33:15 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-13 18:32:46 ----D---- C:\windows\registration
2013-12-12 15:43:24 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-19 03:33:38 ----N---- C:\windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2011-05-09 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2011-05-09 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2013-02-19 771536]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2013-02-19 340216]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2011-05-09 13408]
R1 pelmoubt;Mouse Suite Bluetooth Driver; C:\windows\system32\DRIVERS\pelmoubt.sys [2009-04-23 22016]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2011-05-09 29792]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-02 8284672]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-02 296448]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-12-15 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2013-02-19 70112]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-02-14 1581184]
R3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-10-21 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2013-02-19 179280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2013-02-19 309840]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2013-02-19 515968]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 pelbtm;Bluetooth Mouse Filter Driver; C:\windows\system32\DRIVERS\pelbtm.sys [2007-09-20 16384]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-12-17 1404464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 98816]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-01-08 12262688]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2013-02-19 106552]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\windows\system32\DRIVERS\ss_bus.sys [2009-09-21 127488]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\windows\system32\DRIVERS\ss_mdfl.sys [2009-09-21 18944]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\windows\system32\DRIVERS\ss_mdm.sys [2009-09-21 161280]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-02 203776]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2013-02-19 241456]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2013-02-19 218760]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2013-02-19 182752]
R2 PelService;Session Launcher Service; C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe [2010-04-22 177152]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2013-12-15 111616]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2010-08-09 220528]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2012-11-16 383608]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-07-19 1255736]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119532
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s padáním a zamrzáním notebooku
Zdravím!
Spusťte nejprve tuto utilitu:
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s padáním a zamrzáním notebooku
tak tady je ten další log
# AdwCleaner v3.015 - Report created 16/12/2013 at 18:26:52
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Rostislav - ROSTISLAV-PC
# Running from : C:\Users\Rostislav\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker
Folder Deleted : C:\Users\Rostislav\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [SDP]
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\Somoto
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Google Chrome v17.0.963.56
[ File : C:\Users\Rostislav\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1734 octets] - [16/12/2013 18:21:20]
AdwCleaner[S0].txt - [1613 octets] - [16/12/2013 18:26:52]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1673 octets] ##########
# AdwCleaner v3.015 - Report created 16/12/2013 at 18:26:52
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Rostislav - ROSTISLAV-PC
# Running from : C:\Users\Rostislav\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\Users\Rostislav\AppData\Local\FilesFrog Update Checker
Folder Deleted : C:\Users\Rostislav\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [SDP]
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\Somoto
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Google Chrome v17.0.963.56
[ File : C:\Users\Rostislav\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1734 octets] - [16/12/2013 18:21:20]
AdwCleaner[S0].txt - [1613 octets] - [16/12/2013 18:26:52]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1673 octets] ##########
- Rudy
- Site Admin
- Příspěvky: 119532
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s padáním a zamrzáním notebooku
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s padáním a zamrzáním notebooku
..nový los rsit
Logfile of random's system information tool 1.09 (written by random/random)
Run by Rostislav at 2013-12-16 20:30:18
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 533 GB (79%) free of 670 GB
Total RAM: 6088 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:30:31, on 16.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files\trend micro\Rostislav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (file missing)
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (file missing)
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Image Retriever.lnk = C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Session Launcher Service (PelService) - Unknown owner - C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15140 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
atieclxx
C:\windows\System32\spoolsv.exe
taskeng.exe {72B613CE-BC42-4FB2-99AF-CE0F8A6FE02A}
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
C:\windows\servicing\TrustedInstaller.exe
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskeng.exe {62AD812D-24B5-48BB-90F2-B1E8159C34A5}
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.exe" 60
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe" /x
szndesktop.exe default start
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "8411985061763705380-1063195945377451621-2113501286-1683518044-199609301919160086
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files\mcafee.com\agent\mcagent.exe" /runkey
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\windows\system32\SearchFilterHost.exe" 0 536 540 548 65536 544
"C:\Program Files\Lenovo\Lenovo Mouse Suite\FSRremoS.EXE"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\Pelmiced.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelElvDm.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\Users\Rostislav\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\sppsvc.exe
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 4984
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 104448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-16 346168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 89480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-07 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-07 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-07 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-17 2531624]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2011-05-09 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-05-09 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-05-09 5908928]
"Daemon for Mouse Suite"=C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.EXE [2010-07-30 99840]
"Mouse Suite 98 Daemon"=ICO.EXE []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"cz.seznam.software.autoupdate"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-12 283160]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-02 336384]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2013-03-13 1532992]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-05-09 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SSBkgdUpdate"=C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [2009-02-19 24576]
"IndexSearch"=C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [2009-02-19 40960]
"PPort11reminder"=C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [2008-11-03 54560]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
Image Retriever.lnk - C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-08 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-16 18:21:12 ----D---- C:\AdwCleaner
2013-12-16 17:14:11 ----A---- C:\windows\system32\ieetwcollectorres.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieUnatt.exe
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iesetup.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iernonce.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ie4uinit.exe
2013-12-16 17:14:09 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\mshtml.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwproxystub.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwcollector.exe
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\system32\iertutil.dll
2013-12-16 17:14:07 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-12-16 17:14:07 ----A---- C:\windows\system32\wininet.dll
2013-12-16 17:14:06 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-12-16 17:14:06 ----A---- C:\windows\system32\urlmon.dll
2013-12-16 17:14:05 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-12-16 17:14:05 ----A---- C:\windows\system32\ieframe.dll
2013-12-16 17:14:04 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-12-16 17:14:03 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-12-16 17:14:03 ----A---- C:\windows\system32\jscript9.dll
2013-12-16 13:47:18 ----D---- C:\Program Files\trend micro
2013-12-16 13:32:51 ----D---- C:\Program Files (x86)\trend micro
2013-12-16 13:32:50 ----D---- C:\rsit
2013-12-15 15:24:53 ----A---- C:\windows\system32\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-12-15 15:24:51 ----A---- C:\windows\system32\wmp.dll
2013-12-15 15:24:09 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-12-15 15:17:52 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-12-15 15:17:52 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\url.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\occache.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\elshyph.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\wextract.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\webcheck.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\vbscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\url.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\pngfilt.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\occache.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmled.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\MshtmlDac.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshta.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\msfeeds.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\licmgr10.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\jscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\inseng.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\imgutil.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iexpress.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iepeers.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iedkcs32.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dat
2013-12-15 15:17:48 ----A---- C:\windows\system32\icardie.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtrans.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtmsft.dll
2013-12-14 10:04:33 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-12-14 10:04:33 ----A---- C:\windows\system32\win32k.sys
2013-12-14 10:04:33 ----A---- C:\windows\system32\msieftp.dll
2013-12-14 10:04:32 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-12-14 10:04:32 ----A---- C:\windows\system32\WMPhoto.dll
2013-12-14 10:04:31 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2013-12-14 10:04:31 ----A---- C:\windows\system32\imagehlp.dll
2013-12-14 10:04:24 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-12-14 10:04:24 ----A---- C:\windows\system32\tzres.dll
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\portcls.sys
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\drmk.sys
2013-12-14 10:03:56 ----A---- C:\windows\system32\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\scrrun.dll
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\scrrun.dll
2013-12-13 19:30:08 ----A---- C:\windows\ntbtlog.txt
2013-12-13 18:22:40 ----D---- C:\windows\pss
2013-12-05 15:51:31 ----D---- C:\MAGIX
2013-12-05 15:51:04 ----A---- C:\windows\SYSWOW64\mgxoschk.dll
2013-12-05 15:51:04 ----A---- C:\windows\mgxoschk.ini
2013-12-05 15:04:33 ----A---- C:\windows\system32\ntoskrnl.exe
2013-12-05 15:04:33 ----A---- C:\windows\system32\advapi32.dll
2013-12-05 15:04:32 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-12-05 15:04:32 ----A---- C:\windows\system32\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-12-05 15:04:31 ----A---- C:\windows\system32\ntdll.dll
2013-12-05 15:04:30 ----A---- C:\windows\system32\wow64.dll
2013-12-05 15:04:28 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\user.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-12-05 15:04:25 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-12-05 15:04:24 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-12-05 15:04:23 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-12-05 15:04:23 ----A---- C:\windows\system32\mswsock.dll
2013-12-05 15:04:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-12-05 15:04:21 ----A---- C:\windows\system32\gdi32.dll
2013-12-05 15:02:24 ----A---- C:\windows\system32\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\lsasrv.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\cng.sys
2013-12-05 15:02:22 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\sspisrv.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\secur32.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\lsass.exe
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\authui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui(5846).dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\authui.dll
2013-12-05 15:01:57 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32(5848).dll
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-12-05 15:01:42 ----A---- C:\windows\system32\drivers\afd.sys
2013-12-05 15:01:22 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32(5832).dll
2013-12-05 15:01:17 ----A---- C:\windows\system32\scavengeui.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-12-05 15:01:13 ----A---- C:\windows\system32\davclnt.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmfd.dll
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\usbscan.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-12-05 15:01:07 ----A---- C:\windows\system32\IKEEXT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\system32\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-12-05 15:00:34 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-12-05 15:00:24 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-05 15:00:24 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2013-12-16 20:30:26 ----D---- C:\windows\Temp
2013-12-16 20:30:09 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-16 20:28:55 ----D---- C:\ProgramData\VeriFace
2013-12-16 20:28:06 ----D---- C:\windows\system32\config
2013-12-16 20:27:33 ----D---- C:\windows\Minidump
2013-12-16 20:27:30 ----D---- C:\Windows
2013-12-16 18:48:18 ----D---- C:\Users\Rostislav\AppData\Roaming\Seznam.cz
2013-12-16 18:47:31 ----D---- C:\windows\System32
2013-12-16 18:47:31 ----D---- C:\windows\inf
2013-12-16 18:47:31 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-16 18:26:52 ----HD---- C:\ProgramData
2013-12-16 18:03:37 ----D---- C:\windows\system32\catroot2
2013-12-16 17:28:32 ----D---- C:\windows\Prefetch
2013-12-16 17:17:13 ----D---- C:\windows\winsxs
2013-12-16 17:15:26 ----D---- C:\windows\SysWOW64
2013-12-16 17:15:26 ----D---- C:\Program Files\Internet Explorer
2013-12-16 17:15:26 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-16 17:14:38 ----D---- C:\windows\system32\catroot
2013-12-16 17:13:52 ----SHD---- C:\System Volume Information
2013-12-16 13:47:18 ----RD---- C:\Program Files
2013-12-16 13:32:51 ----RD---- C:\Program Files (x86)
2013-12-15 20:34:36 ----SD---- C:\Users\Rostislav\AppData\Roaming\Microsoft
2013-12-15 20:27:03 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:27:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:27:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-12-15 20:27:00 ----D---- C:\windows\system32\cs-CZ
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\migration
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\en-US
2013-12-15 20:26:50 ----D---- C:\windows\PolicyDefinitions
2013-12-15 20:26:49 ----D---- C:\windows\system32\migration
2013-12-15 20:26:48 ----D---- C:\windows\system32\en-US
2013-12-15 20:26:28 ----D---- C:\windows\system32\DriverStore
2013-12-15 20:26:27 ----D---- C:\windows\system32\drivers
2013-12-15 15:24:09 ----D---- C:\windows\Logs
2013-12-15 15:14:59 ----SHD---- C:\windows\Installer
2013-12-15 15:14:57 ----D---- C:\ProgramData\Microsoft Help
2013-12-15 15:11:46 ----D---- C:\windows\system32\MRT
2013-12-15 15:09:56 ----A---- C:\windows\system32\MRT.exe
2013-12-15 14:54:48 ----D---- C:\windows\system32\LogFiles
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\sppui
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\Setup
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\ras
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\oobe
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\InstallShield
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\icsxml
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\drivers
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\Dism
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\com
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-12-13 22:08:58 ----D---- C:\windows\system32\sysprep
2013-12-13 22:08:58 ----D---- C:\windows\system32\sppui
2013-12-13 22:08:58 ----D---- C:\windows\system32\Setup
2013-12-13 22:08:58 ----D---- C:\windows\system32\ras
2013-12-13 22:08:58 ----D---- C:\windows\system32\oobe
2013-12-13 22:08:58 ----D---- C:\windows\system32\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\system32\icsxml
2013-12-13 22:08:57 ----D---- C:\windows\system32\ias
2013-12-13 22:08:57 ----D---- C:\windows\system32\drivers\UMDF
2013-12-13 22:08:57 ----D---- C:\windows\system32\Dism
2013-12-13 22:08:57 ----D---- C:\windows\system32\com
2013-12-13 22:08:57 ----D---- C:\windows\system32\AdvancedInstallers
2013-12-13 22:08:57 ----D---- C:\windows\rescache
2013-12-13 22:08:57 ----D---- C:\windows\Offline Web Pages
2013-12-13 22:08:57 ----D---- C:\windows\L2Schemas
2013-12-13 22:08:57 ----D---- C:\windows\Downloaded Program Files
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Portable Devices
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Mail
2013-12-13 22:08:57 ----D---- C:\Program Files\Common Files\System
2013-12-13 22:08:56 ----D---- C:\Program Files\Common Files\Services
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Mail
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-TW
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-HK
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-CN
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\uk-UA
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\tr-TR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\th-TH
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sv-SE
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sr-Latn-CS
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sl-SI
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sk-SK
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ru-RU
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ro-RO
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-PT
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-BR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pl-PL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nl-NL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nb-NO
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lv-LV
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lt-LT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ko-KR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ja-JP
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\it-IT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hu-HU
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hr-HR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\he-IL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fr-FR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fi-FI
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\et-EE
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\es-ES
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\el-GR
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\drivers\cs-CZ
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\de-DE
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\da-DK
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\cs
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\bg-BG
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\ar-SA
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-TW
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-HK
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-CN
2013-12-13 22:08:41 ----D---- C:\windows\system32\WinBioPlugIns
2013-12-13 22:08:40 ----D---- C:\windows\system32\uk-UA
2013-12-13 22:08:40 ----D---- C:\windows\system32\tr-TR
2013-12-13 22:08:40 ----D---- C:\windows\system32\th-TH
2013-12-13 22:08:40 ----D---- C:\windows\system32\sv-SE
2013-12-13 22:08:40 ----D---- C:\windows\system32\sr-Latn-CS
2013-12-13 22:08:40 ----D---- C:\windows\system32\sl-SI
2013-12-13 22:08:40 ----D---- C:\windows\system32\sk-SK
2013-12-13 22:08:40 ----D---- C:\windows\system32\ru-RU
2013-12-13 22:08:40 ----D---- C:\windows\system32\ro-RO
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-PT
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-BR
2013-12-13 22:08:39 ----D---- C:\windows\system32\pl-PL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nl-NL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nb-NO
2013-12-13 22:08:39 ----D---- C:\windows\system32\lv-LV
2013-12-13 22:08:39 ----D---- C:\windows\system32\lt-LT
2013-12-13 22:08:39 ----D---- C:\windows\system32\ko-KR
2013-12-13 22:08:39 ----D---- C:\windows\system32\ja-JP
2013-12-13 22:08:39 ----D---- C:\windows\system32\it-IT
2013-12-13 22:08:38 ----D---- C:\windows\system32\hu-HU
2013-12-13 22:08:38 ----D---- C:\windows\system32\hr-HR
2013-12-13 22:08:38 ----D---- C:\windows\system32\he-IL
2013-12-13 22:08:38 ----D---- C:\windows\system32\fr-FR
2013-12-13 22:08:38 ----D---- C:\windows\system32\fi-FI
2013-12-13 22:08:38 ----D---- C:\windows\system32\et-EE
2013-12-13 22:08:38 ----D---- C:\windows\system32\es-ES
2013-12-13 22:08:38 ----D---- C:\windows\system32\el-GR
2013-12-13 22:08:38 ----D---- C:\windows\system32\drivers\en-US
2013-12-13 22:08:37 ----D---- C:\windows\system32\de-DE
2013-12-13 22:08:37 ----D---- C:\windows\system32\da-DK
2013-12-13 22:08:37 ----D---- C:\windows\system32\cs
2013-12-13 22:08:36 ----RSD---- C:\windows\Media
2013-12-13 22:08:36 ----D---- C:\windows\system32\Boot
2013-12-13 22:08:36 ----D---- C:\windows\system32\bg-BG
2013-12-13 22:08:36 ----D---- C:\windows\system32\ar-SA
2013-12-13 22:08:30 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\XPSViewer
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\winrm
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\wdi
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\WCN
2013-12-13 22:06:34 ----D---- C:\windows\SYSWOW64\Wat
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\Speech
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\slmgr
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\MUI
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Msdtc
2013-12-13 22:06:31 ----D---- C:\windows\SYSWOW64\Macromed
2013-12-13 22:06:29 ----D---- C:\windows\SYSWOW64\IME
2013-12-13 22:06:28 ----D---- C:\windows\SYSWOW64\DriverStore
2013-12-13 22:06:26 ----D---- C:\windows\system32\winrm
2013-12-13 22:06:26 ----D---- C:\windows\system32\WCN
2013-12-13 22:06:25 ----D---- C:\windows\system32\Wat
2013-12-13 22:06:23 ----D---- C:\windows\system32\spp
2013-12-13 22:06:23 ----D---- C:\windows\system32\spool
2013-12-13 22:06:23 ----D---- C:\windows\system32\Speech
2013-12-13 22:06:23 ----D---- C:\windows\system32\SMI
2013-12-13 22:06:23 ----D---- C:\windows\system32\slmgr
2013-12-13 22:06:22 ----D---- C:\windows\system32\Printing_Admin_Scripts
2013-12-13 22:06:21 ----D---- C:\windows\system32\NDF
2013-12-13 22:06:21 ----D---- C:\windows\system32\MUI
2013-12-13 22:06:21 ----D---- C:\windows\system32\Msdtc
2013-12-13 22:06:19 ----D---- C:\windows\system32\Macromed
2013-12-13 22:06:18 ----D---- C:\windows\system32\IME
2013-12-13 22:05:59 ----D---- C:\windows\Microsoft.NET
2013-12-13 22:05:47 ----D---- C:\windows\diagnostics
2013-12-13 22:05:14 ----D---- C:\ProgramData\McAfee
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows NT
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows Live
2013-12-13 22:05:13 ----D---- C:\Program Files\TAXEDIT
2013-12-13 22:05:09 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-13 22:05:07 ----D---- C:\Program Files\Microsoft Games
2013-12-13 22:05:05 ----D---- C:\Program Files\DIFX
2013-12-13 22:05:04 ----D---- C:\Program Files\CONEXANT
2013-12-13 22:05:04 ----D---- C:\Program Files\Common Files
2013-12-13 22:05:03 ----D---- C:\Program Files\Common Files\mcafee
2013-12-13 22:05:02 ----D---- C:\Program Files (x86)\WMV.WMA.MP3 Converter
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows NT
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows Live
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-13 22:04:51 ----D---- C:\Program Files (x86)\mcafee.com
2013-12-13 22:04:43 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:04:41 ----D---- C:\Program Files (x86)\BisonCam
2013-12-13 22:04:40 ----D---- C:\Program Files (x86)\Atheros
2013-12-13 22:04:39 ----HD---- C:\GrandeDevice
2013-12-13 22:04:39 ----D---- C:\c4227c293bb5562e6ff7ab3449
2013-12-13 22:04:39 ----D---- C:\b4e0315ff5af3678c17585dec4
2013-12-13 22:04:38 ----SHD---- C:\$Recycle.Bin
2013-12-13 22:04:38 ----D---- C:\a65ad3adc2cdde75e8b976d3027642
2013-12-13 21:48:26 ----RSD---- C:\windows\assembly
2013-12-13 18:35:05 ----D---- C:\windows\system32\wbem
2013-12-13 18:33:46 ----RD---- C:\Users
2013-12-13 18:33:42 ----D---- C:\windows\Tasks
2013-12-13 18:33:42 ----D---- C:\windows\SYSWOW64\wbem
2013-12-13 18:33:42 ----D---- C:\windows\system32\wfp
2013-12-13 18:33:42 ----D---- C:\windows\system32\migwiz
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\etc
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\servicing
2013-12-13 18:33:42 ----D---- C:\windows\IME
2013-12-13 18:33:42 ----D---- C:\windows\ehome
2013-12-13 18:33:42 ----D---- C:\windows\Cursors
2013-12-13 18:33:42 ----D---- C:\windows\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\AppPatch
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Sidebar
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Photo Viewer
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Journal
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Defender
2013-12-13 18:33:42 ----D---- C:\Program Files\DVD Maker
2013-12-13 18:33:21 ----D---- C:\windows\system32\Tasks
2013-12-13 18:33:20 ----D---- C:\windows\system32\restore
2013-12-13 18:33:20 ----D---- C:\windows\system32\CodeIntegrity
2013-12-13 18:33:19 ----RSD---- C:\windows\Fonts
2013-12-13 18:33:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-13 18:33:16 ----D---- C:\Program Files (x86)\WinRAR
2013-12-13 18:33:15 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-13 18:32:46 ----D---- C:\windows\registration
2013-12-12 15:43:24 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-19 03:33:38 ----N---- C:\windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2011-05-09 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2011-05-09 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2013-02-19 771536]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2013-02-19 340216]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2011-05-09 13408]
R1 pelmoubt;Mouse Suite Bluetooth Driver; C:\windows\system32\DRIVERS\pelmoubt.sys [2009-04-23 22016]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2011-05-09 29792]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-02 8284672]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-02 296448]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-12-15 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2013-02-19 70112]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-02-14 1581184]
R3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-10-21 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2013-02-19 179280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2013-02-19 309840]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2013-02-19 515968]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 pelbtm;Bluetooth Mouse Filter Driver; C:\windows\system32\DRIVERS\pelbtm.sys [2007-09-20 16384]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-12-17 1404464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 98816]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-01-08 12262688]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2013-02-19 106552]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\windows\system32\DRIVERS\ss_bus.sys [2009-09-21 127488]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\windows\system32\DRIVERS\ss_mdfl.sys [2009-09-21 18944]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\windows\system32\DRIVERS\ss_mdm.sys [2009-09-21 161280]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-02 203776]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2013-02-19 241456]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2013-02-19 218760]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2013-02-19 182752]
R2 PelService;Session Launcher Service; C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe [2010-04-22 177152]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2010-08-09 220528]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2012-11-16 383608]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-07-19 1255736]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Rostislav at 2013-12-16 20:30:18
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 533 GB (79%) free of 670 GB
Total RAM: 6088 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:30:31, on 16.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files\trend micro\Rostislav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (file missing)
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (file missing)
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Image Retriever.lnk = C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Session Launcher Service (PelService) - Unknown owner - C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15140 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
atieclxx
C:\windows\System32\spoolsv.exe
taskeng.exe {72B613CE-BC42-4FB2-99AF-CE0F8A6FE02A}
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
C:\windows\servicing\TrustedInstaller.exe
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskeng.exe {62AD812D-24B5-48BB-90F2-B1E8159C34A5}
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.exe" 60
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe" /x
szndesktop.exe default start
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "8411985061763705380-1063195945377451621-2113501286-1683518044-199609301919160086
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files\mcafee.com\agent\mcagent.exe" /runkey
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\windows\system32\SearchFilterHost.exe" 0 536 540 548 65536 544
"C:\Program Files\Lenovo\Lenovo Mouse Suite\FSRremoS.EXE"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\Pelmiced.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelElvDm.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\Users\Rostislav\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\sppsvc.exe
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 4984
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 104448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-16 346168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 89480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-07 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-07 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-07 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-17 2531624]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2011-05-09 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-05-09 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-05-09 5908928]
"Daemon for Mouse Suite"=C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.EXE [2010-07-30 99840]
"Mouse Suite 98 Daemon"=ICO.EXE []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"cz.seznam.software.autoupdate"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-12 283160]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-02 336384]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2013-03-13 1532992]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-05-09 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SSBkgdUpdate"=C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [2009-02-19 24576]
"IndexSearch"=C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [2009-02-19 40960]
"PPort11reminder"=C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [2008-11-03 54560]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
Image Retriever.lnk - C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-08 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-16 18:21:12 ----D---- C:\AdwCleaner
2013-12-16 17:14:11 ----A---- C:\windows\system32\ieetwcollectorres.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieUnatt.exe
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iesetup.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iernonce.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ie4uinit.exe
2013-12-16 17:14:09 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\mshtml.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwproxystub.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwcollector.exe
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\system32\iertutil.dll
2013-12-16 17:14:07 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-12-16 17:14:07 ----A---- C:\windows\system32\wininet.dll
2013-12-16 17:14:06 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-12-16 17:14:06 ----A---- C:\windows\system32\urlmon.dll
2013-12-16 17:14:05 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-12-16 17:14:05 ----A---- C:\windows\system32\ieframe.dll
2013-12-16 17:14:04 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-12-16 17:14:03 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-12-16 17:14:03 ----A---- C:\windows\system32\jscript9.dll
2013-12-16 13:47:18 ----D---- C:\Program Files\trend micro
2013-12-16 13:32:51 ----D---- C:\Program Files (x86)\trend micro
2013-12-16 13:32:50 ----D---- C:\rsit
2013-12-15 15:24:53 ----A---- C:\windows\system32\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-12-15 15:24:51 ----A---- C:\windows\system32\wmp.dll
2013-12-15 15:24:09 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-12-15 15:17:52 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-12-15 15:17:52 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\url.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\occache.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\elshyph.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\wextract.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\webcheck.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\vbscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\url.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\pngfilt.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\occache.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmled.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\MshtmlDac.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshta.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\msfeeds.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\licmgr10.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\jscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\inseng.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\imgutil.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iexpress.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iepeers.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iedkcs32.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dat
2013-12-15 15:17:48 ----A---- C:\windows\system32\icardie.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtrans.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtmsft.dll
2013-12-14 10:04:33 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-12-14 10:04:33 ----A---- C:\windows\system32\win32k.sys
2013-12-14 10:04:33 ----A---- C:\windows\system32\msieftp.dll
2013-12-14 10:04:32 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-12-14 10:04:32 ----A---- C:\windows\system32\WMPhoto.dll
2013-12-14 10:04:31 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2013-12-14 10:04:31 ----A---- C:\windows\system32\imagehlp.dll
2013-12-14 10:04:24 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-12-14 10:04:24 ----A---- C:\windows\system32\tzres.dll
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\portcls.sys
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\drmk.sys
2013-12-14 10:03:56 ----A---- C:\windows\system32\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\scrrun.dll
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\scrrun.dll
2013-12-13 19:30:08 ----A---- C:\windows\ntbtlog.txt
2013-12-13 18:22:40 ----D---- C:\windows\pss
2013-12-05 15:51:31 ----D---- C:\MAGIX
2013-12-05 15:51:04 ----A---- C:\windows\SYSWOW64\mgxoschk.dll
2013-12-05 15:51:04 ----A---- C:\windows\mgxoschk.ini
2013-12-05 15:04:33 ----A---- C:\windows\system32\ntoskrnl.exe
2013-12-05 15:04:33 ----A---- C:\windows\system32\advapi32.dll
2013-12-05 15:04:32 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-12-05 15:04:32 ----A---- C:\windows\system32\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-12-05 15:04:31 ----A---- C:\windows\system32\ntdll.dll
2013-12-05 15:04:30 ----A---- C:\windows\system32\wow64.dll
2013-12-05 15:04:28 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\user.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-12-05 15:04:25 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-12-05 15:04:24 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-12-05 15:04:23 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-12-05 15:04:23 ----A---- C:\windows\system32\mswsock.dll
2013-12-05 15:04:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-12-05 15:04:21 ----A---- C:\windows\system32\gdi32.dll
2013-12-05 15:02:24 ----A---- C:\windows\system32\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\lsasrv.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\cng.sys
2013-12-05 15:02:22 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\sspisrv.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\secur32.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\lsass.exe
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\authui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui(5846).dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\authui.dll
2013-12-05 15:01:57 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32(5848).dll
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-12-05 15:01:42 ----A---- C:\windows\system32\drivers\afd.sys
2013-12-05 15:01:22 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32(5832).dll
2013-12-05 15:01:17 ----A---- C:\windows\system32\scavengeui.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-12-05 15:01:13 ----A---- C:\windows\system32\davclnt.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmfd.dll
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\usbscan.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-12-05 15:01:07 ----A---- C:\windows\system32\IKEEXT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\system32\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-12-05 15:00:34 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-12-05 15:00:24 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-05 15:00:24 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2013-12-16 20:30:26 ----D---- C:\windows\Temp
2013-12-16 20:30:09 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-16 20:28:55 ----D---- C:\ProgramData\VeriFace
2013-12-16 20:28:06 ----D---- C:\windows\system32\config
2013-12-16 20:27:33 ----D---- C:\windows\Minidump
2013-12-16 20:27:30 ----D---- C:\Windows
2013-12-16 18:48:18 ----D---- C:\Users\Rostislav\AppData\Roaming\Seznam.cz
2013-12-16 18:47:31 ----D---- C:\windows\System32
2013-12-16 18:47:31 ----D---- C:\windows\inf
2013-12-16 18:47:31 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-16 18:26:52 ----HD---- C:\ProgramData
2013-12-16 18:03:37 ----D---- C:\windows\system32\catroot2
2013-12-16 17:28:32 ----D---- C:\windows\Prefetch
2013-12-16 17:17:13 ----D---- C:\windows\winsxs
2013-12-16 17:15:26 ----D---- C:\windows\SysWOW64
2013-12-16 17:15:26 ----D---- C:\Program Files\Internet Explorer
2013-12-16 17:15:26 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-16 17:14:38 ----D---- C:\windows\system32\catroot
2013-12-16 17:13:52 ----SHD---- C:\System Volume Information
2013-12-16 13:47:18 ----RD---- C:\Program Files
2013-12-16 13:32:51 ----RD---- C:\Program Files (x86)
2013-12-15 20:34:36 ----SD---- C:\Users\Rostislav\AppData\Roaming\Microsoft
2013-12-15 20:27:03 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:27:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:27:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-12-15 20:27:00 ----D---- C:\windows\system32\cs-CZ
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\migration
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\en-US
2013-12-15 20:26:50 ----D---- C:\windows\PolicyDefinitions
2013-12-15 20:26:49 ----D---- C:\windows\system32\migration
2013-12-15 20:26:48 ----D---- C:\windows\system32\en-US
2013-12-15 20:26:28 ----D---- C:\windows\system32\DriverStore
2013-12-15 20:26:27 ----D---- C:\windows\system32\drivers
2013-12-15 15:24:09 ----D---- C:\windows\Logs
2013-12-15 15:14:59 ----SHD---- C:\windows\Installer
2013-12-15 15:14:57 ----D---- C:\ProgramData\Microsoft Help
2013-12-15 15:11:46 ----D---- C:\windows\system32\MRT
2013-12-15 15:09:56 ----A---- C:\windows\system32\MRT.exe
2013-12-15 14:54:48 ----D---- C:\windows\system32\LogFiles
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\sppui
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\Setup
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\ras
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\oobe
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\InstallShield
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\icsxml
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\drivers
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\Dism
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\com
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-12-13 22:08:58 ----D---- C:\windows\system32\sysprep
2013-12-13 22:08:58 ----D---- C:\windows\system32\sppui
2013-12-13 22:08:58 ----D---- C:\windows\system32\Setup
2013-12-13 22:08:58 ----D---- C:\windows\system32\ras
2013-12-13 22:08:58 ----D---- C:\windows\system32\oobe
2013-12-13 22:08:58 ----D---- C:\windows\system32\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\system32\icsxml
2013-12-13 22:08:57 ----D---- C:\windows\system32\ias
2013-12-13 22:08:57 ----D---- C:\windows\system32\drivers\UMDF
2013-12-13 22:08:57 ----D---- C:\windows\system32\Dism
2013-12-13 22:08:57 ----D---- C:\windows\system32\com
2013-12-13 22:08:57 ----D---- C:\windows\system32\AdvancedInstallers
2013-12-13 22:08:57 ----D---- C:\windows\rescache
2013-12-13 22:08:57 ----D---- C:\windows\Offline Web Pages
2013-12-13 22:08:57 ----D---- C:\windows\L2Schemas
2013-12-13 22:08:57 ----D---- C:\windows\Downloaded Program Files
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Portable Devices
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Mail
2013-12-13 22:08:57 ----D---- C:\Program Files\Common Files\System
2013-12-13 22:08:56 ----D---- C:\Program Files\Common Files\Services
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Mail
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-TW
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-HK
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-CN
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\uk-UA
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\tr-TR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\th-TH
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sv-SE
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sr-Latn-CS
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sl-SI
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sk-SK
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ru-RU
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ro-RO
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-PT
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-BR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pl-PL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nl-NL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nb-NO
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lv-LV
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lt-LT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ko-KR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ja-JP
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\it-IT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hu-HU
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hr-HR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\he-IL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fr-FR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fi-FI
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\et-EE
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\es-ES
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\el-GR
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\drivers\cs-CZ
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\de-DE
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\da-DK
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\cs
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\bg-BG
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\ar-SA
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-TW
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-HK
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-CN
2013-12-13 22:08:41 ----D---- C:\windows\system32\WinBioPlugIns
2013-12-13 22:08:40 ----D---- C:\windows\system32\uk-UA
2013-12-13 22:08:40 ----D---- C:\windows\system32\tr-TR
2013-12-13 22:08:40 ----D---- C:\windows\system32\th-TH
2013-12-13 22:08:40 ----D---- C:\windows\system32\sv-SE
2013-12-13 22:08:40 ----D---- C:\windows\system32\sr-Latn-CS
2013-12-13 22:08:40 ----D---- C:\windows\system32\sl-SI
2013-12-13 22:08:40 ----D---- C:\windows\system32\sk-SK
2013-12-13 22:08:40 ----D---- C:\windows\system32\ru-RU
2013-12-13 22:08:40 ----D---- C:\windows\system32\ro-RO
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-PT
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-BR
2013-12-13 22:08:39 ----D---- C:\windows\system32\pl-PL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nl-NL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nb-NO
2013-12-13 22:08:39 ----D---- C:\windows\system32\lv-LV
2013-12-13 22:08:39 ----D---- C:\windows\system32\lt-LT
2013-12-13 22:08:39 ----D---- C:\windows\system32\ko-KR
2013-12-13 22:08:39 ----D---- C:\windows\system32\ja-JP
2013-12-13 22:08:39 ----D---- C:\windows\system32\it-IT
2013-12-13 22:08:38 ----D---- C:\windows\system32\hu-HU
2013-12-13 22:08:38 ----D---- C:\windows\system32\hr-HR
2013-12-13 22:08:38 ----D---- C:\windows\system32\he-IL
2013-12-13 22:08:38 ----D---- C:\windows\system32\fr-FR
2013-12-13 22:08:38 ----D---- C:\windows\system32\fi-FI
2013-12-13 22:08:38 ----D---- C:\windows\system32\et-EE
2013-12-13 22:08:38 ----D---- C:\windows\system32\es-ES
2013-12-13 22:08:38 ----D---- C:\windows\system32\el-GR
2013-12-13 22:08:38 ----D---- C:\windows\system32\drivers\en-US
2013-12-13 22:08:37 ----D---- C:\windows\system32\de-DE
2013-12-13 22:08:37 ----D---- C:\windows\system32\da-DK
2013-12-13 22:08:37 ----D---- C:\windows\system32\cs
2013-12-13 22:08:36 ----RSD---- C:\windows\Media
2013-12-13 22:08:36 ----D---- C:\windows\system32\Boot
2013-12-13 22:08:36 ----D---- C:\windows\system32\bg-BG
2013-12-13 22:08:36 ----D---- C:\windows\system32\ar-SA
2013-12-13 22:08:30 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\XPSViewer
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\winrm
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\wdi
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\WCN
2013-12-13 22:06:34 ----D---- C:\windows\SYSWOW64\Wat
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\Speech
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\slmgr
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\MUI
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Msdtc
2013-12-13 22:06:31 ----D---- C:\windows\SYSWOW64\Macromed
2013-12-13 22:06:29 ----D---- C:\windows\SYSWOW64\IME
2013-12-13 22:06:28 ----D---- C:\windows\SYSWOW64\DriverStore
2013-12-13 22:06:26 ----D---- C:\windows\system32\winrm
2013-12-13 22:06:26 ----D---- C:\windows\system32\WCN
2013-12-13 22:06:25 ----D---- C:\windows\system32\Wat
2013-12-13 22:06:23 ----D---- C:\windows\system32\spp
2013-12-13 22:06:23 ----D---- C:\windows\system32\spool
2013-12-13 22:06:23 ----D---- C:\windows\system32\Speech
2013-12-13 22:06:23 ----D---- C:\windows\system32\SMI
2013-12-13 22:06:23 ----D---- C:\windows\system32\slmgr
2013-12-13 22:06:22 ----D---- C:\windows\system32\Printing_Admin_Scripts
2013-12-13 22:06:21 ----D---- C:\windows\system32\NDF
2013-12-13 22:06:21 ----D---- C:\windows\system32\MUI
2013-12-13 22:06:21 ----D---- C:\windows\system32\Msdtc
2013-12-13 22:06:19 ----D---- C:\windows\system32\Macromed
2013-12-13 22:06:18 ----D---- C:\windows\system32\IME
2013-12-13 22:05:59 ----D---- C:\windows\Microsoft.NET
2013-12-13 22:05:47 ----D---- C:\windows\diagnostics
2013-12-13 22:05:14 ----D---- C:\ProgramData\McAfee
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows NT
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows Live
2013-12-13 22:05:13 ----D---- C:\Program Files\TAXEDIT
2013-12-13 22:05:09 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-13 22:05:07 ----D---- C:\Program Files\Microsoft Games
2013-12-13 22:05:05 ----D---- C:\Program Files\DIFX
2013-12-13 22:05:04 ----D---- C:\Program Files\CONEXANT
2013-12-13 22:05:04 ----D---- C:\Program Files\Common Files
2013-12-13 22:05:03 ----D---- C:\Program Files\Common Files\mcafee
2013-12-13 22:05:02 ----D---- C:\Program Files (x86)\WMV.WMA.MP3 Converter
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows NT
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows Live
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-13 22:04:51 ----D---- C:\Program Files (x86)\mcafee.com
2013-12-13 22:04:43 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:04:41 ----D---- C:\Program Files (x86)\BisonCam
2013-12-13 22:04:40 ----D---- C:\Program Files (x86)\Atheros
2013-12-13 22:04:39 ----HD---- C:\GrandeDevice
2013-12-13 22:04:39 ----D---- C:\c4227c293bb5562e6ff7ab3449
2013-12-13 22:04:39 ----D---- C:\b4e0315ff5af3678c17585dec4
2013-12-13 22:04:38 ----SHD---- C:\$Recycle.Bin
2013-12-13 22:04:38 ----D---- C:\a65ad3adc2cdde75e8b976d3027642
2013-12-13 21:48:26 ----RSD---- C:\windows\assembly
2013-12-13 18:35:05 ----D---- C:\windows\system32\wbem
2013-12-13 18:33:46 ----RD---- C:\Users
2013-12-13 18:33:42 ----D---- C:\windows\Tasks
2013-12-13 18:33:42 ----D---- C:\windows\SYSWOW64\wbem
2013-12-13 18:33:42 ----D---- C:\windows\system32\wfp
2013-12-13 18:33:42 ----D---- C:\windows\system32\migwiz
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\etc
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\servicing
2013-12-13 18:33:42 ----D---- C:\windows\IME
2013-12-13 18:33:42 ----D---- C:\windows\ehome
2013-12-13 18:33:42 ----D---- C:\windows\Cursors
2013-12-13 18:33:42 ----D---- C:\windows\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\AppPatch
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Sidebar
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Photo Viewer
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Journal
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Defender
2013-12-13 18:33:42 ----D---- C:\Program Files\DVD Maker
2013-12-13 18:33:21 ----D---- C:\windows\system32\Tasks
2013-12-13 18:33:20 ----D---- C:\windows\system32\restore
2013-12-13 18:33:20 ----D---- C:\windows\system32\CodeIntegrity
2013-12-13 18:33:19 ----RSD---- C:\windows\Fonts
2013-12-13 18:33:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-13 18:33:16 ----D---- C:\Program Files (x86)\WinRAR
2013-12-13 18:33:15 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-13 18:32:46 ----D---- C:\windows\registration
2013-12-12 15:43:24 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-19 03:33:38 ----N---- C:\windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2011-05-09 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2011-05-09 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2013-02-19 771536]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2013-02-19 340216]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2011-05-09 13408]
R1 pelmoubt;Mouse Suite Bluetooth Driver; C:\windows\system32\DRIVERS\pelmoubt.sys [2009-04-23 22016]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2011-05-09 29792]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-02 8284672]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-02 296448]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-12-15 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2013-02-19 70112]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-02-14 1581184]
R3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-10-21 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2013-02-19 179280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2013-02-19 309840]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2013-02-19 515968]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 pelbtm;Bluetooth Mouse Filter Driver; C:\windows\system32\DRIVERS\pelbtm.sys [2007-09-20 16384]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-12-17 1404464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 98816]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-01-08 12262688]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2013-02-19 106552]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\windows\system32\DRIVERS\ss_bus.sys [2009-09-21 127488]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\windows\system32\DRIVERS\ss_mdfl.sys [2009-09-21 18944]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\windows\system32\DRIVERS\ss_mdm.sys [2009-09-21 161280]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-02 203776]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2013-02-19 241456]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2013-02-19 218760]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2013-02-19 182752]
R2 PelService;Session Launcher Service; C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe [2010-04-22 177152]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2010-08-09 220528]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2012-11-16 383608]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-07-19 1255736]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119532
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s padáním a zamrzáním notebooku
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:files
C:\Program Files (x86)\Google\Google Toolbar
C:\Program Files (x86)\Google\GoogleToolbarNotifier
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=-
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s padáním a zamrzáním notebooku
...log rsit
Logfile of random's system information tool 1.09 (written by random/random)
Run by Rostislav at 2013-12-16 21:15:56
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 547 GB (82%) free of 670 GB
Total RAM: 6088 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:16:05, on 16.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files\trend micro\Rostislav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Image Retriever.lnk = C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Session Launcher Service (PelService) - Unknown owner - C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14428 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
atieclxx
taskeng.exe {10A275C4-AB24-450E-953E-78ADED3C145D}
"taskhost.exe"
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.exe" 60
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe" /x
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
szndesktop.exe default start
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "-40578945190727124238019895712489914625629576591551521289-1713629089-346742471
taskeng.exe {014CE85B-32D2-4C60-B0D3-395B04974D78}
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files\mcafee.com\agent\mcagent.exe" /runkey
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\servicing\TrustedInstaller.exe
C:\Windows\system32\PrintIsolationHost.exe -Embedding
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Lenovo\Lenovo Mouse Suite\FSRremoS.EXE"
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\Pelmiced.exe"
"C:\windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelElvDm.exe"
"C:\Users\Rostislav\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 104448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-16 346168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 89480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-07 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-07 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-07 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-17 2531624]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2011-05-09 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-05-09 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-05-09 5908928]
"Daemon for Mouse Suite"=C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.EXE [2010-07-30 99840]
"Mouse Suite 98 Daemon"=ICO.EXE []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"cz.seznam.software.autoupdate"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-12 283160]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-02 336384]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2013-03-13 1532992]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-05-09 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SSBkgdUpdate"=C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [2009-02-19 24576]
"IndexSearch"=C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [2009-02-19 40960]
"PPort11reminder"=C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [2008-11-03 54560]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
Image Retriever.lnk - C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-08 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-16 21:03:53 ----D---- C:\_OTM
2013-12-16 18:21:12 ----D---- C:\AdwCleaner
2013-12-16 17:14:11 ----A---- C:\windows\system32\ieetwcollectorres.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieUnatt.exe
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iesetup.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iernonce.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ie4uinit.exe
2013-12-16 17:14:09 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\mshtml.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwproxystub.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwcollector.exe
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\system32\iertutil.dll
2013-12-16 17:14:07 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-12-16 17:14:07 ----A---- C:\windows\system32\wininet.dll
2013-12-16 17:14:06 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-12-16 17:14:06 ----A---- C:\windows\system32\urlmon.dll
2013-12-16 17:14:05 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-12-16 17:14:05 ----A---- C:\windows\system32\ieframe.dll
2013-12-16 17:14:04 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-12-16 17:14:03 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-12-16 17:14:03 ----A---- C:\windows\system32\jscript9.dll
2013-12-16 13:47:18 ----D---- C:\Program Files\trend micro
2013-12-16 13:32:51 ----D---- C:\Program Files (x86)\trend micro
2013-12-16 13:32:50 ----D---- C:\rsit
2013-12-15 15:24:53 ----A---- C:\windows\system32\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-12-15 15:24:51 ----A---- C:\windows\system32\wmp.dll
2013-12-15 15:24:09 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-12-15 15:17:52 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-12-15 15:17:52 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\url.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\occache.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\elshyph.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\wextract.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\webcheck.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\vbscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\url.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\pngfilt.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\occache.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmled.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\MshtmlDac.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshta.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\msfeeds.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\licmgr10.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\jscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\inseng.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\imgutil.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iexpress.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iepeers.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iedkcs32.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dat
2013-12-15 15:17:48 ----A---- C:\windows\system32\icardie.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtrans.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtmsft.dll
2013-12-14 10:04:33 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-12-14 10:04:33 ----A---- C:\windows\system32\win32k.sys
2013-12-14 10:04:33 ----A---- C:\windows\system32\msieftp.dll
2013-12-14 10:04:32 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-12-14 10:04:32 ----A---- C:\windows\system32\WMPhoto.dll
2013-12-14 10:04:31 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2013-12-14 10:04:31 ----A---- C:\windows\system32\imagehlp.dll
2013-12-14 10:04:24 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-12-14 10:04:24 ----A---- C:\windows\system32\tzres.dll
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\portcls.sys
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\drmk.sys
2013-12-14 10:03:56 ----A---- C:\windows\system32\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\scrrun.dll
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\scrrun.dll
2013-12-13 19:30:08 ----A---- C:\windows\ntbtlog.txt
2013-12-13 18:22:40 ----D---- C:\windows\pss
2013-12-05 15:51:31 ----D---- C:\MAGIX
2013-12-05 15:51:04 ----A---- C:\windows\SYSWOW64\mgxoschk.dll
2013-12-05 15:51:04 ----A---- C:\windows\mgxoschk.ini
2013-12-05 15:04:33 ----A---- C:\windows\system32\ntoskrnl.exe
2013-12-05 15:04:33 ----A---- C:\windows\system32\advapi32.dll
2013-12-05 15:04:32 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-12-05 15:04:32 ----A---- C:\windows\system32\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-12-05 15:04:31 ----A---- C:\windows\system32\ntdll.dll
2013-12-05 15:04:30 ----A---- C:\windows\system32\wow64.dll
2013-12-05 15:04:28 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\user.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-12-05 15:04:25 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-12-05 15:04:24 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-12-05 15:04:23 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-12-05 15:04:23 ----A---- C:\windows\system32\mswsock.dll
2013-12-05 15:04:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-12-05 15:04:21 ----A---- C:\windows\system32\gdi32.dll
2013-12-05 15:02:24 ----A---- C:\windows\system32\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\lsasrv.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\cng.sys
2013-12-05 15:02:22 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\sspisrv.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\secur32.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\lsass.exe
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\authui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui(5846).dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\authui.dll
2013-12-05 15:01:57 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32(5848).dll
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-12-05 15:01:42 ----A---- C:\windows\system32\drivers\afd.sys
2013-12-05 15:01:22 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32(5832).dll
2013-12-05 15:01:17 ----A---- C:\windows\system32\scavengeui.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-12-05 15:01:13 ----A---- C:\windows\system32\davclnt.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmfd.dll
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\usbscan.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-12-05 15:01:07 ----A---- C:\windows\system32\IKEEXT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\system32\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-12-05 15:00:34 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-12-05 15:00:24 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-05 15:00:24 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2013-12-16 21:15:58 ----D---- C:\windows\Temp
2013-12-16 21:14:47 ----D---- C:\ProgramData\VeriFace
2013-12-16 21:13:34 ----D---- C:\windows\Minidump
2013-12-16 21:13:31 ----D---- C:\Windows
2013-12-16 21:11:31 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-16 21:09:25 ----D---- C:\windows\system32\config
2013-12-16 21:03:53 ----D---- C:\windows\Tasks
2013-12-16 20:35:02 ----D---- C:\windows\System32
2013-12-16 20:35:02 ----D---- C:\windows\inf
2013-12-16 20:35:02 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-16 20:33:32 ----D---- C:\Users\Rostislav\AppData\Roaming\Seznam.cz
2013-12-16 18:26:52 ----HD---- C:\ProgramData
2013-12-16 18:03:37 ----D---- C:\windows\system32\catroot2
2013-12-16 17:28:32 ----D---- C:\windows\Prefetch
2013-12-16 17:17:13 ----D---- C:\windows\winsxs
2013-12-16 17:15:26 ----D---- C:\windows\SysWOW64
2013-12-16 17:15:26 ----D---- C:\Program Files\Internet Explorer
2013-12-16 17:15:26 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-16 17:14:38 ----D---- C:\windows\system32\catroot
2013-12-16 17:13:52 ----SHD---- C:\System Volume Information
2013-12-16 13:47:18 ----RD---- C:\Program Files
2013-12-16 13:32:51 ----RD---- C:\Program Files (x86)
2013-12-15 20:34:36 ----SD---- C:\Users\Rostislav\AppData\Roaming\Microsoft
2013-12-15 20:27:03 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:27:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:27:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-12-15 20:27:00 ----D---- C:\windows\system32\cs-CZ
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\migration
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\en-US
2013-12-15 20:26:50 ----D---- C:\windows\PolicyDefinitions
2013-12-15 20:26:49 ----D---- C:\windows\system32\migration
2013-12-15 20:26:48 ----D---- C:\windows\system32\en-US
2013-12-15 20:26:28 ----D---- C:\windows\system32\DriverStore
2013-12-15 20:26:27 ----D---- C:\windows\system32\drivers
2013-12-15 15:24:09 ----D---- C:\windows\Logs
2013-12-15 15:14:59 ----SHD---- C:\windows\Installer
2013-12-15 15:14:57 ----D---- C:\ProgramData\Microsoft Help
2013-12-15 15:11:46 ----D---- C:\windows\system32\MRT
2013-12-15 15:09:56 ----A---- C:\windows\system32\MRT.exe
2013-12-15 14:54:48 ----D---- C:\windows\system32\LogFiles
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\sppui
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\Setup
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\ras
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\oobe
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\InstallShield
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\icsxml
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\drivers
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\Dism
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\com
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-12-13 22:08:58 ----D---- C:\windows\system32\sysprep
2013-12-13 22:08:58 ----D---- C:\windows\system32\sppui
2013-12-13 22:08:58 ----D---- C:\windows\system32\Setup
2013-12-13 22:08:58 ----D---- C:\windows\system32\ras
2013-12-13 22:08:58 ----D---- C:\windows\system32\oobe
2013-12-13 22:08:58 ----D---- C:\windows\system32\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\system32\icsxml
2013-12-13 22:08:57 ----D---- C:\windows\system32\ias
2013-12-13 22:08:57 ----D---- C:\windows\system32\drivers\UMDF
2013-12-13 22:08:57 ----D---- C:\windows\system32\Dism
2013-12-13 22:08:57 ----D---- C:\windows\system32\com
2013-12-13 22:08:57 ----D---- C:\windows\system32\AdvancedInstallers
2013-12-13 22:08:57 ----D---- C:\windows\rescache
2013-12-13 22:08:57 ----D---- C:\windows\Offline Web Pages
2013-12-13 22:08:57 ----D---- C:\windows\L2Schemas
2013-12-13 22:08:57 ----D---- C:\windows\Downloaded Program Files
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Portable Devices
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Mail
2013-12-13 22:08:57 ----D---- C:\Program Files\Common Files\System
2013-12-13 22:08:56 ----D---- C:\Program Files\Common Files\Services
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Mail
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-TW
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-HK
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-CN
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\uk-UA
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\tr-TR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\th-TH
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sv-SE
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sr-Latn-CS
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sl-SI
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sk-SK
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ru-RU
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ro-RO
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-PT
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-BR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pl-PL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nl-NL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nb-NO
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lv-LV
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lt-LT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ko-KR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ja-JP
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\it-IT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hu-HU
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hr-HR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\he-IL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fr-FR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fi-FI
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\et-EE
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\es-ES
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\el-GR
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\drivers\cs-CZ
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\de-DE
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\da-DK
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\cs
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\bg-BG
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\ar-SA
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-TW
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-HK
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-CN
2013-12-13 22:08:41 ----D---- C:\windows\system32\WinBioPlugIns
2013-12-13 22:08:40 ----D---- C:\windows\system32\uk-UA
2013-12-13 22:08:40 ----D---- C:\windows\system32\tr-TR
2013-12-13 22:08:40 ----D---- C:\windows\system32\th-TH
2013-12-13 22:08:40 ----D---- C:\windows\system32\sv-SE
2013-12-13 22:08:40 ----D---- C:\windows\system32\sr-Latn-CS
2013-12-13 22:08:40 ----D---- C:\windows\system32\sl-SI
2013-12-13 22:08:40 ----D---- C:\windows\system32\sk-SK
2013-12-13 22:08:40 ----D---- C:\windows\system32\ru-RU
2013-12-13 22:08:40 ----D---- C:\windows\system32\ro-RO
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-PT
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-BR
2013-12-13 22:08:39 ----D---- C:\windows\system32\pl-PL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nl-NL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nb-NO
2013-12-13 22:08:39 ----D---- C:\windows\system32\lv-LV
2013-12-13 22:08:39 ----D---- C:\windows\system32\lt-LT
2013-12-13 22:08:39 ----D---- C:\windows\system32\ko-KR
2013-12-13 22:08:39 ----D---- C:\windows\system32\ja-JP
2013-12-13 22:08:39 ----D---- C:\windows\system32\it-IT
2013-12-13 22:08:38 ----D---- C:\windows\system32\hu-HU
2013-12-13 22:08:38 ----D---- C:\windows\system32\hr-HR
2013-12-13 22:08:38 ----D---- C:\windows\system32\he-IL
2013-12-13 22:08:38 ----D---- C:\windows\system32\fr-FR
2013-12-13 22:08:38 ----D---- C:\windows\system32\fi-FI
2013-12-13 22:08:38 ----D---- C:\windows\system32\et-EE
2013-12-13 22:08:38 ----D---- C:\windows\system32\es-ES
2013-12-13 22:08:38 ----D---- C:\windows\system32\el-GR
2013-12-13 22:08:38 ----D---- C:\windows\system32\drivers\en-US
2013-12-13 22:08:37 ----D---- C:\windows\system32\de-DE
2013-12-13 22:08:37 ----D---- C:\windows\system32\da-DK
2013-12-13 22:08:37 ----D---- C:\windows\system32\cs
2013-12-13 22:08:36 ----RSD---- C:\windows\Media
2013-12-13 22:08:36 ----D---- C:\windows\system32\Boot
2013-12-13 22:08:36 ----D---- C:\windows\system32\bg-BG
2013-12-13 22:08:36 ----D---- C:\windows\system32\ar-SA
2013-12-13 22:08:30 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\XPSViewer
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\winrm
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\wdi
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\WCN
2013-12-13 22:06:34 ----D---- C:\windows\SYSWOW64\Wat
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\Speech
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\slmgr
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\MUI
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Msdtc
2013-12-13 22:06:31 ----D---- C:\windows\SYSWOW64\Macromed
2013-12-13 22:06:29 ----D---- C:\windows\SYSWOW64\IME
2013-12-13 22:06:28 ----D---- C:\windows\SYSWOW64\DriverStore
2013-12-13 22:06:26 ----D---- C:\windows\system32\winrm
2013-12-13 22:06:26 ----D---- C:\windows\system32\WCN
2013-12-13 22:06:25 ----D---- C:\windows\system32\Wat
2013-12-13 22:06:23 ----D---- C:\windows\system32\spp
2013-12-13 22:06:23 ----D---- C:\windows\system32\spool
2013-12-13 22:06:23 ----D---- C:\windows\system32\Speech
2013-12-13 22:06:23 ----D---- C:\windows\system32\SMI
2013-12-13 22:06:23 ----D---- C:\windows\system32\slmgr
2013-12-13 22:06:22 ----D---- C:\windows\system32\Printing_Admin_Scripts
2013-12-13 22:06:21 ----D---- C:\windows\system32\NDF
2013-12-13 22:06:21 ----D---- C:\windows\system32\MUI
2013-12-13 22:06:21 ----D---- C:\windows\system32\Msdtc
2013-12-13 22:06:19 ----D---- C:\windows\system32\Macromed
2013-12-13 22:06:18 ----D---- C:\windows\system32\IME
2013-12-13 22:05:59 ----D---- C:\windows\Microsoft.NET
2013-12-13 22:05:47 ----D---- C:\windows\diagnostics
2013-12-13 22:05:14 ----D---- C:\ProgramData\McAfee
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows NT
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows Live
2013-12-13 22:05:13 ----D---- C:\Program Files\TAXEDIT
2013-12-13 22:05:09 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-13 22:05:07 ----D---- C:\Program Files\Microsoft Games
2013-12-13 22:05:05 ----D---- C:\Program Files\DIFX
2013-12-13 22:05:04 ----D---- C:\Program Files\CONEXANT
2013-12-13 22:05:04 ----D---- C:\Program Files\Common Files
2013-12-13 22:05:03 ----D---- C:\Program Files\Common Files\mcafee
2013-12-13 22:05:02 ----D---- C:\Program Files (x86)\WMV.WMA.MP3 Converter
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows NT
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows Live
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-13 22:04:51 ----D---- C:\Program Files (x86)\mcafee.com
2013-12-13 22:04:43 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:04:41 ----D---- C:\Program Files (x86)\BisonCam
2013-12-13 22:04:40 ----D---- C:\Program Files (x86)\Atheros
2013-12-13 22:04:39 ----HD---- C:\GrandeDevice
2013-12-13 22:04:39 ----D---- C:\c4227c293bb5562e6ff7ab3449
2013-12-13 22:04:39 ----D---- C:\b4e0315ff5af3678c17585dec4
2013-12-13 22:04:38 ----SHD---- C:\$Recycle.Bin
2013-12-13 22:04:38 ----D---- C:\a65ad3adc2cdde75e8b976d3027642
2013-12-13 21:48:26 ----RSD---- C:\windows\assembly
2013-12-13 18:35:05 ----D---- C:\windows\system32\wbem
2013-12-13 18:33:46 ----RD---- C:\Users
2013-12-13 18:33:42 ----D---- C:\windows\SYSWOW64\wbem
2013-12-13 18:33:42 ----D---- C:\windows\system32\wfp
2013-12-13 18:33:42 ----D---- C:\windows\system32\migwiz
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\etc
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\servicing
2013-12-13 18:33:42 ----D---- C:\windows\IME
2013-12-13 18:33:42 ----D---- C:\windows\ehome
2013-12-13 18:33:42 ----D---- C:\windows\Cursors
2013-12-13 18:33:42 ----D---- C:\windows\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\AppPatch
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Sidebar
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Photo Viewer
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Journal
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Defender
2013-12-13 18:33:42 ----D---- C:\Program Files\DVD Maker
2013-12-13 18:33:21 ----D---- C:\windows\system32\Tasks
2013-12-13 18:33:20 ----D---- C:\windows\system32\restore
2013-12-13 18:33:20 ----D---- C:\windows\system32\CodeIntegrity
2013-12-13 18:33:19 ----RSD---- C:\windows\Fonts
2013-12-13 18:33:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-13 18:33:16 ----D---- C:\Program Files (x86)\WinRAR
2013-12-13 18:33:15 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-13 18:32:46 ----D---- C:\windows\registration
2013-12-12 15:43:24 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-19 03:33:38 ----N---- C:\windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2011-05-09 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2011-05-09 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2013-02-19 771536]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2013-02-19 340216]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2011-05-09 13408]
R1 pelmoubt;Mouse Suite Bluetooth Driver; C:\windows\system32\DRIVERS\pelmoubt.sys [2009-04-23 22016]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2011-05-09 29792]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-02 8284672]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-02 296448]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-12-15 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2013-02-19 70112]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-02-14 1581184]
R3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-10-21 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2013-02-19 179280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2013-02-19 309840]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2013-02-19 515968]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 pelbtm;Bluetooth Mouse Filter Driver; C:\windows\system32\DRIVERS\pelbtm.sys [2007-09-20 16384]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-12-17 1404464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 98816]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-01-08 12262688]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2013-02-19 106552]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\windows\system32\DRIVERS\ss_bus.sys [2009-09-21 127488]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\windows\system32\DRIVERS\ss_mdfl.sys [2009-09-21 18944]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\windows\system32\DRIVERS\ss_mdm.sys [2009-09-21 161280]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-02 203776]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2013-02-19 241456]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2013-02-19 218760]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2013-02-19 182752]
R2 PelService;Session Launcher Service; C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe [2010-04-22 177152]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2010-08-09 220528]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2012-11-16 383608]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-07-19 1255736]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Rostislav at 2013-12-16 21:15:56
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 547 GB (82%) free of 670 GB
Total RAM: 6088 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:16:05, on 16.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files\trend micro\Rostislav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Image Retriever.lnk = C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Session Launcher Service (PelService) - Unknown owner - C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14428 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
atieclxx
taskeng.exe {10A275C4-AB24-450E-953E-78ADED3C145D}
"taskhost.exe"
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.exe" 60
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe" /x
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
szndesktop.exe default start
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "-40578945190727124238019895712489914625629576591551521289-1713629089-346742471
taskeng.exe {014CE85B-32D2-4C60-B0D3-395B04974D78}
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files\mcafee.com\agent\mcagent.exe" /runkey
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\servicing\TrustedInstaller.exe
C:\Windows\system32\PrintIsolationHost.exe -Embedding
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Lenovo\Lenovo Mouse Suite\FSRremoS.EXE"
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\Pelmiced.exe"
"C:\windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelElvDm.exe"
"C:\Users\Rostislav\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 104448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-16 346168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131215150219.dll [2013-02-19 89480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-07 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-07 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-07 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-17 2531624]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2011-05-09 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-05-09 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-05-09 5908928]
"Daemon for Mouse Suite"=C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.EXE [2010-07-30 99840]
"Mouse Suite 98 Daemon"=ICO.EXE []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"cz.seznam.software.autoupdate"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-12 283160]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-02 336384]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2013-03-13 1532992]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-05-09 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SSBkgdUpdate"=C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [2009-02-19 24576]
"IndexSearch"=C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [2009-02-19 40960]
"PPort11reminder"=C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [2008-11-03 54560]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
Image Retriever.lnk - C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-08 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-16 21:03:53 ----D---- C:\_OTM
2013-12-16 18:21:12 ----D---- C:\AdwCleaner
2013-12-16 17:14:11 ----A---- C:\windows\system32\ieetwcollectorres.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieUnatt.exe
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iesetup.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iernonce.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ie4uinit.exe
2013-12-16 17:14:09 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\mshtml.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwproxystub.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwcollector.exe
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\system32\iertutil.dll
2013-12-16 17:14:07 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-12-16 17:14:07 ----A---- C:\windows\system32\wininet.dll
2013-12-16 17:14:06 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-12-16 17:14:06 ----A---- C:\windows\system32\urlmon.dll
2013-12-16 17:14:05 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-12-16 17:14:05 ----A---- C:\windows\system32\ieframe.dll
2013-12-16 17:14:04 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-12-16 17:14:03 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-12-16 17:14:03 ----A---- C:\windows\system32\jscript9.dll
2013-12-16 13:47:18 ----D---- C:\Program Files\trend micro
2013-12-16 13:32:51 ----D---- C:\Program Files (x86)\trend micro
2013-12-16 13:32:50 ----D---- C:\rsit
2013-12-15 15:24:53 ----A---- C:\windows\system32\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-12-15 15:24:51 ----A---- C:\windows\system32\wmp.dll
2013-12-15 15:24:09 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-12-15 15:17:52 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-12-15 15:17:52 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\url.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\occache.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\elshyph.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\wextract.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\webcheck.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\vbscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\url.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\pngfilt.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\occache.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmled.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\MshtmlDac.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshta.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\msfeeds.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\licmgr10.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\jscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\inseng.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\imgutil.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iexpress.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iepeers.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iedkcs32.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dat
2013-12-15 15:17:48 ----A---- C:\windows\system32\icardie.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtrans.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtmsft.dll
2013-12-14 10:04:33 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-12-14 10:04:33 ----A---- C:\windows\system32\win32k.sys
2013-12-14 10:04:33 ----A---- C:\windows\system32\msieftp.dll
2013-12-14 10:04:32 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-12-14 10:04:32 ----A---- C:\windows\system32\WMPhoto.dll
2013-12-14 10:04:31 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2013-12-14 10:04:31 ----A---- C:\windows\system32\imagehlp.dll
2013-12-14 10:04:24 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-12-14 10:04:24 ----A---- C:\windows\system32\tzres.dll
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\portcls.sys
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\drmk.sys
2013-12-14 10:03:56 ----A---- C:\windows\system32\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\scrrun.dll
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\scrrun.dll
2013-12-13 19:30:08 ----A---- C:\windows\ntbtlog.txt
2013-12-13 18:22:40 ----D---- C:\windows\pss
2013-12-05 15:51:31 ----D---- C:\MAGIX
2013-12-05 15:51:04 ----A---- C:\windows\SYSWOW64\mgxoschk.dll
2013-12-05 15:51:04 ----A---- C:\windows\mgxoschk.ini
2013-12-05 15:04:33 ----A---- C:\windows\system32\ntoskrnl.exe
2013-12-05 15:04:33 ----A---- C:\windows\system32\advapi32.dll
2013-12-05 15:04:32 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-12-05 15:04:32 ----A---- C:\windows\system32\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-12-05 15:04:31 ----A---- C:\windows\system32\ntdll.dll
2013-12-05 15:04:30 ----A---- C:\windows\system32\wow64.dll
2013-12-05 15:04:28 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\user.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-12-05 15:04:25 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-12-05 15:04:24 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-12-05 15:04:23 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-12-05 15:04:23 ----A---- C:\windows\system32\mswsock.dll
2013-12-05 15:04:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-12-05 15:04:21 ----A---- C:\windows\system32\gdi32.dll
2013-12-05 15:02:24 ----A---- C:\windows\system32\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\lsasrv.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\cng.sys
2013-12-05 15:02:22 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\sspisrv.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\secur32.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\lsass.exe
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\authui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui(5846).dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\authui.dll
2013-12-05 15:01:57 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32(5848).dll
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-12-05 15:01:42 ----A---- C:\windows\system32\drivers\afd.sys
2013-12-05 15:01:22 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32(5832).dll
2013-12-05 15:01:17 ----A---- C:\windows\system32\scavengeui.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-12-05 15:01:13 ----A---- C:\windows\system32\davclnt.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmfd.dll
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\usbscan.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-12-05 15:01:07 ----A---- C:\windows\system32\IKEEXT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\system32\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-12-05 15:00:34 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-12-05 15:00:24 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-05 15:00:24 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2013-12-16 21:15:58 ----D---- C:\windows\Temp
2013-12-16 21:14:47 ----D---- C:\ProgramData\VeriFace
2013-12-16 21:13:34 ----D---- C:\windows\Minidump
2013-12-16 21:13:31 ----D---- C:\Windows
2013-12-16 21:11:31 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-16 21:09:25 ----D---- C:\windows\system32\config
2013-12-16 21:03:53 ----D---- C:\windows\Tasks
2013-12-16 20:35:02 ----D---- C:\windows\System32
2013-12-16 20:35:02 ----D---- C:\windows\inf
2013-12-16 20:35:02 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-16 20:33:32 ----D---- C:\Users\Rostislav\AppData\Roaming\Seznam.cz
2013-12-16 18:26:52 ----HD---- C:\ProgramData
2013-12-16 18:03:37 ----D---- C:\windows\system32\catroot2
2013-12-16 17:28:32 ----D---- C:\windows\Prefetch
2013-12-16 17:17:13 ----D---- C:\windows\winsxs
2013-12-16 17:15:26 ----D---- C:\windows\SysWOW64
2013-12-16 17:15:26 ----D---- C:\Program Files\Internet Explorer
2013-12-16 17:15:26 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-16 17:14:38 ----D---- C:\windows\system32\catroot
2013-12-16 17:13:52 ----SHD---- C:\System Volume Information
2013-12-16 13:47:18 ----RD---- C:\Program Files
2013-12-16 13:32:51 ----RD---- C:\Program Files (x86)
2013-12-15 20:34:36 ----SD---- C:\Users\Rostislav\AppData\Roaming\Microsoft
2013-12-15 20:27:03 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:27:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:27:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-12-15 20:27:00 ----D---- C:\windows\system32\cs-CZ
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\migration
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\en-US
2013-12-15 20:26:50 ----D---- C:\windows\PolicyDefinitions
2013-12-15 20:26:49 ----D---- C:\windows\system32\migration
2013-12-15 20:26:48 ----D---- C:\windows\system32\en-US
2013-12-15 20:26:28 ----D---- C:\windows\system32\DriverStore
2013-12-15 20:26:27 ----D---- C:\windows\system32\drivers
2013-12-15 15:24:09 ----D---- C:\windows\Logs
2013-12-15 15:14:59 ----SHD---- C:\windows\Installer
2013-12-15 15:14:57 ----D---- C:\ProgramData\Microsoft Help
2013-12-15 15:11:46 ----D---- C:\windows\system32\MRT
2013-12-15 15:09:56 ----A---- C:\windows\system32\MRT.exe
2013-12-15 14:54:48 ----D---- C:\windows\system32\LogFiles
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\sppui
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\Setup
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\ras
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\oobe
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\InstallShield
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\icsxml
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\drivers
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\Dism
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\com
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-12-13 22:08:58 ----D---- C:\windows\system32\sysprep
2013-12-13 22:08:58 ----D---- C:\windows\system32\sppui
2013-12-13 22:08:58 ----D---- C:\windows\system32\Setup
2013-12-13 22:08:58 ----D---- C:\windows\system32\ras
2013-12-13 22:08:58 ----D---- C:\windows\system32\oobe
2013-12-13 22:08:58 ----D---- C:\windows\system32\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\system32\icsxml
2013-12-13 22:08:57 ----D---- C:\windows\system32\ias
2013-12-13 22:08:57 ----D---- C:\windows\system32\drivers\UMDF
2013-12-13 22:08:57 ----D---- C:\windows\system32\Dism
2013-12-13 22:08:57 ----D---- C:\windows\system32\com
2013-12-13 22:08:57 ----D---- C:\windows\system32\AdvancedInstallers
2013-12-13 22:08:57 ----D---- C:\windows\rescache
2013-12-13 22:08:57 ----D---- C:\windows\Offline Web Pages
2013-12-13 22:08:57 ----D---- C:\windows\L2Schemas
2013-12-13 22:08:57 ----D---- C:\windows\Downloaded Program Files
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Portable Devices
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Mail
2013-12-13 22:08:57 ----D---- C:\Program Files\Common Files\System
2013-12-13 22:08:56 ----D---- C:\Program Files\Common Files\Services
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Mail
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-TW
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-HK
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-CN
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\uk-UA
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\tr-TR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\th-TH
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sv-SE
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sr-Latn-CS
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sl-SI
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sk-SK
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ru-RU
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ro-RO
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-PT
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-BR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pl-PL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nl-NL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nb-NO
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lv-LV
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lt-LT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ko-KR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ja-JP
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\it-IT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hu-HU
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hr-HR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\he-IL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fr-FR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fi-FI
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\et-EE
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\es-ES
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\el-GR
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\drivers\cs-CZ
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\de-DE
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\da-DK
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\cs
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\bg-BG
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\ar-SA
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-TW
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-HK
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-CN
2013-12-13 22:08:41 ----D---- C:\windows\system32\WinBioPlugIns
2013-12-13 22:08:40 ----D---- C:\windows\system32\uk-UA
2013-12-13 22:08:40 ----D---- C:\windows\system32\tr-TR
2013-12-13 22:08:40 ----D---- C:\windows\system32\th-TH
2013-12-13 22:08:40 ----D---- C:\windows\system32\sv-SE
2013-12-13 22:08:40 ----D---- C:\windows\system32\sr-Latn-CS
2013-12-13 22:08:40 ----D---- C:\windows\system32\sl-SI
2013-12-13 22:08:40 ----D---- C:\windows\system32\sk-SK
2013-12-13 22:08:40 ----D---- C:\windows\system32\ru-RU
2013-12-13 22:08:40 ----D---- C:\windows\system32\ro-RO
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-PT
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-BR
2013-12-13 22:08:39 ----D---- C:\windows\system32\pl-PL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nl-NL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nb-NO
2013-12-13 22:08:39 ----D---- C:\windows\system32\lv-LV
2013-12-13 22:08:39 ----D---- C:\windows\system32\lt-LT
2013-12-13 22:08:39 ----D---- C:\windows\system32\ko-KR
2013-12-13 22:08:39 ----D---- C:\windows\system32\ja-JP
2013-12-13 22:08:39 ----D---- C:\windows\system32\it-IT
2013-12-13 22:08:38 ----D---- C:\windows\system32\hu-HU
2013-12-13 22:08:38 ----D---- C:\windows\system32\hr-HR
2013-12-13 22:08:38 ----D---- C:\windows\system32\he-IL
2013-12-13 22:08:38 ----D---- C:\windows\system32\fr-FR
2013-12-13 22:08:38 ----D---- C:\windows\system32\fi-FI
2013-12-13 22:08:38 ----D---- C:\windows\system32\et-EE
2013-12-13 22:08:38 ----D---- C:\windows\system32\es-ES
2013-12-13 22:08:38 ----D---- C:\windows\system32\el-GR
2013-12-13 22:08:38 ----D---- C:\windows\system32\drivers\en-US
2013-12-13 22:08:37 ----D---- C:\windows\system32\de-DE
2013-12-13 22:08:37 ----D---- C:\windows\system32\da-DK
2013-12-13 22:08:37 ----D---- C:\windows\system32\cs
2013-12-13 22:08:36 ----RSD---- C:\windows\Media
2013-12-13 22:08:36 ----D---- C:\windows\system32\Boot
2013-12-13 22:08:36 ----D---- C:\windows\system32\bg-BG
2013-12-13 22:08:36 ----D---- C:\windows\system32\ar-SA
2013-12-13 22:08:30 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\XPSViewer
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\winrm
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\wdi
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\WCN
2013-12-13 22:06:34 ----D---- C:\windows\SYSWOW64\Wat
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\Speech
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\slmgr
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\MUI
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Msdtc
2013-12-13 22:06:31 ----D---- C:\windows\SYSWOW64\Macromed
2013-12-13 22:06:29 ----D---- C:\windows\SYSWOW64\IME
2013-12-13 22:06:28 ----D---- C:\windows\SYSWOW64\DriverStore
2013-12-13 22:06:26 ----D---- C:\windows\system32\winrm
2013-12-13 22:06:26 ----D---- C:\windows\system32\WCN
2013-12-13 22:06:25 ----D---- C:\windows\system32\Wat
2013-12-13 22:06:23 ----D---- C:\windows\system32\spp
2013-12-13 22:06:23 ----D---- C:\windows\system32\spool
2013-12-13 22:06:23 ----D---- C:\windows\system32\Speech
2013-12-13 22:06:23 ----D---- C:\windows\system32\SMI
2013-12-13 22:06:23 ----D---- C:\windows\system32\slmgr
2013-12-13 22:06:22 ----D---- C:\windows\system32\Printing_Admin_Scripts
2013-12-13 22:06:21 ----D---- C:\windows\system32\NDF
2013-12-13 22:06:21 ----D---- C:\windows\system32\MUI
2013-12-13 22:06:21 ----D---- C:\windows\system32\Msdtc
2013-12-13 22:06:19 ----D---- C:\windows\system32\Macromed
2013-12-13 22:06:18 ----D---- C:\windows\system32\IME
2013-12-13 22:05:59 ----D---- C:\windows\Microsoft.NET
2013-12-13 22:05:47 ----D---- C:\windows\diagnostics
2013-12-13 22:05:14 ----D---- C:\ProgramData\McAfee
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows NT
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows Live
2013-12-13 22:05:13 ----D---- C:\Program Files\TAXEDIT
2013-12-13 22:05:09 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-13 22:05:07 ----D---- C:\Program Files\Microsoft Games
2013-12-13 22:05:05 ----D---- C:\Program Files\DIFX
2013-12-13 22:05:04 ----D---- C:\Program Files\CONEXANT
2013-12-13 22:05:04 ----D---- C:\Program Files\Common Files
2013-12-13 22:05:03 ----D---- C:\Program Files\Common Files\mcafee
2013-12-13 22:05:02 ----D---- C:\Program Files (x86)\WMV.WMA.MP3 Converter
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows NT
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows Live
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-13 22:04:51 ----D---- C:\Program Files (x86)\mcafee.com
2013-12-13 22:04:43 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:04:41 ----D---- C:\Program Files (x86)\BisonCam
2013-12-13 22:04:40 ----D---- C:\Program Files (x86)\Atheros
2013-12-13 22:04:39 ----HD---- C:\GrandeDevice
2013-12-13 22:04:39 ----D---- C:\c4227c293bb5562e6ff7ab3449
2013-12-13 22:04:39 ----D---- C:\b4e0315ff5af3678c17585dec4
2013-12-13 22:04:38 ----SHD---- C:\$Recycle.Bin
2013-12-13 22:04:38 ----D---- C:\a65ad3adc2cdde75e8b976d3027642
2013-12-13 21:48:26 ----RSD---- C:\windows\assembly
2013-12-13 18:35:05 ----D---- C:\windows\system32\wbem
2013-12-13 18:33:46 ----RD---- C:\Users
2013-12-13 18:33:42 ----D---- C:\windows\SYSWOW64\wbem
2013-12-13 18:33:42 ----D---- C:\windows\system32\wfp
2013-12-13 18:33:42 ----D---- C:\windows\system32\migwiz
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\etc
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\servicing
2013-12-13 18:33:42 ----D---- C:\windows\IME
2013-12-13 18:33:42 ----D---- C:\windows\ehome
2013-12-13 18:33:42 ----D---- C:\windows\Cursors
2013-12-13 18:33:42 ----D---- C:\windows\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\AppPatch
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Sidebar
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Photo Viewer
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Journal
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Defender
2013-12-13 18:33:42 ----D---- C:\Program Files\DVD Maker
2013-12-13 18:33:21 ----D---- C:\windows\system32\Tasks
2013-12-13 18:33:20 ----D---- C:\windows\system32\restore
2013-12-13 18:33:20 ----D---- C:\windows\system32\CodeIntegrity
2013-12-13 18:33:19 ----RSD---- C:\windows\Fonts
2013-12-13 18:33:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-13 18:33:16 ----D---- C:\Program Files (x86)\WinRAR
2013-12-13 18:33:15 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-13 18:32:46 ----D---- C:\windows\registration
2013-12-12 15:43:24 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-19 03:33:38 ----N---- C:\windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2011-05-09 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2011-05-09 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2013-02-19 771536]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2013-02-19 340216]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2011-05-09 13408]
R1 pelmoubt;Mouse Suite Bluetooth Driver; C:\windows\system32\DRIVERS\pelmoubt.sys [2009-04-23 22016]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2011-05-09 29792]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-02 8284672]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-02 296448]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-12-15 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2013-02-19 70112]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-02-14 1581184]
R3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-10-21 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2013-02-19 179280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2013-02-19 309840]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2013-02-19 515968]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 pelbtm;Bluetooth Mouse Filter Driver; C:\windows\system32\DRIVERS\pelbtm.sys [2007-09-20 16384]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-12-17 1404464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 98816]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-01-08 12262688]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2013-02-19 106552]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\windows\system32\DRIVERS\ss_bus.sys [2009-09-21 127488]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\windows\system32\DRIVERS\ss_mdfl.sys [2009-09-21 18944]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\windows\system32\DRIVERS\ss_mdm.sys [2009-09-21 161280]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-02 203776]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2013-02-19 241456]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2013-02-19 218760]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2013-02-19 182752]
R2 PelService;Session Launcher Service; C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe [2010-04-22 177152]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2010-08-09 220528]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2012-11-16 383608]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-07-19 1255736]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119532
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s padáním a zamrzáním notebooku
OTM nemazal. Zkuste to znovu se stejným skriptem, ale vypněte před skenem antivir.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s padáním a zamrzáním notebooku
tak doufám, že to tentokrát vyšlo...už je docela problém celý proces dokončit bez spadnutí:-)
Logfile of random's system information tool 1.09 (written by random/random)
Run by Rostislav at 2013-12-16 23:05:52
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 547 GB (82%) free of 670 GB
Total RAM: 6088 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:06:01, on 16.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\Rostislav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131216230416.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Image Retriever.lnk = C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Session Launcher Service (PelService) - Unknown owner - C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14483 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
atieclxx
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {D3EF3C4D-3FAB-46B4-A23A-64F24925E07C}
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"taskhost.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
C:\windows\servicing\TrustedInstaller.exe
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
taskeng.exe {1ED6D0A1-0EC6-493F-A765-54525BE89347}
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\windows\notepad.exe" C:\_OTM\MovedFiles\12162013_230002.log
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.exe" 60
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe" /x
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
szndesktop.exe default start
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "-413205425646846957-13963626301808372135608858477-1863800751-601095924-718764590
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\mcafee.com\agent\mcagent.exe" /runkey
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3368 CREDAT:275457 /prefetch:2
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 4320
"C:\Program Files\Lenovo\Lenovo Mouse Suite\FSRremoS.EXE"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\Pelmiced.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelElvDm.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\sppsvc.exe
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskhost.exe $(Arg0)
C:\windows\system32\wbem\wmiprvse.exe
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\windows\system32\SearchFilterHost.exe" 0 536 540 548 65536 544
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
wmiadap.exe /F /T /R
"C:\Users\Rostislav\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20131216230416.dll [2013-02-19 104448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-16 346168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131216230416.dll [2013-02-19 89480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-07 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-07 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-07 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-17 2531624]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2011-05-09 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-05-09 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-05-09 5908928]
"Daemon for Mouse Suite"=C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.EXE [2010-07-30 99840]
"Mouse Suite 98 Daemon"=ICO.EXE []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"cz.seznam.software.autoupdate"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-12 283160]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-02 336384]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2013-03-13 1532992]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-05-09 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SSBkgdUpdate"=C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [2009-02-19 24576]
"IndexSearch"=C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [2009-02-19 40960]
"PPort11reminder"=C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [2008-11-03 54560]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
Image Retriever.lnk - C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-08 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-16 21:03:53 ----D---- C:\_OTM
2013-12-16 18:21:12 ----D---- C:\AdwCleaner
2013-12-16 17:14:11 ----A---- C:\windows\system32\ieetwcollectorres.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieUnatt.exe
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iesetup.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iernonce.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ie4uinit.exe
2013-12-16 17:14:09 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\mshtml.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwproxystub.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwcollector.exe
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\system32\iertutil.dll
2013-12-16 17:14:07 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-12-16 17:14:07 ----A---- C:\windows\system32\wininet.dll
2013-12-16 17:14:06 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-12-16 17:14:06 ----A---- C:\windows\system32\urlmon.dll
2013-12-16 17:14:05 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-12-16 17:14:05 ----A---- C:\windows\system32\ieframe.dll
2013-12-16 17:14:04 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-12-16 17:14:03 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-12-16 17:14:03 ----A---- C:\windows\system32\jscript9.dll
2013-12-16 13:47:18 ----D---- C:\Program Files\trend micro
2013-12-16 13:32:51 ----D---- C:\Program Files (x86)\trend micro
2013-12-16 13:32:50 ----D---- C:\rsit
2013-12-15 15:24:53 ----A---- C:\windows\system32\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-12-15 15:24:51 ----A---- C:\windows\system32\wmp.dll
2013-12-15 15:24:09 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-12-15 15:17:52 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-12-15 15:17:52 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\url.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\occache.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\elshyph.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\wextract.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\webcheck.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\vbscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\url.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\pngfilt.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\occache.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmled.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\MshtmlDac.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshta.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\msfeeds.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\licmgr10.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\jscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\inseng.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\imgutil.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iexpress.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iepeers.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iedkcs32.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dat
2013-12-15 15:17:48 ----A---- C:\windows\system32\icardie.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtrans.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtmsft.dll
2013-12-14 10:04:33 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-12-14 10:04:33 ----A---- C:\windows\system32\win32k.sys
2013-12-14 10:04:33 ----A---- C:\windows\system32\msieftp.dll
2013-12-14 10:04:32 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-12-14 10:04:32 ----A---- C:\windows\system32\WMPhoto.dll
2013-12-14 10:04:31 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2013-12-14 10:04:31 ----A---- C:\windows\system32\imagehlp.dll
2013-12-14 10:04:24 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-12-14 10:04:24 ----A---- C:\windows\system32\tzres.dll
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\portcls.sys
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\drmk.sys
2013-12-14 10:03:56 ----A---- C:\windows\system32\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\scrrun.dll
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\scrrun.dll
2013-12-13 19:30:08 ----A---- C:\windows\ntbtlog.txt
2013-12-13 18:22:40 ----D---- C:\windows\pss
2013-12-05 15:51:31 ----D---- C:\MAGIX
2013-12-05 15:51:04 ----A---- C:\windows\SYSWOW64\mgxoschk.dll
2013-12-05 15:51:04 ----A---- C:\windows\mgxoschk.ini
2013-12-05 15:04:33 ----A---- C:\windows\system32\ntoskrnl.exe
2013-12-05 15:04:33 ----A---- C:\windows\system32\advapi32.dll
2013-12-05 15:04:32 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-12-05 15:04:32 ----A---- C:\windows\system32\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-12-05 15:04:31 ----A---- C:\windows\system32\ntdll.dll
2013-12-05 15:04:30 ----A---- C:\windows\system32\wow64.dll
2013-12-05 15:04:28 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\user.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-12-05 15:04:25 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-12-05 15:04:24 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-12-05 15:04:23 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-12-05 15:04:23 ----A---- C:\windows\system32\mswsock.dll
2013-12-05 15:04:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-12-05 15:04:21 ----A---- C:\windows\system32\gdi32.dll
2013-12-05 15:02:24 ----A---- C:\windows\system32\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\lsasrv.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\cng.sys
2013-12-05 15:02:22 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\sspisrv.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\secur32.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\lsass.exe
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\authui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui(5846).dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\authui.dll
2013-12-05 15:01:57 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32(5848).dll
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-12-05 15:01:42 ----A---- C:\windows\system32\drivers\afd.sys
2013-12-05 15:01:22 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32(5832).dll
2013-12-05 15:01:17 ----A---- C:\windows\system32\scavengeui.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-12-05 15:01:13 ----A---- C:\windows\system32\davclnt.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmfd.dll
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\usbscan.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-12-05 15:01:07 ----A---- C:\windows\system32\IKEEXT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\system32\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-12-05 15:00:34 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-12-05 15:00:24 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-05 15:00:24 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2013-12-16 23:05:50 ----D---- C:\windows\Temp
2013-12-16 23:03:57 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-16 23:02:31 ----D---- C:\ProgramData\VeriFace
2013-12-16 23:01:34 ----D---- C:\windows\system32\config
2013-12-16 22:54:53 ----D---- C:\windows\Minidump
2013-12-16 22:54:47 ----D---- C:\Windows
2013-12-16 22:45:01 ----D---- C:\Users\Rostislav\AppData\Roaming\Seznam.cz
2013-12-16 22:35:59 ----D---- C:\windows\System32
2013-12-16 22:35:59 ----D---- C:\windows\inf
2013-12-16 22:35:59 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-16 21:03:53 ----D---- C:\windows\Tasks
2013-12-16 18:26:52 ----HD---- C:\ProgramData
2013-12-16 18:03:37 ----D---- C:\windows\system32\catroot2
2013-12-16 17:28:32 ----D---- C:\windows\Prefetch
2013-12-16 17:17:13 ----D---- C:\windows\winsxs
2013-12-16 17:15:26 ----D---- C:\windows\SysWOW64
2013-12-16 17:15:26 ----D---- C:\Program Files\Internet Explorer
2013-12-16 17:15:26 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-16 17:14:38 ----D---- C:\windows\system32\catroot
2013-12-16 17:13:52 ----SHD---- C:\System Volume Information
2013-12-16 13:47:18 ----RD---- C:\Program Files
2013-12-16 13:32:51 ----RD---- C:\Program Files (x86)
2013-12-15 20:34:36 ----SD---- C:\Users\Rostislav\AppData\Roaming\Microsoft
2013-12-15 20:27:03 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:27:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:27:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-12-15 20:27:00 ----D---- C:\windows\system32\cs-CZ
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\migration
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\en-US
2013-12-15 20:26:50 ----D---- C:\windows\PolicyDefinitions
2013-12-15 20:26:49 ----D---- C:\windows\system32\migration
2013-12-15 20:26:48 ----D---- C:\windows\system32\en-US
2013-12-15 20:26:28 ----D---- C:\windows\system32\DriverStore
2013-12-15 20:26:27 ----D---- C:\windows\system32\drivers
2013-12-15 15:24:09 ----D---- C:\windows\Logs
2013-12-15 15:14:59 ----SHD---- C:\windows\Installer
2013-12-15 15:14:57 ----D---- C:\ProgramData\Microsoft Help
2013-12-15 15:11:46 ----D---- C:\windows\system32\MRT
2013-12-15 15:09:56 ----A---- C:\windows\system32\MRT.exe
2013-12-15 14:54:48 ----D---- C:\windows\system32\LogFiles
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\sppui
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\Setup
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\ras
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\oobe
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\InstallShield
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\icsxml
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\drivers
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\Dism
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\com
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-12-13 22:08:58 ----D---- C:\windows\system32\sysprep
2013-12-13 22:08:58 ----D---- C:\windows\system32\sppui
2013-12-13 22:08:58 ----D---- C:\windows\system32\Setup
2013-12-13 22:08:58 ----D---- C:\windows\system32\ras
2013-12-13 22:08:58 ----D---- C:\windows\system32\oobe
2013-12-13 22:08:58 ----D---- C:\windows\system32\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\system32\icsxml
2013-12-13 22:08:57 ----D---- C:\windows\system32\ias
2013-12-13 22:08:57 ----D---- C:\windows\system32\drivers\UMDF
2013-12-13 22:08:57 ----D---- C:\windows\system32\Dism
2013-12-13 22:08:57 ----D---- C:\windows\system32\com
2013-12-13 22:08:57 ----D---- C:\windows\system32\AdvancedInstallers
2013-12-13 22:08:57 ----D---- C:\windows\rescache
2013-12-13 22:08:57 ----D---- C:\windows\Offline Web Pages
2013-12-13 22:08:57 ----D---- C:\windows\L2Schemas
2013-12-13 22:08:57 ----D---- C:\windows\Downloaded Program Files
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Portable Devices
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Mail
2013-12-13 22:08:57 ----D---- C:\Program Files\Common Files\System
2013-12-13 22:08:56 ----D---- C:\Program Files\Common Files\Services
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Mail
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-TW
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-HK
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-CN
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\uk-UA
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\tr-TR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\th-TH
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sv-SE
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sr-Latn-CS
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sl-SI
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sk-SK
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ru-RU
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ro-RO
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-PT
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-BR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pl-PL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nl-NL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nb-NO
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lv-LV
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lt-LT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ko-KR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ja-JP
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\it-IT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hu-HU
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hr-HR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\he-IL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fr-FR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fi-FI
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\et-EE
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\es-ES
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\el-GR
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\drivers\cs-CZ
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\de-DE
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\da-DK
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\cs
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\bg-BG
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\ar-SA
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-TW
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-HK
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-CN
2013-12-13 22:08:41 ----D---- C:\windows\system32\WinBioPlugIns
2013-12-13 22:08:40 ----D---- C:\windows\system32\uk-UA
2013-12-13 22:08:40 ----D---- C:\windows\system32\tr-TR
2013-12-13 22:08:40 ----D---- C:\windows\system32\th-TH
2013-12-13 22:08:40 ----D---- C:\windows\system32\sv-SE
2013-12-13 22:08:40 ----D---- C:\windows\system32\sr-Latn-CS
2013-12-13 22:08:40 ----D---- C:\windows\system32\sl-SI
2013-12-13 22:08:40 ----D---- C:\windows\system32\sk-SK
2013-12-13 22:08:40 ----D---- C:\windows\system32\ru-RU
2013-12-13 22:08:40 ----D---- C:\windows\system32\ro-RO
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-PT
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-BR
2013-12-13 22:08:39 ----D---- C:\windows\system32\pl-PL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nl-NL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nb-NO
2013-12-13 22:08:39 ----D---- C:\windows\system32\lv-LV
2013-12-13 22:08:39 ----D---- C:\windows\system32\lt-LT
2013-12-13 22:08:39 ----D---- C:\windows\system32\ko-KR
2013-12-13 22:08:39 ----D---- C:\windows\system32\ja-JP
2013-12-13 22:08:39 ----D---- C:\windows\system32\it-IT
2013-12-13 22:08:38 ----D---- C:\windows\system32\hu-HU
2013-12-13 22:08:38 ----D---- C:\windows\system32\hr-HR
2013-12-13 22:08:38 ----D---- C:\windows\system32\he-IL
2013-12-13 22:08:38 ----D---- C:\windows\system32\fr-FR
2013-12-13 22:08:38 ----D---- C:\windows\system32\fi-FI
2013-12-13 22:08:38 ----D---- C:\windows\system32\et-EE
2013-12-13 22:08:38 ----D---- C:\windows\system32\es-ES
2013-12-13 22:08:38 ----D---- C:\windows\system32\el-GR
2013-12-13 22:08:38 ----D---- C:\windows\system32\drivers\en-US
2013-12-13 22:08:37 ----D---- C:\windows\system32\de-DE
2013-12-13 22:08:37 ----D---- C:\windows\system32\da-DK
2013-12-13 22:08:37 ----D---- C:\windows\system32\cs
2013-12-13 22:08:36 ----RSD---- C:\windows\Media
2013-12-13 22:08:36 ----D---- C:\windows\system32\Boot
2013-12-13 22:08:36 ----D---- C:\windows\system32\bg-BG
2013-12-13 22:08:36 ----D---- C:\windows\system32\ar-SA
2013-12-13 22:08:30 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\XPSViewer
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\winrm
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\wdi
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\WCN
2013-12-13 22:06:34 ----D---- C:\windows\SYSWOW64\Wat
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\Speech
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\slmgr
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\MUI
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Msdtc
2013-12-13 22:06:31 ----D---- C:\windows\SYSWOW64\Macromed
2013-12-13 22:06:29 ----D---- C:\windows\SYSWOW64\IME
2013-12-13 22:06:28 ----D---- C:\windows\SYSWOW64\DriverStore
2013-12-13 22:06:26 ----D---- C:\windows\system32\winrm
2013-12-13 22:06:26 ----D---- C:\windows\system32\WCN
2013-12-13 22:06:25 ----D---- C:\windows\system32\Wat
2013-12-13 22:06:23 ----D---- C:\windows\system32\spp
2013-12-13 22:06:23 ----D---- C:\windows\system32\spool
2013-12-13 22:06:23 ----D---- C:\windows\system32\Speech
2013-12-13 22:06:23 ----D---- C:\windows\system32\SMI
2013-12-13 22:06:23 ----D---- C:\windows\system32\slmgr
2013-12-13 22:06:22 ----D---- C:\windows\system32\Printing_Admin_Scripts
2013-12-13 22:06:21 ----D---- C:\windows\system32\NDF
2013-12-13 22:06:21 ----D---- C:\windows\system32\MUI
2013-12-13 22:06:21 ----D---- C:\windows\system32\Msdtc
2013-12-13 22:06:19 ----D---- C:\windows\system32\Macromed
2013-12-13 22:06:18 ----D---- C:\windows\system32\IME
2013-12-13 22:05:59 ----D---- C:\windows\Microsoft.NET
2013-12-13 22:05:47 ----D---- C:\windows\diagnostics
2013-12-13 22:05:14 ----D---- C:\ProgramData\McAfee
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows NT
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows Live
2013-12-13 22:05:13 ----D---- C:\Program Files\TAXEDIT
2013-12-13 22:05:09 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-13 22:05:07 ----D---- C:\Program Files\Microsoft Games
2013-12-13 22:05:05 ----D---- C:\Program Files\DIFX
2013-12-13 22:05:04 ----D---- C:\Program Files\CONEXANT
2013-12-13 22:05:04 ----D---- C:\Program Files\Common Files
2013-12-13 22:05:03 ----D---- C:\Program Files\Common Files\mcafee
2013-12-13 22:05:02 ----D---- C:\Program Files (x86)\WMV.WMA.MP3 Converter
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows NT
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows Live
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-13 22:04:51 ----D---- C:\Program Files (x86)\mcafee.com
2013-12-13 22:04:43 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:04:41 ----D---- C:\Program Files (x86)\BisonCam
2013-12-13 22:04:40 ----D---- C:\Program Files (x86)\Atheros
2013-12-13 22:04:39 ----HD---- C:\GrandeDevice
2013-12-13 22:04:39 ----D---- C:\c4227c293bb5562e6ff7ab3449
2013-12-13 22:04:39 ----D---- C:\b4e0315ff5af3678c17585dec4
2013-12-13 22:04:38 ----SHD---- C:\$Recycle.Bin
2013-12-13 22:04:38 ----D---- C:\a65ad3adc2cdde75e8b976d3027642
2013-12-13 21:48:26 ----RSD---- C:\windows\assembly
2013-12-13 18:35:05 ----D---- C:\windows\system32\wbem
2013-12-13 18:33:46 ----RD---- C:\Users
2013-12-13 18:33:42 ----D---- C:\windows\SYSWOW64\wbem
2013-12-13 18:33:42 ----D---- C:\windows\system32\wfp
2013-12-13 18:33:42 ----D---- C:\windows\system32\migwiz
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\etc
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\servicing
2013-12-13 18:33:42 ----D---- C:\windows\IME
2013-12-13 18:33:42 ----D---- C:\windows\ehome
2013-12-13 18:33:42 ----D---- C:\windows\Cursors
2013-12-13 18:33:42 ----D---- C:\windows\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\AppPatch
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Sidebar
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Photo Viewer
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Journal
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Defender
2013-12-13 18:33:42 ----D---- C:\Program Files\DVD Maker
2013-12-13 18:33:21 ----D---- C:\windows\system32\Tasks
2013-12-13 18:33:20 ----D---- C:\windows\system32\restore
2013-12-13 18:33:20 ----D---- C:\windows\system32\CodeIntegrity
2013-12-13 18:33:19 ----RSD---- C:\windows\Fonts
2013-12-13 18:33:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-13 18:33:16 ----D---- C:\Program Files (x86)\WinRAR
2013-12-13 18:33:15 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-13 18:32:46 ----D---- C:\windows\registration
2013-12-12 15:43:24 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-19 03:33:38 ----N---- C:\windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2011-05-09 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2011-05-09 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2013-02-19 771536]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2013-02-19 340216]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2011-05-09 13408]
R1 pelmoubt;Mouse Suite Bluetooth Driver; C:\windows\system32\DRIVERS\pelmoubt.sys [2009-04-23 22016]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2011-05-09 29792]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-02 8284672]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-02 296448]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-12-15 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2013-02-19 70112]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-02-14 1581184]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-10-21 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2013-02-19 179280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2013-02-19 309840]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2013-02-19 515968]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 pelbtm;Bluetooth Mouse Filter Driver; C:\windows\system32\DRIVERS\pelbtm.sys [2007-09-20 16384]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-12-17 1404464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 98816]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-01-08 12262688]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2013-02-19 106552]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\windows\system32\DRIVERS\ss_bus.sys [2009-09-21 127488]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\windows\system32\DRIVERS\ss_mdfl.sys [2009-09-21 18944]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\windows\system32\DRIVERS\ss_mdm.sys [2009-09-21 161280]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-02 203776]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2013-02-19 241456]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2013-02-19 218760]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2013-02-19 182752]
R2 PelService;Session Launcher Service; C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe [2010-04-22 177152]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2010-08-09 220528]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2012-11-16 383608]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-07-19 1255736]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Rostislav at 2013-12-16 23:05:52
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 547 GB (82%) free of 670 GB
Total RAM: 6088 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:06:01, on 16.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\Rostislav.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131216230416.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Image Retriever.lnk = C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Session Launcher Service (PelService) - Unknown owner - C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14483 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkService
atieclxx
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {D3EF3C4D-3FAB-46B4-A23A-64F24925E07C}
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"taskhost.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
C:\windows\servicing\TrustedInstaller.exe
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
taskeng.exe {1ED6D0A1-0EC6-493F-A765-54525BE89347}
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\windows\notepad.exe" C:\_OTM\MovedFiles\12162013_230002.log
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.exe" 60
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe" /x
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
szndesktop.exe default start
"C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "-413205425646846957-13963626301808372135608858477-1863800751-601095924-718764590
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\mcafee.com\agent\mcagent.exe" /runkey
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3368 CREDAT:275457 /prefetch:2
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 4320
"C:\Program Files\Lenovo\Lenovo Mouse Suite\FSRremoS.EXE"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\Pelmiced.exe"
"C:\Program Files\Lenovo\Lenovo Mouse Suite\PelElvDm.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\sppsvc.exe
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskhost.exe $(Arg0)
C:\windows\system32\wbem\wmiprvse.exe
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-233273082-1438093988-1336685355-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\windows\system32\SearchFilterHost.exe" 0 536 540 548 65536 544
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
wmiadap.exe /F /T /R
"C:\Users\Rostislav\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20131216230416.dll [2013-02-19 104448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-16 346168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20131216230416.dll [2013-02-19 89480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2013-05-22 249872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2013-05-22 298312]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-07 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-07 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-07 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-17 2531624]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2011-05-09 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2011-05-09 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2011-05-09 5908928]
"Daemon for Mouse Suite"=C:\Program Files\Lenovo\Lenovo Mouse Suite\ICO.EXE [2010-07-30 99840]
"Mouse Suite 98 Daemon"=ICO.EXE []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"cz.seznam.software.autoupdate"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rostislav\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-12 283160]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-02 336384]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2013-03-13 1532992]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2011-05-09 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SSBkgdUpdate"=C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [2009-02-19 24576]
"IndexSearch"=C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [2009-02-19 40960]
"PPort11reminder"=C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [2008-11-03 54560]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
Image Retriever.lnk - C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
C:\Users\Rostislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-08 384000]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-16 21:03:53 ----D---- C:\_OTM
2013-12-16 18:21:12 ----D---- C:\AdwCleaner
2013-12-16 17:14:11 ----A---- C:\windows\system32\ieetwcollectorres.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\jsproxy.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieUnatt.exe
2013-12-16 17:14:10 ----A---- C:\windows\system32\ieui.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iesetup.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\iernonce.dll
2013-12-16 17:14:10 ----A---- C:\windows\system32\ie4uinit.exe
2013-12-16 17:14:09 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\mshtml.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\jscript9diag.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwproxystub.dll
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieetwcollector.exe
2013-12-16 17:14:09 ----A---- C:\windows\system32\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-12-16 17:14:08 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-12-16 17:14:08 ----A---- C:\windows\system32\iertutil.dll
2013-12-16 17:14:07 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-12-16 17:14:07 ----A---- C:\windows\system32\wininet.dll
2013-12-16 17:14:06 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-12-16 17:14:06 ----A---- C:\windows\system32\urlmon.dll
2013-12-16 17:14:05 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-12-16 17:14:05 ----A---- C:\windows\system32\ieframe.dll
2013-12-16 17:14:04 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-12-16 17:14:03 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-12-16 17:14:03 ----A---- C:\windows\system32\jscript9.dll
2013-12-16 13:47:18 ----D---- C:\Program Files\trend micro
2013-12-16 13:32:51 ----D---- C:\Program Files (x86)\trend micro
2013-12-16 13:32:50 ----D---- C:\rsit
2013-12-15 15:24:53 ----A---- C:\windows\system32\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-12-15 15:24:52 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-12-15 15:24:51 ----A---- C:\windows\system32\wmp.dll
2013-12-15 15:24:09 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-12-15 15:17:52 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-12-15 15:17:52 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\url.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\occache.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-12-15 15:17:49 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msrating.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msls31.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\mshtmler.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedssync.exe
2013-12-15 15:17:49 ----A---- C:\windows\system32\msfeedsbs.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\jsIntl.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\iesysprep.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\IEAdvpack.dll
2013-12-15 15:17:49 ----A---- C:\windows\system32\elshyph.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\wextract.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\webcheck.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\vbscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\url.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\pngfilt.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\occache.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshtmled.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\MshtmlDac.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\mshta.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\msfeeds.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\licmgr10.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\jscript.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\inseng.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\imgutil.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iexpress.exe
2013-12-15 15:17:48 ----A---- C:\windows\system32\iepeers.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\iedkcs32.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\ieapfltr.dat
2013-12-15 15:17:48 ----A---- C:\windows\system32\icardie.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtrans.dll
2013-12-15 15:17:48 ----A---- C:\windows\system32\dxtmsft.dll
2013-12-14 10:04:33 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-12-14 10:04:33 ----A---- C:\windows\system32\win32k.sys
2013-12-14 10:04:33 ----A---- C:\windows\system32\msieftp.dll
2013-12-14 10:04:32 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-12-14 10:04:32 ----A---- C:\windows\system32\WMPhoto.dll
2013-12-14 10:04:31 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2013-12-14 10:04:31 ----A---- C:\windows\system32\imagehlp.dll
2013-12-14 10:04:24 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-12-14 10:04:24 ----A---- C:\windows\system32\tzres.dll
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\portcls.sys
2013-12-14 10:03:57 ----A---- C:\windows\system32\drivers\drmk.sys
2013-12-14 10:03:56 ----A---- C:\windows\system32\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\scrrun.dll
2013-12-14 10:03:55 ----A---- C:\windows\SYSWOW64\cscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\wscript.exe
2013-12-14 10:03:55 ----A---- C:\windows\system32\scrrun.dll
2013-12-13 19:30:08 ----A---- C:\windows\ntbtlog.txt
2013-12-13 18:22:40 ----D---- C:\windows\pss
2013-12-05 15:51:31 ----D---- C:\MAGIX
2013-12-05 15:51:04 ----A---- C:\windows\SYSWOW64\mgxoschk.dll
2013-12-05 15:51:04 ----A---- C:\windows\mgxoschk.ini
2013-12-05 15:04:33 ----A---- C:\windows\system32\ntoskrnl.exe
2013-12-05 15:04:33 ----A---- C:\windows\system32\advapi32.dll
2013-12-05 15:04:32 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-12-05 15:04:32 ----A---- C:\windows\system32\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-12-05 15:04:31 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-12-05 15:04:31 ----A---- C:\windows\system32\ntdll.dll
2013-12-05 15:04:30 ----A---- C:\windows\system32\wow64.dll
2013-12-05 15:04:28 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\user.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-12-05 15:04:27 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-12-05 15:04:25 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-12-05 15:04:24 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-12-05 15:04:23 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-12-05 15:04:23 ----A---- C:\windows\system32\mswsock.dll
2013-12-05 15:04:21 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-12-05 15:04:21 ----A---- C:\windows\system32\gdi32.dll
2013-12-05 15:02:24 ----A---- C:\windows\system32\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-12-05 15:02:23 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\sspicli.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\lsasrv.dll
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-12-05 15:02:23 ----A---- C:\windows\system32\drivers\cng.sys
2013-12-05 15:02:22 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\sspisrv.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\secur32.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\ncrypt.dll
2013-12-05 15:02:22 ----A---- C:\windows\system32\lsass.exe
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\SYSWOW64\authui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui.dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\credui(5846).dll
2013-12-05 15:02:14 ----A---- C:\windows\system32\authui.dll
2013-12-05 15:01:57 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32.dll
2013-12-05 15:01:57 ----A---- C:\windows\system32\crypt32(5848).dll
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-12-05 15:01:43 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-12-05 15:01:42 ----A---- C:\windows\system32\drivers\afd.sys
2013-12-05 15:01:22 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32.dll
2013-12-05 15:01:22 ----A---- C:\windows\system32\comctl32(5832).dll
2013-12-05 15:01:17 ----A---- C:\windows\system32\scavengeui.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\WebClnt.dll
2013-12-05 15:01:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-12-05 15:01:13 ----A---- C:\windows\system32\davclnt.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\lpk.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\fontsub.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\dciman32.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmlib.dll
2013-12-05 15:01:10 ----A---- C:\windows\system32\atmfd.dll
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\usbscan.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-12-05 15:01:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-12-05 15:01:07 ----A---- C:\windows\system32\IKEEXT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-12-05 15:01:06 ----A---- C:\windows\system32\nshwfp.dll
2013-12-05 15:01:06 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-12-05 15:00:34 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-12-05 15:00:24 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-05 15:00:24 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2013-12-16 23:05:50 ----D---- C:\windows\Temp
2013-12-16 23:03:57 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-16 23:02:31 ----D---- C:\ProgramData\VeriFace
2013-12-16 23:01:34 ----D---- C:\windows\system32\config
2013-12-16 22:54:53 ----D---- C:\windows\Minidump
2013-12-16 22:54:47 ----D---- C:\Windows
2013-12-16 22:45:01 ----D---- C:\Users\Rostislav\AppData\Roaming\Seznam.cz
2013-12-16 22:35:59 ----D---- C:\windows\System32
2013-12-16 22:35:59 ----D---- C:\windows\inf
2013-12-16 22:35:59 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-16 21:03:53 ----D---- C:\windows\Tasks
2013-12-16 18:26:52 ----HD---- C:\ProgramData
2013-12-16 18:03:37 ----D---- C:\windows\system32\catroot2
2013-12-16 17:28:32 ----D---- C:\windows\Prefetch
2013-12-16 17:17:13 ----D---- C:\windows\winsxs
2013-12-16 17:15:26 ----D---- C:\windows\SysWOW64
2013-12-16 17:15:26 ----D---- C:\Program Files\Internet Explorer
2013-12-16 17:15:26 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-16 17:14:38 ----D---- C:\windows\system32\catroot
2013-12-16 17:13:52 ----SHD---- C:\System Volume Information
2013-12-16 13:47:18 ----RD---- C:\Program Files
2013-12-16 13:32:51 ----RD---- C:\Program Files (x86)
2013-12-15 20:34:36 ----SD---- C:\Users\Rostislav\AppData\Roaming\Microsoft
2013-12-15 20:27:03 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:27:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:27:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-12-15 20:27:00 ----D---- C:\windows\system32\cs-CZ
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\migration
2013-12-15 20:26:54 ----D---- C:\windows\SYSWOW64\en-US
2013-12-15 20:26:50 ----D---- C:\windows\PolicyDefinitions
2013-12-15 20:26:49 ----D---- C:\windows\system32\migration
2013-12-15 20:26:48 ----D---- C:\windows\system32\en-US
2013-12-15 20:26:28 ----D---- C:\windows\system32\DriverStore
2013-12-15 20:26:27 ----D---- C:\windows\system32\drivers
2013-12-15 15:24:09 ----D---- C:\windows\Logs
2013-12-15 15:14:59 ----SHD---- C:\windows\Installer
2013-12-15 15:14:57 ----D---- C:\ProgramData\Microsoft Help
2013-12-15 15:11:46 ----D---- C:\windows\system32\MRT
2013-12-15 15:09:56 ----A---- C:\windows\system32\MRT.exe
2013-12-15 14:54:48 ----D---- C:\windows\system32\LogFiles
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\sppui
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\Setup
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\ras
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\oobe
2013-12-13 22:08:59 ----D---- C:\windows\SYSWOW64\migwiz
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\InstallShield
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\icsxml
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\drivers
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\Dism
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\com
2013-12-13 22:08:58 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-12-13 22:08:58 ----D---- C:\windows\system32\sysprep
2013-12-13 22:08:58 ----D---- C:\windows\system32\sppui
2013-12-13 22:08:58 ----D---- C:\windows\system32\Setup
2013-12-13 22:08:58 ----D---- C:\windows\system32\ras
2013-12-13 22:08:58 ----D---- C:\windows\system32\oobe
2013-12-13 22:08:58 ----D---- C:\windows\system32\manifeststore
2013-12-13 22:08:58 ----D---- C:\windows\system32\icsxml
2013-12-13 22:08:57 ----D---- C:\windows\system32\ias
2013-12-13 22:08:57 ----D---- C:\windows\system32\drivers\UMDF
2013-12-13 22:08:57 ----D---- C:\windows\system32\Dism
2013-12-13 22:08:57 ----D---- C:\windows\system32\com
2013-12-13 22:08:57 ----D---- C:\windows\system32\AdvancedInstallers
2013-12-13 22:08:57 ----D---- C:\windows\rescache
2013-12-13 22:08:57 ----D---- C:\windows\Offline Web Pages
2013-12-13 22:08:57 ----D---- C:\windows\L2Schemas
2013-12-13 22:08:57 ----D---- C:\windows\Downloaded Program Files
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Portable Devices
2013-12-13 22:08:57 ----D---- C:\Program Files\Windows Mail
2013-12-13 22:08:57 ----D---- C:\Program Files\Common Files\System
2013-12-13 22:08:56 ----D---- C:\Program Files\Common Files\Services
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-12-13 22:08:56 ----D---- C:\Program Files (x86)\Windows Mail
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-TW
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-HK
2013-12-13 22:08:45 ----D---- C:\windows\SYSWOW64\zh-CN
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\uk-UA
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\tr-TR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\th-TH
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sv-SE
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sr-Latn-CS
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sl-SI
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\sk-SK
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ru-RU
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\ro-RO
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-PT
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pt-BR
2013-12-13 22:08:44 ----D---- C:\windows\SYSWOW64\pl-PL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nl-NL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\nb-NO
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lv-LV
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\lt-LT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ko-KR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\ja-JP
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\it-IT
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hu-HU
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\hr-HR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\he-IL
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fr-FR
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\fi-FI
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\et-EE
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\es-ES
2013-12-13 22:08:43 ----D---- C:\windows\SYSWOW64\el-GR
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\drivers\cs-CZ
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\de-DE
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\da-DK
2013-12-13 22:08:42 ----D---- C:\windows\SYSWOW64\cs
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\bg-BG
2013-12-13 22:08:41 ----D---- C:\windows\SYSWOW64\ar-SA
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-TW
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-HK
2013-12-13 22:08:41 ----D---- C:\windows\system32\zh-CN
2013-12-13 22:08:41 ----D---- C:\windows\system32\WinBioPlugIns
2013-12-13 22:08:40 ----D---- C:\windows\system32\uk-UA
2013-12-13 22:08:40 ----D---- C:\windows\system32\tr-TR
2013-12-13 22:08:40 ----D---- C:\windows\system32\th-TH
2013-12-13 22:08:40 ----D---- C:\windows\system32\sv-SE
2013-12-13 22:08:40 ----D---- C:\windows\system32\sr-Latn-CS
2013-12-13 22:08:40 ----D---- C:\windows\system32\sl-SI
2013-12-13 22:08:40 ----D---- C:\windows\system32\sk-SK
2013-12-13 22:08:40 ----D---- C:\windows\system32\ru-RU
2013-12-13 22:08:40 ----D---- C:\windows\system32\ro-RO
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-PT
2013-12-13 22:08:39 ----D---- C:\windows\system32\pt-BR
2013-12-13 22:08:39 ----D---- C:\windows\system32\pl-PL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nl-NL
2013-12-13 22:08:39 ----D---- C:\windows\system32\nb-NO
2013-12-13 22:08:39 ----D---- C:\windows\system32\lv-LV
2013-12-13 22:08:39 ----D---- C:\windows\system32\lt-LT
2013-12-13 22:08:39 ----D---- C:\windows\system32\ko-KR
2013-12-13 22:08:39 ----D---- C:\windows\system32\ja-JP
2013-12-13 22:08:39 ----D---- C:\windows\system32\it-IT
2013-12-13 22:08:38 ----D---- C:\windows\system32\hu-HU
2013-12-13 22:08:38 ----D---- C:\windows\system32\hr-HR
2013-12-13 22:08:38 ----D---- C:\windows\system32\he-IL
2013-12-13 22:08:38 ----D---- C:\windows\system32\fr-FR
2013-12-13 22:08:38 ----D---- C:\windows\system32\fi-FI
2013-12-13 22:08:38 ----D---- C:\windows\system32\et-EE
2013-12-13 22:08:38 ----D---- C:\windows\system32\es-ES
2013-12-13 22:08:38 ----D---- C:\windows\system32\el-GR
2013-12-13 22:08:38 ----D---- C:\windows\system32\drivers\en-US
2013-12-13 22:08:37 ----D---- C:\windows\system32\de-DE
2013-12-13 22:08:37 ----D---- C:\windows\system32\da-DK
2013-12-13 22:08:37 ----D---- C:\windows\system32\cs
2013-12-13 22:08:36 ----RSD---- C:\windows\Media
2013-12-13 22:08:36 ----D---- C:\windows\system32\Boot
2013-12-13 22:08:36 ----D---- C:\windows\system32\bg-BG
2013-12-13 22:08:36 ----D---- C:\windows\system32\ar-SA
2013-12-13 22:08:30 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\XPSViewer
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\winrm
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\wdi
2013-12-13 22:06:35 ----D---- C:\windows\SYSWOW64\WCN
2013-12-13 22:06:34 ----D---- C:\windows\SYSWOW64\Wat
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\Speech
2013-12-13 22:06:33 ----D---- C:\windows\SYSWOW64\slmgr
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Printing_Admin_Scripts
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\MUI
2013-12-13 22:06:32 ----D---- C:\windows\SYSWOW64\Msdtc
2013-12-13 22:06:31 ----D---- C:\windows\SYSWOW64\Macromed
2013-12-13 22:06:29 ----D---- C:\windows\SYSWOW64\IME
2013-12-13 22:06:28 ----D---- C:\windows\SYSWOW64\DriverStore
2013-12-13 22:06:26 ----D---- C:\windows\system32\winrm
2013-12-13 22:06:26 ----D---- C:\windows\system32\WCN
2013-12-13 22:06:25 ----D---- C:\windows\system32\Wat
2013-12-13 22:06:23 ----D---- C:\windows\system32\spp
2013-12-13 22:06:23 ----D---- C:\windows\system32\spool
2013-12-13 22:06:23 ----D---- C:\windows\system32\Speech
2013-12-13 22:06:23 ----D---- C:\windows\system32\SMI
2013-12-13 22:06:23 ----D---- C:\windows\system32\slmgr
2013-12-13 22:06:22 ----D---- C:\windows\system32\Printing_Admin_Scripts
2013-12-13 22:06:21 ----D---- C:\windows\system32\NDF
2013-12-13 22:06:21 ----D---- C:\windows\system32\MUI
2013-12-13 22:06:21 ----D---- C:\windows\system32\Msdtc
2013-12-13 22:06:19 ----D---- C:\windows\system32\Macromed
2013-12-13 22:06:18 ----D---- C:\windows\system32\IME
2013-12-13 22:05:59 ----D---- C:\windows\Microsoft.NET
2013-12-13 22:05:47 ----D---- C:\windows\diagnostics
2013-12-13 22:05:14 ----D---- C:\ProgramData\McAfee
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows NT
2013-12-13 22:05:13 ----D---- C:\Program Files\Windows Live
2013-12-13 22:05:13 ----D---- C:\Program Files\TAXEDIT
2013-12-13 22:05:09 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-13 22:05:07 ----D---- C:\Program Files\Microsoft Games
2013-12-13 22:05:05 ----D---- C:\Program Files\DIFX
2013-12-13 22:05:04 ----D---- C:\Program Files\CONEXANT
2013-12-13 22:05:04 ----D---- C:\Program Files\Common Files
2013-12-13 22:05:03 ----D---- C:\Program Files\Common Files\mcafee
2013-12-13 22:05:02 ----D---- C:\Program Files (x86)\WMV.WMA.MP3 Converter
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows NT
2013-12-13 22:05:01 ----D---- C:\Program Files (x86)\Windows Live
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-13 22:04:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-13 22:04:51 ----D---- C:\Program Files (x86)\mcafee.com
2013-12-13 22:04:43 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:04:41 ----D---- C:\Program Files (x86)\BisonCam
2013-12-13 22:04:40 ----D---- C:\Program Files (x86)\Atheros
2013-12-13 22:04:39 ----HD---- C:\GrandeDevice
2013-12-13 22:04:39 ----D---- C:\c4227c293bb5562e6ff7ab3449
2013-12-13 22:04:39 ----D---- C:\b4e0315ff5af3678c17585dec4
2013-12-13 22:04:38 ----SHD---- C:\$Recycle.Bin
2013-12-13 22:04:38 ----D---- C:\a65ad3adc2cdde75e8b976d3027642
2013-12-13 21:48:26 ----RSD---- C:\windows\assembly
2013-12-13 18:35:05 ----D---- C:\windows\system32\wbem
2013-12-13 18:33:46 ----RD---- C:\Users
2013-12-13 18:33:42 ----D---- C:\windows\SYSWOW64\wbem
2013-12-13 18:33:42 ----D---- C:\windows\system32\wfp
2013-12-13 18:33:42 ----D---- C:\windows\system32\migwiz
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\etc
2013-12-13 18:33:42 ----D---- C:\windows\system32\drivers\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\servicing
2013-12-13 18:33:42 ----D---- C:\windows\IME
2013-12-13 18:33:42 ----D---- C:\windows\ehome
2013-12-13 18:33:42 ----D---- C:\windows\Cursors
2013-12-13 18:33:42 ----D---- C:\windows\cs-CZ
2013-12-13 18:33:42 ----D---- C:\windows\AppPatch
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Sidebar
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Photo Viewer
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Journal
2013-12-13 18:33:42 ----D---- C:\Program Files\Windows Defender
2013-12-13 18:33:42 ----D---- C:\Program Files\DVD Maker
2013-12-13 18:33:21 ----D---- C:\windows\system32\Tasks
2013-12-13 18:33:20 ----D---- C:\windows\system32\restore
2013-12-13 18:33:20 ----D---- C:\windows\system32\CodeIntegrity
2013-12-13 18:33:19 ----RSD---- C:\windows\Fonts
2013-12-13 18:33:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-13 18:33:16 ----D---- C:\Program Files (x86)\WinRAR
2013-12-13 18:33:15 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-13 18:32:46 ----D---- C:\windows\registration
2013-12-12 15:43:24 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-19 03:33:38 ----N---- C:\windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2011-05-09 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2011-05-09 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2013-02-19 771536]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2013-02-19 340216]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2011-05-09 13408]
R1 pelmoubt;Mouse Suite Bluetooth Driver; C:\windows\system32\DRIVERS\pelmoubt.sys [2009-04-23 22016]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2011-05-09 29792]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-02 8284672]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-02 296448]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-12-15 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2013-02-19 70112]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-02-14 1581184]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2010-10-21 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2013-02-19 179280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2013-02-19 309840]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2013-02-19 515968]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 pelbtm;Bluetooth Mouse Filter Driver; C:\windows\system32\DRIVERS\pelbtm.sys [2007-09-20 16384]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\usbvideo.sys [2013-07-12 185344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-12-17 1404464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 98816]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-01-08 12262688]
S3 mfeavfk01;McAfee Inc.; C:\windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\windows\system32\drivers\mferkdet.sys [2013-02-19 106552]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\windows\system32\DRIVERS\ss_bus.sys [2009-09-21 127488]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\windows\system32\DRIVERS\ss_mdfl.sys [2009-09-21 18944]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\windows\system32\DRIVERS\ss_mdm.sys [2009-09-21 161280]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-02 203776]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2013-02-19 241456]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2013-02-19 218760]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2013-02-19 182752]
R2 PelService;Session Launcher Service; C:\Program Files\Lenovo\Lenovo Mouse Suite\PelService.exe [2010-04-22 177152]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2010-08-09 220528]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2012-11-16 383608]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-07-19 1255736]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-08-31 201304]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119532
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s padáním a zamrzáním notebooku
Teď je to OK. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s padáním a zamrzáním notebooku
opět to spadlo...mám pocit, že se to děje když je spuštěn internetový prohlížeč (internet explorer), když není spuštěn, tak zatím nic nepadá..
- Rudy
- Site Admin
- Příspěvky: 119532
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s padáním a zamrzáním notebooku
Zkuste IE přeinstalovat, případně downgradujte na nižší verzi.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s padáním a zamrzáním notebooku
moc děkuji za pomoc, zdá se že nic nepadá ani se neseká..
- Rudy
- Site Admin
- Příspěvky: 119532
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s padáním a zamrzáním notebooku
Nemáte zač! 

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.